<?xml version="1.0" encoding="ISO-8859-1"?>

<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/">
	<channel>
		<title>HijackThis.de Support Board - Archiv</title>
		<link>http://www.hijackthis-forum.de/</link>
		<description>Hier befinden sich ältere Themen, deren Probleme bereits gelöst sind.</description>
		<language>de</language>
		<lastBuildDate>Tue, 09 Feb 2010 13:31:22 GMT</lastBuildDate>
		<generator>vBulletin</generator>
		<ttl>60</ttl>
		<image>
			<url>http://www.hijackthis-forum.de/images/misc/rss.png</url>
			<title>HijackThis.de Support Board - Archiv</title>
			<link>http://www.hijackthis-forum.de/</link>
		</image>
		<item>
			<title>Trojan.Fake.Alert, DNSChanger...Trojan.Agent</title>
			<link>http://www.hijackthis-forum.de/archiv/42156-trojan-fake-alert-dnschanger-trojan-agent.html</link>
			<pubDate>Thu, 28 Jan 2010 19:06:27 GMT</pubDate>
			<description><![CDATA[*Hallooo heute, hoffe sehr ihr könnte mir helfen !!??* 
 
hatte vorkurzen probleme mit den "Malware Defense" und gestern mit "Vista Antivirus 2010" gehabt ! 
 
hab Malware mit hilfe von TDSSKiller und Malwarebytes' bekämpfen können..  
Vista antivrus 2010 könnte ich durch systemwiederherstellung...]]></description>
			<content:encoded><![CDATA[<div><b><font size="3">Hallooo heute, hoffe sehr ihr könnte mir helfen !!??</font></b><br />
<br />
hatte vorkurzen probleme mit den &quot;Malware Defense&quot; und gestern mit &quot;Vista Antivirus 2010&quot; gehabt !<br />
<br />
hab Malware mit hilfe von TDSSKiller und Malwarebytes' bekämpfen können.. <br />
Vista antivrus 2010 könnte ich durch systemwiederherstellung entfernen. <br />
<br />
allerdings hab ich dann nochmal ein vollständigen scan mit Malwarebytes gemacht und hab noch weitere trojaner gefunden bei den ich nicht weiter weiss (Trojan.FakeAlert) (Trojan.Agent) (Trojan.DNSChanger), desweitern kann ich mein sicherheitscenter nicht mehr starten (seid Malware Defense). <br />
ich weiss nicht ob ich auch einfach die datein die Malewarebytes gefunden hat löschen kann ??<br />
<br />
<u><b> hier mein Malewarebytes scan:</b></u><br />
<br />
<div class="bbcode_container">
	<div class="bbcode_description">Code:</div>
	<hr /><code class="bbcode_code">Malwarebytes' Anti-Malware 1.44<br />
Datenbank Version: 3651<br />
Windows 6.0.6000<br />
Internet Explorer 7.0.6000.16386<br />
<br />
28.01.2010 18:08:05<br />
mbam-log-2010-01-28 (18-08-01).txt<br />
<br />
Scan-Methode: Vollständiger Scan (C:\|D:\|E:\|F:\|G:\|H:\|I:\|J:\|)<br />
Durchsuchte Objekte: 241873<br />
Laufzeit: 52 minute(s), 20 second(s)<br />
<br />
Infizierte Speicherprozesse: 0<br />
Infizierte Speichermodule: 0<br />
Infizierte Registrierungsschlüssel: 0<br />
Infizierte Registrierungswerte: 0<br />
Infizierte Dateiobjekte der Registrierung: 0<br />
Infizierte Verzeichnisse: 0<br />
Infizierte Dateien: 7<br />
<br />
Infizierte Speicherprozesse:<br />
(Keine bösartigen Objekte gefunden)<br />
<br />
Infizierte Speichermodule:<br />
(Keine bösartigen Objekte gefunden)<br />
<br />
Infizierte Registrierungsschlüssel:<br />
(Keine bösartigen Objekte gefunden)<br />
<br />
Infizierte Registrierungswerte:<br />
(Keine bösartigen Objekte gefunden)<br />
<br />
Infizierte Dateiobjekte der Registrierung:<br />
(Keine bösartigen Objekte gefunden)<br />
<br />
Infizierte Verzeichnisse:<br />
(Keine bösartigen Objekte gefunden)<br />
<br />
Infizierte Dateien:<br />
C:\Users\Home\AppData\Local\Temp\wscsvc32.exe (Trojan.FakeAlert) -&gt; No action taken.<br />
C:\Users\Home\AppData\Local\Temp\Installer.exe (Trojan.FakeAlert) -&gt; No action taken.<br />
C:\Users\Home\AppData\Local\Temp\settdebugx.exe (Rogue.Installer) -&gt; No action taken.<br />
J:\Programme ee\registrycleanerdoktor.exe (Rogue.RegistryDoctor) -&gt; No action taken.<br />
J:\Programme ee\Neuer Ordner\8-neo-l\Nero 8.3.6.0\Keygens\EMBRACE\keygen.exe (Trojan.Agent) -&gt; No action taken.<br />
J:\Programme ee\Neuer Ordner\DivX_6_Pro_Ver._6.8.4.5\DivX 6 Pro Ver. 6.8.4.5 (Key-Generator).exe (Trojan.Agent) -&gt; No action taken.<br />
C:\Windows\System32\krl32mainweq.dll (Trojan.DNSChanger) -&gt; No action taken.</code><hr />
</div> <b><u>und hier mein Hijackthis scan:</u></b><br />
<div class="bbcode_container">
	<div class="bbcode_description">Code:</div>
	<hr /><code class="bbcode_code">Logfile of Trend Micro HijackThis v2.0.2<br />
Scan saved at 16:16:41, on 28.01.2010<br />
Platform: Windows Vista&nbsp; (WinNT 6.00.1904)<br />
MSIE: Internet Explorer v7.00 (7.00.6000.16386)<br />
Boot mode: Normal<br />
<br />
Running processes:<br />
C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe<br />
C:\Windows\system32\Dwm.exe<br />
C:\Windows\system32\taskeng.exe<br />
C:\Windows\Explorer.EXE<br />
C:\Program Files\Windows Defender\MSASCui.exe<br />
C:\Program Files\Lexmark X1100 Series\LXBKbmgr.exe<br />
C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe<br />
C:\Program Files\Logitech\QuickCam\Quickcam.exe<br />
C:\Program Files\Java\jre6\bin\jusched.exe<br />
C:\Program Files\Common Files\Real\Update_OB\realsched.exe<br />
C:\Program Files\Windows Sidebar\sidebar.exe<br />
C:\Program Files\Lexmark X1100 Series\lxbkbmon.exe<br />
C:\Program Files\Windows Media Player\wmpnscfg.exe<br />
C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe<br />
C:\Windows\system32\wuauclt.exe<br />
C:\Windows\system32\SearchFilterHost.exe<br />
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe<br />
C:\Windows\system32\DllHost.exe<br />
<br />
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = <a href="http://go.microsoft.com/fwlink/?LinkId=54896" target="_blank">http://go.microsoft.com/fwlink/?LinkId=54896</a><br />
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = <a href="http://go.microsoft.com/fwlink/?LinkId=69157" target="_blank">http://go.microsoft.com/fwlink/?LinkId=69157</a><br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = <a href="http://go.microsoft.com/fwlink/?LinkId=69157" target="_blank">http://go.microsoft.com/fwlink/?LinkId=69157</a><br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = <a href="http://go.microsoft.com/fwlink/?LinkId=54896" target="_blank">http://go.microsoft.com/fwlink/?LinkId=54896</a><br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = <a href="http://go.microsoft.com/fwlink/?LinkId=54896" target="_blank">http://go.microsoft.com/fwlink/?LinkId=54896</a><br />
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = <a href="http://go.microsoft.com/fwlink/?LinkId=69157" target="_blank">http://go.microsoft.com/fwlink/?LinkId=69157</a><br />
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = <br />
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = <br />
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = <br />
O1 - Hosts: ::1 localhost<br />
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll<br />
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll<br />
O2 - BHO: Windows Live Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll<br />
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll<br />
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide<br />
O4 - HKLM\..\Run: [lxbkbmgr.exe] &quot;C:\Program Files\Lexmark X1100 Series\lxbkbmgr.exe&quot;<br />
O4 - HKLM\..\Run: [LogitechCommunicationsManager] &quot;C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe&quot;<br />
O4 - HKLM\..\Run: [LogitechQuickCamRibbon] &quot;C:\Program Files\Logitech\QuickCam\Quickcam.exe&quot; /hide<br />
O4 - HKLM\..\Run: [SunJavaUpdateSched] &quot;C:\Program Files\Java\jre6\bin\jusched.exe&quot;<br />
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] &quot;C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe&quot;<br />
O4 - HKLM\..\Run: [Adobe ARM] &quot;C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe&quot;<br />
O4 - HKLM\..\Run: [TkBellExe] &quot;C:\Program Files\Common Files\Real\Update_OB\realsched.exe&quot;&nbsp; -osboot<br />
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun<br />
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOKALER DIENST')<br />
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOKALER DIENST')<br />
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETZWERKDIENST')<br />
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe<br />
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe<br />
O13 - Gopher Prefix: <br />
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - <a href="http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab" target="_blank">http://fpdownload2.macromedia.com/ge...sh/swflash.cab</a><br />
O23 - Service: LVCOMSer - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe<br />
O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe<br />
O23 - Service: lxbk_device -&nbsp;  - C:\Windows\system32\lxbkcoms.exe<br />
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe<br />
O23 - Service: X10 Device Network Service (x10nets) - X10 - C:\PROGRA~1\COMMON~1\X10\Common\x10nets.exe<br />
<br />
--<br />
End of file - 4709 bytes</code><hr />
</div> hier noch ein Scean mit OTL<br />
<br />
Extra.Txt<br />
<div class="bbcode_container">
	<div class="bbcode_description">Code:</div>
	<hr /><code class="bbcode_code">OTL Extras logfile created on: 28.01.2010 20:27:25 - Run 1<br />
OTL by OldTimer - Version 3.1.27.0&nbsp; &nbsp;  Folder = C:\Users\Home\Desktop<br />
Windows Vista Home Premium Edition&nbsp; (Version = 6.0.6000) - Type = NTWorkstation<br />
Internet Explorer (Version = 7.0.6000.16386)<br />
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy<br />
&nbsp;<br />
1.022,00 Mb Total Physical Memory | 491,00 Mb Available Physical Memory | 48,00% Memory free<br />
2,00 Gb Paging File | 1,00 Gb Available in Paging File | 64,00% Paging File free<br />
Paging file location(s): ?:\pagefile.sys [binary data]<br />
&nbsp;<br />
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files<br />
Drive C: | 24,42 Gb Total Space | 4,74 Gb Free Space | 19,42% Space Free | Partition Type: NTFS<br />
Drive D: | 208,46 Gb Total Space | 62,54 Gb Free Space | 30,00% Space Free | Partition Type: NTFS<br />
Drive E: | 232,88 Gb Total Space | 232,79 Gb Free Space | 99,96% Space Free | Partition Type: NTFS<br />
F: Drive not present or media not loaded<br />
Drive G: | 1,90 Gb Total Space | 1,08 Gb Free Space | 56,85% Space Free | Partition Type: FAT<br />
H: Drive not present or media not loaded<br />
I: Drive not present or media not loaded<br />
Drive J: | 465,65 Gb Total Space | 192,30 Gb Free Space | 41,30% Space Free | Partition Type: FAT32<br />
&nbsp;<br />
Computer Name: HOME-PC<br />
Current User Name: Home<br />
Logged in as Administrator.<br />
&nbsp;<br />
Current Boot Mode: Normal<br />
Scan Mode: Current user<br />
Company Name Whitelist: Off<br />
Skip Microsoft Files: Off<br />
File Age = 30 Days<br />
Output = Minimal<br />
&nbsp;<br />
<font color="#E56717">========== Extra Registry (SafeList) ==========</font><br />
&nbsp;<br />
&nbsp;<br />
<font color="#E56717">========== File Associations ==========</font><br />
&nbsp;<br />
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\&lt;extension&gt;]<br />
.cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)<br />
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)<br />
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)<br />
&nbsp;<br />
[HKEY_CURRENT_USER\SOFTWARE\Classes\&lt;extension&gt;]<br />
.html [@ = htmlfile] -- Reg Error: Key error. File not found<br />
&nbsp;<br />
<font color="#E56717">========== Shell Spawning ==========</font><br />
&nbsp;<br />
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\&lt;key&gt;\shell\[command]\command]<br />
batfile [open] -- &quot;%1&quot; %*<br />
cmdfile [open] -- &quot;%1&quot; %*<br />
comfile [open] -- &quot;%1&quot; %*<br />
cplfile [cplopen] -- %SystemRoot%\System32\control.exe &quot;%1&quot;,%* (Microsoft Corporation)<br />
exefile [open] -- &quot;%1&quot; %*<br />
helpfile [open] -- Reg Error: Key error.<br />
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)<br />
htmlfile [edit] -- &quot;C:\Program Files\Microsoft Office\OFFICE11\msohtmed.exe&quot; %1 (Microsoft Corporation)<br />
htmlfile [open] -- &quot;C:\Program Files\Internet Explorer\iexplore.exe&quot; -nohome (Microsoft Corporation)<br />
htmlfile [opennew] -- &quot;C:\Program Files\Internet Explorer\iexplore.exe&quot; %1 (Microsoft Corporation)<br />
htmlfile [print] -- &quot;C:\Program Files\Microsoft Office\OFFICE11\msohtmed.exe&quot; /p %1 (Microsoft Corporation)<br />
http [open] -- &quot;C:\Program Files\Internet Explorer\iexplore.exe&quot; -nohome (Microsoft Corporation)<br />
https [open] -- &quot;C:\Program Files\Internet Explorer\iexplore.exe&quot; -nohome (Microsoft Corporation)<br />
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe &quot;%1&quot; (Microsoft Corporation)<br />
piffile [open] -- &quot;%1&quot; %*<br />
regfile [merge] -- Reg Error: Key error.<br />
scrfile [config] -- &quot;%1&quot;<br />
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)<br />
scrfile [open] -- &quot;%1&quot; /S<br />
txtfile [edit] -- Reg Error: Key error.<br />
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1<br />
Directory [AddToPlaylistVLC] -- &quot;C:\Program Files\VideoLAN\VLC\vlc.exe&quot; --started-from-file --playlist-enqueue &quot;%1&quot; ()<br />
Directory [cmd] -- cmd.exe /s /k pushd &quot;%V&quot; (Microsoft Corporation)<br />
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)<br />
Directory [PlayWithVLC] -- &quot;C:\Program Files\VideoLAN\VLC\vlc.exe&quot; --started-from-file --no-playlist-enqueue &quot;%1&quot; ()<br />
Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)<br />
Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)<br />
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)<br />
Applications\iexplore.exe [open] -- &quot;C:\Program Files\Internet Explorer\iexplore.exe&quot; %1 (Microsoft Corporation)<br />
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- &quot;C:\Program Files\Internet Explorer\iexplore.exe&quot; (Microsoft Corporation)<br />
&nbsp;<br />
<font color="#E56717">========== Security Center Settings ==========</font><br />
&nbsp;<br />
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]<br />
&quot;cval&quot; = 0<br />
&nbsp;<br />
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]<br />
&nbsp;<br />
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]<br />
&quot;AntiVirusOverride&quot; = 0<br />
&quot;AntiSpywareOverride&quot; = 0<br />
&quot;FirewallOverride&quot; = 0<br />
&nbsp;<br />
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]<br />
&quot;DisableNotifications&quot; = 0<br />
&quot;EnableFirewall&quot; = 1<br />
&nbsp;<br />
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]<br />
&quot;DisableNotifications&quot; = 0<br />
&quot;EnableFirewall&quot; = 1<br />
&quot;DoNotAllowExceptions&quot; = 0<br />
&nbsp;<br />
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]<br />
&quot;DisableNotifications&quot; = 0<br />
&quot;EnableFirewall&quot; = 1<br />
&nbsp;<br />
<font color="#E56717">========== Authorized Applications List ==========</font><br />
&nbsp;<br />
&nbsp;<br />
<font color="#E56717">========== Vista Active Open Ports Exception List ==========</font><br />
&nbsp;<br />
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]<br />
&quot;{01FF68AB-1E55-4625-A023-7DF69D7BCB94}&quot; = rport=445 | protocol=6 | dir=out | app=system | <br />
&quot;{17BB12CE-0480-4BF7-8AE4-9CC89451E4C9}&quot; = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe | <br />
&quot;{1A5DBFB8-EA24-488D-99AD-77A9FA3702B5}&quot; = rport=137 | protocol=17 | dir=out | app=system | <br />
&quot;{3175F8AF-8B46-4F81-9DA4-7B8985A33640}&quot; = rport=139 | protocol=6 | dir=out | app=system | <br />
&quot;{3C8D38FD-EE90-458C-9DAC-E3C6BF68CCEA}&quot; = lport=137 | protocol=17 | dir=in | app=system | <br />
&quot;{3CDF350E-CF8C-4611-B6E9-B0D456468D7C}&quot; = lport=2869 | protocol=6 | dir=in | app=system | <br />
&quot;{78C0B6F0-BD37-4641-8A63-E65F1045A6A3}&quot; = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | <br />
&quot;{9399F46B-4327-475B-B814-C0FBA52162FF}&quot; = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | <br />
&quot;{A20B3104-E1D8-4CCC-B596-6855295A9D92}&quot; = lport=139 | protocol=6 | dir=in | app=system | <br />
&quot;{D6F796E8-B3AE-40A0-945B-8C59922CBDB2}&quot; = rport=138 | protocol=17 | dir=out | app=system | <br />
&quot;{DBD0242D-BF65-4FF2-9DBF-5F5DCC641524}&quot; = lport=445 | protocol=6 | dir=in | app=system | <br />
&quot;{DF748018-0700-47C3-AF1C-AC09F69D99F6}&quot; = lport=138 | protocol=17 | dir=in | app=system | <br />
&nbsp;<br />
<font color="#E56717">========== Vista Active Application Exception List ==========</font><br />
&nbsp;<br />
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]<br />
&quot;{1CC63931-0A2E-4336-9C68-897F201E2C11}&quot; = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | <br />
&quot;{2542BDE0-9945-4185-AC89-59069C4E81E7}&quot; = protocol=17 | dir=in | app=c:\windows\system32\spool\drivers\w32x86\3\lxbkpswx.exe | <br />
&quot;{2AAF0E3A-3843-4323-B2E5-4E4339F0AD86}&quot; = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | <br />
&quot;{4468ECFF-3590-4DBA-B91A-C2A54615C48E}&quot; = protocol=58 | dir=out | app=system | <br />
&quot;{4633FAA6-3BB7-4490-8FC4-61CD5B308C09}&quot; = dir=in | app=c:\program files\windows live\sync\windowslivesync.exe | <br />
&quot;{4A4A430B-50D8-4E80-BF4C-B7A084494485}&quot; = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | <br />
&quot;{6CA47779-B832-4D5D-95C0-F0FD0E42614F}&quot; = dir=in | app=c:\program files\windows live\messenger\msnmsgr.exe | <br />
&quot;{7A5FECF3-1F62-4711-AD7F-CA0E43D82CE4}&quot; = protocol=58 | dir=out | app=system | <br />
&quot;{8C1D29B6-88C2-4CE1-82D7-BC2F2A69C2DD}&quot; = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | <br />
&quot;{8F601688-BED3-42D7-8523-3AC3561D19F3}&quot; = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | <br />
&quot;{96EAAD0A-2B7F-44D8-A7C9-E41946D6F415}&quot; = protocol=6 | dir=in | app=c:\windows\system32\lxbkcoms.exe | <br />
&quot;{98DD87A5-D4F5-41D0-B6D1-3C5D3C50B2C9}&quot; = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | <br />
&quot;{AB5B0225-FD60-4F75-BCD2-4BCDAA03E9EC}&quot; = protocol=6 | dir=in | app=c:\windows\system32\spool\drivers\w32x86\3\lxbkpswx.exe | <br />
&quot;{B32EEB80-EE7C-4BA5-B3E1-C8B27842DE57}&quot; = protocol=17 | dir=in | app=c:\windows\system32\lxbkcoms.exe | <br />
&quot;{DB8CE9C8-E4BC-4997-85A4-30DF0DD790DF}&quot; = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | <br />
&quot;{FFEE790E-C919-471E-95AC-A74F68BD6F50}&quot; = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | <br />
&quot;TCP Query User{98D53990-E9E2-4979-95A8-0486557387B7}C:\program files\icq6.5\icq.exe&quot; = protocol=6 | dir=in | app=c:\program files\icq6.5\icq.exe | <br />
&quot;TCP Query User{9A1EA90D-D3F8-4B74-9A48-CC1F7B88B1F6}C:\program files\sopcast\adv\sopadver.exe&quot; = protocol=6 | dir=in | app=c:\program files\sopcast\adv\sopadver.exe | <br />
&quot;TCP Query User{A6B609D9-0611-401A-94FF-1663C9F70A93}C:\program files\internet explorer\iexplore.exe&quot; = protocol=6 | dir=in | app=c:\program files\internet explorer\iexplore.exe | <br />
&quot;TCP Query User{A6FABDFF-FFAD-4C6B-BD9F-28A4099F4923}C:\program files\sopcast\sopcast.exe&quot; = protocol=6 | dir=in | app=c:\program files\sopcast\sopcast.exe | <br />
&quot;TCP Query User{B03FC2F3-4659-489C-BACA-16756DAD6E05}C:\program files\icq6.5\icq.exe&quot; = protocol=6 | dir=in | app=c:\program files\icq6.5\icq.exe | <br />
&quot;UDP Query User{0D7BC04D-4EEC-4E92-A47A-A60B7BB69F48}C:\program files\sopcast\adv\sopadver.exe&quot; = protocol=17 | dir=in | app=c:\program files\sopcast\adv\sopadver.exe | <br />
&quot;UDP Query User{14F769D2-7684-4587-A0BA-AE84D3882483}C:\program files\sopcast\sopcast.exe&quot; = protocol=17 | dir=in | app=c:\program files\sopcast\sopcast.exe | <br />
&quot;UDP Query User{5D624430-FCA2-4BE5-A6B8-1400521BCCB5}C:\program files\internet explorer\iexplore.exe&quot; = protocol=17 | dir=in | app=c:\program files\internet explorer\iexplore.exe | <br />
&quot;UDP Query User{9ABB994B-7666-4369-B426-8E7699C6FB2F}C:\program files\icq6.5\icq.exe&quot; = protocol=17 | dir=in | app=c:\program files\icq6.5\icq.exe | <br />
&quot;UDP Query User{B47D192E-AB4A-4557-9B52-4C76A1A5A879}C:\program files\icq6.5\icq.exe&quot; = protocol=17 | dir=in | app=c:\program files\icq6.5\icq.exe | <br />
&nbsp;<br />
<font color="#E56717">========== HKEY_LOCAL_MACHINE Uninstall List ==========</font><br />
&nbsp;<br />
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]<br />
&quot;{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}&quot; = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148<br />
&quot;{13F3917B56CD4C25848BDC69916971BB}&quot; = DivX Converter<br />
&quot;{1744f9bd-714f-4054-8257-a7f501a4ccd8}&quot; = Nero 9 Essentials<br />
&quot;{18D10072035C4515918F7E37EAFAACFC}&quot; = AutoUpdate<br />
&quot;{1E9FF55F-6FFE-4502-9EAF-23EC215007EF}&quot; = TVsweeper<br />
&quot;{205C6BDD-7B73-42DE-8505-9A093F35A238}&quot; = Windows Live-Uploadtool<br />
&quot;{20D4A895-748C-4D88-871C-FDB1695B0169}&quot; = Platform<br />
&quot;{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}&quot; = MSVCRT<br />
&quot;{26A24AE4-039D-4CA4-87B4-2F83216013FF}&quot; = Java(TM) 6 Update 15<br />
&quot;{2BA722D1-48D1-406E-9123-8AE5431D63EF}&quot; = Windows Live Fotogalerie<br />
&quot;{3AF8FCCD-F51A-4014-9002-F195E1CBC876}&quot; = Logitech QuickCam<br />
&quot;{3B4E636E-9D65-4D67-BA61-189800823F52}&quot; = Windows Live Communications Platform<br />
&quot;{3FC7CBBC4C1E11DCA1A752EA55D89593}&quot; = DivX Version Checker<br />
&quot;{41E654A9-26D0-4EAC-854B-0FA824FFFABB}&quot; = Windows Live Messenger<br />
&quot;{4D43D635-6FDA-4fa5-AA9B-23CF73D058EA}&quot; = Nero StartSmart OEM<br />
&quot;{52B97218-98CB-4B8B-9283-D213C85E1AA4}&quot; = Windows Live Anmelde-Assistent<br />
&quot;{53735ECE-E461-4FD0-B742-23A352436D3A}&quot; = Logitech Updater<br />
&quot;{56C049BE-79E9-4502-BEA7-9754A3E60F9B}&quot; = neroxml<br />
&quot;{5EE7D259-D137-4438-9A5F-42F432EC0421}&quot; = VC80CRTRedist - 8.0.50727.4053<br />
&quot;{5FC68772-6D56-41C6-9DF1-24E868198AE6}&quot; = Windows Live Call<br />
&quot;{60DE4033-9503-48D1-A483-7846BD217CA9}&quot; = ICQ6.5<br />
&quot;{7299052b-02a4-4627-81f2-1818da5d550d}&quot; = Microsoft Visual C++ 2005 Redistributable<br />
&quot;{76618402-179D-4699-A66B-D351C59436BC}&quot; = Windows Live Sync<br />
&quot;{770657D0-A123-3C07-8E44-1C83EC895118}&quot; = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053<br />
&quot;{7748ac8c-18e3-43bb-959b-088faea16fb2}&quot; = Nero StartSmart<br />
&quot;{7B63B2922B174135AFC0E1377DD81EC2}&quot; = DivX Codec<br />
&quot;{8ADFC4160D694100B5B8A22DE9DCABD9}&quot; = DivX Player<br />
&quot;{90850407-6000-11D3-8CFE-0150048383C9}&quot; = Microsoft Office Word Viewer 2003<br />
&quot;{95120000-00B9-0409-0000-0000000FF1CE}&quot; = Microsoft Application Error Reporting<br />
&quot;{9A25302D-30C0-39D9-BD6F-21E6EC160475}&quot; = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17<br />
&quot;{A96E97134CA649888820BCDE5E300BBD}&quot; = H.264 Decoder<br />
&quot;{AAC389499AEF40428987B3D30CFC76C9}&quot; = MKV Splitter<br />
&quot;{AC76BA86-7AD7-1031-7B44-A92000000001}&quot; = Adobe Reader 9.2 - Deutsch<br />
&quot;{AEF9DC35ADDF4825B049ACBFD1C6EB37}&quot; = AAC Decoder<br />
&quot;{B13A7C41581B411290FBC0395694E2A9}&quot; = DivX Converter<br />
&quot;{b2ec4a38-b545-4a00-8214-13fe0e915e6d}&quot; = Advertising Center<br />
&quot;{B7050CBDB2504B34BC2A9CA0A692CC29}&quot; = DivX Web Player<br />
&quot;{BC4AE628-81A4-4FC6-863A-7A9BA2E2531F}&quot; = Nokia Connectivity Cable Driver<br />
&quot;{bd5ca0da-71ad-43da-b19e-6eee0c9adc9a}&quot; = Nero ControlCenter<br />
&quot;{C4D738F7-996A-4C81-B8FA-C4E26D767E41}&quot; = Windows Live Mail<br />
&quot;{D4C9692E-4EFA-4DA0-8B7F-9439466D9E31}&quot; = Full Tilt Poker<br />
&quot;{dba84796-8503-4ff0-af57-1747dd9a166d}&quot; = Nero Online Upgrade<br />
&quot;{E1BBBAC5-2857-4155-82A6-54492CE88620}&quot; = Opera 9.64<br />
&quot;{E2DFE069-083E-4631-9B6C-43C48E991DE5}&quot; = Junk Mail filter update<br />
&quot;{e8a80433-302b-4ff1-815d-fcc8eac482ff}&quot; = Nero Installer<br />
&quot;{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}&quot; = Microsoft SQL Server 2005 Compact Edition [ENU]<br />
&quot;{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}&quot; = Microsoft Choice Guard<br />
&quot;{F8FF18EE-264A-43FD-B2F6-5EAD40798C2F}&quot; = Windows Live Essentials<br />
&quot;Adobe Flash Player ActiveX&quot; = Adobe Flash Player 10 ActiveX<br />
&quot;Adobe Flash Player Plugin&quot; = Adobe Flash Player 10 Plugin<br />
&quot;DivX Plus DirectShow Filters&quot; = DivX Plus DirectShow Filters<br />
&quot;HijackThis&quot; = HijackThis 2.0.2<br />
&quot;Lexmark X1100 Series&quot; = Lexmark X1100 Series<br />
&quot;lvdrivers_11.80&quot; = Logitech QuickCam-Treiberpaket<br />
&quot;Malwarebytes' Anti-Malware_is1&quot; = Malwarebytes' Anti-Malware<br />
&quot;Mozilla Firefox (3.5.7)&quot; = Mozilla Firefox (3.5.7)<br />
&quot;Mp3tag&quot; = Mp3tag v2.40<br />
&quot;RealPlayer 12.0&quot; = RealPlayer<br />
&quot;SopCast&quot; = SopCast 3.0.3<br />
&quot;Virtual DJ - Atomix Productions&quot; = Virtual DJ - Atomix Productions<br />
&quot;VLC media player&quot; = VLC media player 1.0.1<br />
&quot;WinLiveSuite_Wave3&quot; = Windows Live Essentials<br />
&quot;WinRAR archiver&quot; = WinRAR<br />
&quot;X10Hardware&quot; = X10 Hardware(TM)<br />
&nbsp;<br />
<font color="#E56717">========== Last 10 Event Log Errors ==========</font><br />
&nbsp;<br />
[ Application Events ]<br />
Error - 04.01.2010 15:19:47 | Computer Name = Home-PC | Source = System Restore | ID = 8193<br />
Description = <br />
&nbsp;<br />
Error - 04.01.2010 15:26:43 | Computer Name = Home-PC | Source = Application Error | ID = 1000<br />
Description = Fehlerhafte Anwendung MSASCui.exe, Version 1.1.1505.0, Zeitstempel<br />
&nbsp;0x45ad82d9, fehlerhaftes Modul ntdll.dll, Version 6.0.6000.16386, Zeitstempel 0x4549bdc9,<br />
&nbsp;Ausnahmecode 0x80000003, Fehleroffset 0x00008fc7,&nbsp; Prozess-ID 0x564, Anwendungsstartzeit<br />
&nbsp;01ca8d73ba8b3a62.<br />
&nbsp;<br />
Error - 04.01.2010 15:54:28 | Computer Name = Home-PC | Source = Application Error | ID = 1000<br />
Description = Fehlerhafte Anwendung mbam.exe, Version 1.43.0.0, Zeitstempel 0x4b3bba31,<br />
&nbsp;fehlerhaftes Modul mbam.exe, Version 1.43.0.0, Zeitstempel 0x4b3bba31, Ausnahmecode<br />
&nbsp;0x80000003, Fehleroffset 0x00003114,&nbsp; Prozess-ID 0x79c, Anwendungsstartzeit 01ca8d77b8d9a4e7.<br />
&nbsp;<br />
Error - 04.01.2010 16:01:10 | Computer Name = Home-PC | Source = Application Error | ID = 1000<br />
Description = Fehlerhafte Anwendung Opera.exe, Version 9.64.10487.0, Zeitstempel<br />
&nbsp;0x49a6659c, fehlerhaftes Modul PCTLsp.dll_unloaded, Version 0.0.0.0, Zeitstempel<br />
&nbsp;0x4a67a8e7, Ausnahmecode 0xc0000005, Fehleroffset 0x026712b0,&nbsp; Prozess-ID 0xa24, <br />
Anwendungsstartzeit 01ca8d73f3aea7ab.<br />
&nbsp;<br />
Error - 04.01.2010 16:20:45 | Computer Name = Home-PC | Source = Application Error | ID = 1000<br />
Description = Fehlerhafte Anwendung MSASCui.exe, Version 1.1.1505.0, Zeitstempel<br />
&nbsp;0x45ad82d9, fehlerhaftes Modul MpClient.dll, Version 1.1.1505.0, Zeitstempel 0x45ad8fe2,<br />
&nbsp;Ausnahmecode 0x80000003, Fehleroffset 0x00013b34,&nbsp; Prozess-ID 0x6f0, Anwendungsstartzeit<br />
&nbsp;01ca8d7b5cf22101.<br />
&nbsp;<br />
Error - 04.01.2010 16:20:49 | Computer Name = Home-PC | Source = Application Error | ID = 1000<br />
Description = Fehlerhafte Anwendung MSASCui.exe, Version 1.1.1505.0, Zeitstempel<br />
&nbsp;0x45ad82d9, fehlerhaftes Modul MSASCui.exe, Version 1.1.1505.0, Zeitstempel 0x45ad82d9,<br />
&nbsp;Ausnahmecode 0x80000003, Fehleroffset 0x00062b27,&nbsp; Prozess-ID 0x6f0, Anwendungsstartzeit<br />
&nbsp;01ca8d7b5cf22101.<br />
&nbsp;<br />
Error - 09.01.2010 11:56:08 | Computer Name = Home-PC | Source = ESENT | ID = 215<br />
Description = wlcomm (1352) C:\Users\Home\AppData\Local\Microsoft\Windows Live Contacts\{fe9c9982-381e-415f-abef-5df10c5116d0}\:<br />
&nbsp;The backup has been stopped because it was halted by the client or the connection<br />
&nbsp;with the client failed.<br />
&nbsp;<br />
Error - 16.01.2010 20:00:26 | Computer Name = Home-PC | Source = Application Error | ID = 1000<br />
Description = Fehlerhafte Anwendung msnmsgr.exe, Version 14.0.8089.726, Zeitstempel<br />
&nbsp;0x4a6ce533, fehlerhaftes Modul unknown, Version 0.0.0.0, Zeitstempel 0x00000000,<br />
&nbsp;Ausnahmecode 0xc0000005, Fehleroffset 0x00000000,&nbsp; Prozess-ID 0x484, Anwendungsstartzeit<br />
&nbsp;01ca96f2798fe133.<br />
&nbsp;<br />
Error - 22.01.2010 14:09:50 | Computer Name = Home-PC | Source = Application Error | ID = 1000<br />
Description = Fehlerhafte Anwendung Opera.exe, Version 9.64.10487.0, Zeitstempel<br />
&nbsp;0x49a6659c, fehlerhaftes Modul Multimedia.api, Version 9.2.0.124, Zeitstempel 0x4ac71df2,<br />
&nbsp;Ausnahmecode 0xc0000005, Fehleroffset 0x00042f8b,&nbsp; Prozess-ID 0x61c, Anwendungsstartzeit<br />
&nbsp;01ca9b8440c445f7.<br />
&nbsp;<br />
Error - 28.01.2010 10:21:51 | Computer Name = Home-PC | Source = Application Error | ID = 1000<br />
Description = Fehlerhafte Anwendung av.exe, Version 0.0.0.0, Zeitstempel 0x4984e258,<br />
&nbsp;fehlerhaftes Modul unknown, Version 0.0.0.0, Zeitstempel 0x00000000, Ausnahmecode<br />
&nbsp;0xc0000005, Fehleroffset 0x005153a9,&nbsp; Prozess-ID 0x10ec, Anwendungsstartzeit 01caa025374dd80e.<br />
&nbsp;<br />
[ System Events ]<br />
Error - 29.08.2009 12:19:09 | Computer Name = Home-PC | Source = Microsoft-Windows-Servicing | ID = 4385<br />
Description = <br />
&nbsp;<br />
Error - 29.08.2009 12:19:09 | Computer Name = Home-PC | Source = Microsoft-Windows-Servicing | ID = 4385<br />
Description = <br />
&nbsp;<br />
Error - 29.08.2009 12:19:09 | Computer Name = Home-PC | Source = Microsoft-Windows-Servicing | ID = 4375<br />
Description = <br />
&nbsp;<br />
Error - 29.08.2009 12:19:09 | Computer Name = Home-PC | Source = Microsoft-Windows-Servicing | ID = 4375<br />
Description = <br />
&nbsp;<br />
Error - 29.08.2009 12:19:09 | Computer Name = Home-PC | Source = Microsoft-Windows-Servicing | ID = 4375<br />
Description = <br />
&nbsp;<br />
Error - 29.08.2009 12:19:09 | Computer Name = Home-PC | Source = Microsoft-Windows-Servicing | ID = 4375<br />
Description = <br />
&nbsp;<br />
Error - 29.08.2009 12:19:09 | Computer Name = Home-PC | Source = Microsoft-Windows-Servicing | ID = 4375<br />
Description = <br />
&nbsp;<br />
Error - 29.08.2009 12:19:09 | Computer Name = Home-PC | Source = Microsoft-Windows-Servicing | ID = 4375<br />
Description = <br />
&nbsp;<br />
Error - 29.08.2009 12:19:09 | Computer Name = Home-PC | Source = Microsoft-Windows-Servicing | ID = 4375<br />
Description = <br />
&nbsp;<br />
Error - 29.08.2009 12:19:09 | Computer Name = Home-PC | Source = Microsoft-Windows-Servicing | ID = 4375<br />
Description = <br />
&nbsp;<br />
&nbsp;<br />
&lt; End of report &gt;</code><hr />
</div> OTL.Txt<br />
<br />
 <div class="bbcode_container">
	<div class="bbcode_description">Code:</div>
	<hr /><code class="bbcode_code">OTL logfile created on: 28.01.2010 20:27:25 - Run 1<br />
OTL by OldTimer - Version 3.1.27.0&nbsp; &nbsp;  Folder = C:\Users\Home\Desktop<br />
Windows Vista Home Premium Edition&nbsp; (Version = 6.0.6000) - Type = NTWorkstation<br />
Internet Explorer (Version = 7.0.6000.16386)<br />
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy<br />
&nbsp;<br />
1.022,00 Mb Total Physical Memory | 491,00 Mb Available Physical Memory | 48,00% Memory free<br />
2,00 Gb Paging File | 1,00 Gb Available in Paging File | 64,00% Paging File free<br />
Paging file location(s): ?:\pagefile.sys [binary data]<br />
&nbsp;<br />
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files<br />
Drive C: | 24,42 Gb Total Space | 4,74 Gb Free Space | 19,42% Space Free | Partition Type: NTFS<br />
Drive D: | 208,46 Gb Total Space | 62,54 Gb Free Space | 30,00% Space Free | Partition Type: NTFS<br />
Drive E: | 232,88 Gb Total Space | 232,79 Gb Free Space | 99,96% Space Free | Partition Type: NTFS<br />
F: Drive not present or media not loaded<br />
Drive G: | 1,90 Gb Total Space | 1,08 Gb Free Space | 56,85% Space Free | Partition Type: FAT<br />
H: Drive not present or media not loaded<br />
I: Drive not present or media not loaded<br />
Drive J: | 465,65 Gb Total Space | 192,30 Gb Free Space | 41,30% Space Free | Partition Type: FAT32<br />
&nbsp;<br />
Computer Name: HOME-PC<br />
Current User Name: Home<br />
Logged in as Administrator.<br />
&nbsp;<br />
Current Boot Mode: Normal<br />
Scan Mode: Current user<br />
Company Name Whitelist: Off<br />
Skip Microsoft Files: Off<br />
File Age = 30 Days<br />
Output = Minimal<br />
&nbsp;<br />
<font color="#E56717">========== Processes (SafeList) ==========</font><br />
&nbsp;<br />
PRC - C:\Users\Home\Desktop\OTL.exe (OldTimer Tools)<br />
PRC - C:\Programme\Common Files\Real\Update_OB\realsched.exe (RealNetworks, Inc.)<br />
PRC - C:\Programme\Java\jre6\bin\jusched.exe (Sun Microsystems, Inc.)<br />
PRC - C:\Programme\Common Files\Nero\Nero BackItUp 4\NBService.exe (Nero AG)<br />
PRC - C:\Programme\Windows Defender\MSASCui.exe (Microsoft Corporation)<br />
PRC - C:\Windows\explorer.exe (Microsoft Corporation)<br />
PRC - C:\Programme\Windows Sidebar\sidebar.exe (Microsoft Corporation)<br />
PRC - C:\Programme\Opera\opera.exe (Opera Software)<br />
PRC - C:\Programme\Logitech\QuickCam\Quickcam.exe ()<br />
PRC - C:\Programme\Common Files\LogiShrd\LComMgr\Communications_Helper.exe ()<br />
PRC - C:\Programme\Common Files\LogiShrd\LQCVFX\COCIManager.exe (Logitech Inc.)<br />
PRC - C:\Programme\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe (Logitech Inc.)<br />
PRC - C:\Programme\Common Files\LogiShrd\LVCOMSER\LVComSer.exe (Logitech Inc.)<br />
PRC - C:\Programme\Lexmark X1100 Series\LXBKbmgr.exe (Lexmark International, Inc.)<br />
PRC - C:\Programme\Lexmark X1100 Series\LXBKbmon.exe (Lexmark International, Inc.)<br />
PRC - C:\Windows\System32\lxbkcoms.exe ( )<br />
PRC - C:\Programme\Windows Media Player\wmpnetwk.exe (Microsoft Corporation)<br />
PRC - C:\Programme\Windows Media Player\wmpnscfg.exe (Microsoft Corporation)<br />
PRC - C:\Windows\System32\WUDFHost.exe (Microsoft Corporation)<br />
PRC - C:\Windows\System32\audiodg.exe (Microsoft Corporation)<br />
PRC - C:\Programme\Common Files\X10\Common\X10nets.exe (X10)<br />
&nbsp;<br />
&nbsp;<br />
<font color="#E56717">========== Modules (SafeList) ==========</font><br />
&nbsp;<br />
MOD - C:\Users\Home\Desktop\OTL.exe (OldTimer Tools)<br />
MOD - C:\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6000.16782_none_9ea1072ec96e0be7\GdiPlus.dll (Microsoft Corporation)<br />
MOD - C:\Windows\Temp\logishrd\LVPrcInj02.dll (Logitech Inc.)<br />
MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\comctl32.dll (Microsoft Corporation)<br />
&nbsp;<br />
&nbsp;<br />
<font color="#E56717">========== Win32 Services (SafeList) ==========</font><br />
&nbsp;<br />
SRV - (Nero BackItUp Scheduler 4.0) -- C:\Programme\Common Files\Nero\Nero BackItUp 4\NBService.exe (Nero AG)<br />
SRV - (WinDefend) -- C:\Programme\Windows Defender\MpSvc.dll (Microsoft Corporation)<br />
SRV - (LVPrcSrv) -- C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe (Logitech Inc.)<br />
SRV - (LVCOMSer) -- C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe (Logitech Inc.)<br />
SRV - (lxbk_device) -- C:\Windows\System32\lxbkcoms.exe ( )<br />
SRV - (ehstart) -- C:\Windows\ehome\ehstart.dll (Microsoft Corporation)<br />
SRV - (ose) -- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE (Microsoft Corporation)<br />
SRV - (x10nets) -- C:\Programme\Common Files\X10\Common\X10nets.exe (X10)<br />
&nbsp;<br />
&nbsp;<br />
<font color="#E56717">========== Driver Services (SafeList) ==========</font><br />
&nbsp;<br />
DRV - (viaide) -- C:\Windows\system32\drivers\viaide.sys (VIA Technologies, Inc.)<br />
DRV - (LVUSBSta) -- C:\Windows\System32\drivers\LVUSBSta.sys (Logitech Inc.)<br />
DRV - (LVRS) -- C:\Windows\System32\drivers\lvrs.sys (Logitech Inc.)<br />
DRV - (PID_PEPI) Logitech QuickCam IM(PID_PEPI) -- C:\Windows\System32\drivers\LV302V32.SYS (Logitech Inc.)<br />
DRV - (pepifilter) -- C:\Windows\System32\drivers\lv302af.sys (Logitech Inc.)<br />
DRV - (LVPr2Mon) -- C:\Windows\System32\drivers\LVPr2Mon.sys ()<br />
DRV - (upperdev) -- C:\Windows\System32\drivers\usbser_lowerflt.sys (Windows (R) Codename Longhorn DDK provider)<br />
DRV - (nmwcd) -- C:\Windows\System32\drivers\ccdcmb.sys (Nokia)<br />
DRV - (HdAudAddService) -- C:\Windows\System32\drivers\viahduaa.sys (VIA Technologies, Inc.)<br />
DRV - (X10Hid) -- C:\Windows\System32\drivers\x10hid.sys (X10 Wireless Technology, Inc.)<br />
DRV - (ql2300) -- C:\Windows\system32\drivers\ql2300.sys (QLogic Corporation)<br />
DRV - (adp94xx) -- C:\Windows\system32\drivers\adp94xx.sys (Adaptec, Inc.)<br />
DRV - (elxstor) -- C:\Windows\system32\drivers\elxstor.sys (Emulex)<br />
DRV - (adpahci) -- C:\Windows\system32\drivers\adpahci.sys (Adaptec, Inc.)<br />
DRV - (uliahci) -- C:\Windows\system32\drivers\uliahci.sys (ULi Electronics Inc.)<br />
DRV - (iaStorV) -- C:\Windows\system32\drivers\iastorv.sys (Intel Corporation)<br />
DRV - (adpu320) -- C:\Windows\system32\drivers\adpu320.sys (Adaptec, Inc.)<br />
DRV - (ulsata2) -- C:\Windows\system32\drivers\ulsata2.sys (Promise Technology, Inc.)<br />
DRV - (vsmraid) -- C:\Windows\system32\drivers\vsmraid.sys (VIA Technologies Inc.,Ltd)<br />
DRV - (ql40xx) -- C:\Windows\system32\drivers\ql40xx.sys (QLogic Corporation)<br />
DRV - (UlSata) -- C:\Windows\system32\drivers\ulsata.sys (Promise Technology, Inc.)<br />
DRV - (adpu160m) -- C:\Windows\system32\drivers\adpu160m.sys (Adaptec, Inc.)<br />
DRV - (nvraid) -- C:\Windows\system32\drivers\nvraid.sys (NVIDIA Corporation)<br />
DRV - (nfrd960) -- C:\Windows\system32\drivers\nfrd960.sys (IBM Corporation)<br />
DRV - (iirsp) -- C:\Windows\system32\drivers\iirsp.sys (Intel Corp./ICP vortex GmbH)<br />
DRV - (SiSRaid4) -- C:\Windows\system32\drivers\sisraid4.sys (Silicon Integrated Systems)<br />
DRV - (nvstor) -- C:\Windows\system32\drivers\nvstor.sys (NVIDIA Corporation)<br />
DRV - (aic78xx) -- C:\Windows\system32\drivers\djsvs.sys (Adaptec, Inc.)<br />
DRV - (arcsas) -- C:\Windows\system32\drivers\arcsas.sys (Adaptec, Inc.)<br />
DRV - (LSI_SCSI) -- C:\Windows\system32\drivers\lsi_scsi.sys (LSI Logic)<br />
DRV - (SiSRaid2) -- C:\Windows\system32\drivers\sisraid2.sys (Silicon Integrated Systems Corp.)<br />
DRV - (HpCISSs) -- C:\Windows\system32\drivers\hpcisss.sys (Hewlett-Packard Company)<br />
DRV - (arc) -- C:\Windows\system32\drivers\arc.sys (Adaptec, Inc.)<br />
DRV - (iteraid) -- C:\Windows\system32\drivers\iteraid.sys (Integrated Technology Express, Inc.)<br />
DRV - (iteatapi) -- C:\Windows\system32\drivers\iteatapi.sys (Integrated Technology Express, Inc.)<br />
DRV - (LSI_SAS) -- C:\Windows\system32\drivers\lsi_sas.sys (LSI Logic)<br />
DRV - (Symc8xx) -- C:\Windows\system32\drivers\symc8xx.sys (LSI Logic)<br />
DRV - (LSI_FC) -- C:\Windows\system32\drivers\lsi_fc.sys (LSI Logic)<br />
DRV - (Sym_u3) -- C:\Windows\system32\drivers\sym_u3.sys (LSI Logic)<br />
DRV - (Mraid35x) -- C:\Windows\system32\drivers\mraid35x.sys (LSI Logic Corporation)<br />
DRV - (Sym_hi) -- C:\Windows\system32\drivers\sym_hi.sys (LSI Logic)<br />
DRV - (megasas) -- C:\Windows\system32\drivers\megasas.sys (LSI Logic Corporation)<br />
DRV - (cmdide) -- C:\Windows\system32\drivers\cmdide.sys (CMD Technology, Inc.)<br />
DRV - (aliide) -- C:\Windows\system32\drivers\aliide.sys (Acer Laboratories Inc.)<br />
DRV - (usbser) -- C:\Windows\System32\drivers\usbser.sys (Microsoft Corporation)<br />
DRV - (usbaudio) USB-Audiotreiber (WDM) -- C:\Windows\System32\drivers\USBAUDIO.sys (Microsoft Corporation)<br />
DRV - (Brserid) Brother MFC Serial Port Interface Driver (WDM) -- C:\Windows\system32\drivers\brserid.sys (Brother Industries Ltd.)<br />
DRV - (BrUsbSer) -- C:\Windows\system32\drivers\brusbser.sys (Brother Industries Ltd.)<br />
DRV - (BrFiltUp) -- C:\Windows\system32\drivers\brfiltup.sys (Brother Industries, Ltd.)<br />
DRV - (BrFiltLo) -- C:\Windows\system32\drivers\brfiltlo.sys (Brother Industries, Ltd.)<br />
DRV - (BrSerWdm) -- C:\Windows\system32\drivers\brserwdm.sys (Brother Industries Ltd.)<br />
DRV - (BrUsbMdm) -- C:\Windows\system32\drivers\brusbmdm.sys (Brother Industries Ltd.)<br />
DRV - (ntrigdigi) -- C:\Windows\system32\drivers\ntrigdigi.sys (N-trig Innovative Technologies)<br />
DRV - (R300) -- C:\Windows\System32\drivers\atikmdag.sys (ATI Technologies Inc.)<br />
DRV - (FETNDIS) -- C:\Windows\System32\drivers\fetnd5.sys (VIA Technologies, Inc.&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; )<br />
DRV - (E1G60) Intel(R) -- C:\Windows\System32\drivers\E1G60I32.sys (Intel Corporation)<br />
DRV - (secdrv) -- C:\Windows\System32\drivers\secdrv.sys (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.)<br />
DRV - (nvlddmkm) -- C:\Windows\System32\drivers\nvlddmkm.sys (NVIDIA Corporation)<br />
&nbsp;<br />
&nbsp;<br />
<font color="#E56717">========== Standard Registry (SafeList) ==========</font><br />
&nbsp;<br />
&nbsp;<br />
<font color="#E56717">========== Internet Explorer ==========</font><br />
&nbsp;<br />
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm<br />
&nbsp;<br />
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: &quot;ProxyEnable&quot; = 0<br />
&nbsp;<br />
<font color="#E56717">========== FireFox ==========</font><br />
&nbsp;<br />
FF - prefs.js..browser.search.defaultenginename: &quot;ICQ Search&quot;<br />
FF - prefs.js..browser.search.defaulturl: &quot;http://search.live.com/results.aspx?FORM=IEFM1&amp;q=&quot;<br />
FF - prefs.js..browser.search.selectedEngine: &quot;Google&quot;<br />
FF - prefs.js..browser.search.useDBForOrder: true<br />
FF - prefs.js..browser.startup.homepage: &quot;http://www.studivz.net/Start&quot;<br />
FF - prefs.js..keyword.URL: &quot;http://search.icq.com/search/afe_results.php?ch_id=afex&amp;q=&quot;<br />
&nbsp;<br />
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.7\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010.01.17 22:00:02 | 00,000,000 | ---D | M]<br />
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.7\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010.01.07 16:28:00 | 00,000,000 | ---D | M]<br />
&nbsp;<br />
[2009.04.16 16:17:22 | 00,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\mozilla\Extensions<br />
[2009.04.16 20:43:47 | 00,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\mozilla\Firefox\Profiles\xrf6ihlz.default\extensions<br />
[2010.01.25 18:50:20 | 00,000,961 | ---- | M] () -- C:\Users\Home\AppData\Roaming\Mozilla\FireFox\Profiles\xrf6ihlz.default\searchplugins\icqplugin-1.xml<br />
[2009.08.06 01:11:46 | 00,000,950 | ---- | M] () -- C:\Users\Home\AppData\Roaming\Mozilla\FireFox\Profiles\xrf6ihlz.default\searchplugins\icqplugin-2.xml<br />
[2009.07.20 20:36:37 | 00,000,950 | ---- | M] () -- C:\Users\Home\AppData\Roaming\Mozilla\FireFox\Profiles\xrf6ihlz.default\searchplugins\icqplugin.xml<br />
[2009.04.16 20:43:16 | 00,001,632 | ---- | M] () -- C:\Users\Home\AppData\Roaming\Mozilla\FireFox\Profiles\xrf6ihlz.default\searchplugins\live-search.xml<br />
[2010.01.28 16:29:51 | 00,000,000 | ---D | M] -- C:\Programme\Mozilla Firefox\extensions<br />
[2009.08.31 19:25:16 | 00,001,392 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\amazondotcom-de.xml<br />
[2009.08.31 19:25:16 | 00,002,344 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\eBay-de.xml<br />
[2009.08.31 19:25:16 | 00,006,805 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\leo_ende_de.xml<br />
[2009.09.12 16:59:35 | 00,001,178 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\wikipedia-de.xml<br />
[2009.08.31 19:25:16 | 00,000,801 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\yahoo-de.xml<br />
&nbsp;<br />
O1 HOSTS File: ([2006.09.18 22:41:30 | 00,000,761 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts<br />
O1 - Hosts: 127.0.0.1&nbsp; &nbsp; &nbsp;  localhost<br />
O1 - Hosts: ::1&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  localhost<br />
O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Programme\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)<br />
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)<br />
O2 - BHO: (Windows Live Anmelde-Hilfsprogramm) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)<br />
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programme\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)<br />
O4 - HKLM..\Run: [Adobe ARM] C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Adobe Systems Incorporated)<br />
O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe (Adobe Systems Incorporated)<br />
O4 - HKLM..\Run: [LogitechCommunicationsManager] C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe ()<br />
O4 - HKLM..\Run: [LogitechQuickCamRibbon] C:\Program Files\Logitech\QuickCam\Quickcam.exe ()<br />
O4 - HKLM..\Run: [lxbkbmgr.exe] C:\Program Files\Lexmark X1100 Series\lxbkbmgr.exe (Lexmark International, Inc.)<br />
O4 - HKLM..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre6\bin\jusched.exe (Sun Microsystems, Inc.)<br />
O4 - HKLM..\Run: [TkBellExe] C:\Program Files\Common Files\Real\Update_OB\realsched.exe (RealNetworks, Inc.)<br />
O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)<br />
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0<br />
O9 - Extra Button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Programme\ICQ6.5\ICQ.exe (ICQ, LLC.)<br />
O9 - Extra 'Tools' menuitem : ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Programme\ICQ6.5\ICQ.exe (ICQ, LLC.)<br />
O13 - gopher Prefix: missing<br />
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab (Java Plug-in 1.6.0_15)<br />
O16 - DPF: {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab (Java Plug-in 1.6.0_15)<br />
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab (Java Plug-in 1.6.0_15)<br />
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)<br />
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 81.173.194.77 194.8.194.60<br />
O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Programme\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)<br />
O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Programme\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)<br />
O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Programme\Windows Live\Mail\mailcomm.dll (Microsoft Corporation)<br />
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)<br />
O24 - Desktop WallPaper: C:\Users\Home\AppData\Roaming\Microsoft\Windows Photo Gallery\Hintergrundbild der Windows-Fotogalerie.jpg<br />
O24 - Desktop BackupWallPaper: C:\Users\Home\AppData\Roaming\Microsoft\Windows Photo Gallery\Hintergrundbild der Windows-Fotogalerie.jpg<br />
O32 - HKLM CDRom: AutoRun - 1<br />
O32 - AutoRun File - [2006.09.18 22:43:36 | 00,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]<br />
O33 - MountPoints2\L\Shell - &quot;&quot; = AutoRun<br />
O33 - MountPoints2\L\Shell\AutoRun\command - &quot;&quot; = L:\Enterprise_Launcher.exe -- File not found<br />
O34 - HKLM BootExecute: (autocheck autochk *) -&nbsp; File not found<br />
O35 - comfile [open] -- &quot;%1&quot; %*<br />
O35 - exefile [open] -- &quot;%1&quot; %*<br />
&nbsp;<br />
<font color="#E56717">========== Files/Folders - Created Within 30 Days ==========</font><br />
&nbsp;<br />
[2010.01.28 20:21:58 | 00,548,864 | ---- | C] (OldTimer Tools) -- C:\Users\Home\Desktop\OTL.exe<br />
[2010.01.28 15:27:50 | 00,000,000 | ---D | C] -- C:\Users\Home\AppData\Roaming\ScanSpyware<br />
[2010.01.28 15:27:49 | 00,000,000 | ---D | C] -- C:\Programme\ScanSpyware<br />
[2010.01.27 20:22:59 | 00,000,000 | ---D | C] -- C:\Users\Home\Desktop\Neuer Ordner (3)<br />
[2010.01.27 20:02:08 | 00,000,000 | ---D | C] -- C:\Users\Home\Desktop\Neuer Ordner (2)<br />
[2010.01.27 18:58:24 | 00,000,000 | ---D | C] -- C:\Users\Home\Desktop\Neuer Ordner<br />
[2010.01.24 17:55:24 | 00,000,000 | ---D | C] -- C:\Users\Home\Desktop\doudou<br />
[2010.01.21 12:59:47 | 00,000,000 | ---D | C] -- C:\Programme\Microsoft Office<br />
[2010.01.21 12:59:08 | 00,000,000 | ---D | C] -- C:\Programme\MSECache<br />
[2010.01.04 21:56:16 | 00,000,000 | ---D | C] -- C:\Users\Home\AppData\Roaming\Malwarebytes<br />
[2010.01.04 20:19:04 | 00,195,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MpSigStub.exe<br />
[2010.01.04 20:18:21 | 00,000,000 | ---D | C] -- C:\Programme\MSXML 4.0<br />
[2010.01.04 20:17:51 | 00,604,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WMSPDMOD.DLL<br />
[2010.01.04 19:59:19 | 00,000,000 | ---D | C] -- C:\Programme\Enigma Software Group<br />
[2010.01.04 19:55:18 | 00,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys<br />
[2010.01.04 19:55:15 | 00,019,160 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys<br />
[2010.01.04 17:51:15 | 00,000,000 | ---D | C] -- C:\Programme\Malwarebytes' Anti-Malware<br />
[2010.01.04 17:51:15 | 00,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes<br />
[2010.01.04 17:07:15 | 00,000,000 | ---D | C] -- C:\Users\Home\AppData\Roaming\Uniblue<br />
[2010.01.04 16:27:01 | 00,000,000 | ---D | C] -- C:\ProgramData\TEMP<br />
[2009.06.16 15:00:07 | 00,991,232 | ---- | C] ( ) -- C:\Windows\System32\lxbkusb1.dll<br />
[2009.06.16 15:00:07 | 00,413,696 | ---- | C] ( ) -- C:\Windows\System32\lxbkinpa.dll<br />
[2009.06.16 15:00:07 | 00,397,312 | ---- | C] ( ) -- C:\Windows\System32\lxbkiesc.dll<br />
[2009.06.16 15:00:07 | 00,323,584 | ---- | C] ( ) -- C:\Windows\System32\LXBKhcp.dll<br />
[2009.06.16 15:00:06 | 01,224,704 | ---- | C] ( ) -- C:\Windows\System32\lxbkserv.dll<br />
[2009.06.16 15:00:06 | 00,643,072 | ---- | C] ( ) -- C:\Windows\System32\lxbkpmui.dll<br />
[2009.06.16 15:00:06 | 00,585,728 | ---- | C] ( ) -- C:\Windows\System32\lxbklmpm.dll<br />
[2009.06.16 15:00:06 | 00,163,840 | ---- | C] ( ) -- C:\Windows\System32\lxbkprox.dll<br />
[2009.06.16 15:00:06 | 00,094,208 | ---- | C] ( ) -- C:\Windows\System32\lxbkpplc.dll<br />
[2009.06.16 15:00:05 | 00,696,320 | ---- | C] ( ) -- C:\Windows\System32\lxbkhbn3.dll<br />
[2009.06.16 15:00:04 | 00,684,032 | ---- | C] ( ) -- C:\Windows\System32\lxbkcomc.dll<br />
[2009.06.16 15:00:04 | 00,421,888 | ---- | C] ( ) -- C:\Windows\System32\lxbkcomm.dll<br />
&nbsp;<br />
<font color="#E56717">========== Files - Modified Within 30 Days ==========</font><br />
&nbsp;<br />
[2010.01.28 20:27:15 | 02,359,296 | -HS- | M] () -- C:\Users\Home\ntuser.dat<br />
[2010.01.28 20:21:58 | 00,548,864 | ---- | M] (OldTimer Tools) -- C:\Users\Home\Desktop\OTL.exe<br />
[2010.01.28 19:32:55 | 00,003,168 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0<br />
[2010.01.28 19:32:55 | 00,003,168 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0<br />
[2010.01.28 19:32:52 | 00,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT<br />
[2010.01.28 19:32:48 | 00,067,584 | --S- | M] () -- C:\Windows\bootstat.dat<br />
[2010.01.28 19:32:45 | 10,721,60768 | -HS- | M] () -- C:\hiberfil.sys<br />
[2010.01.28 19:31:26 | 03,141,741 | -H-- | M] () -- C:\Users\Home\AppData\Local\IconCache.db<br />
[2010.01.28 19:06:30 | 01,872,472 | ---- | M] () -- C:\Users\Home\Desktop\SmitfraudFix.exe<br />
[2010.01.28 16:23:58 | 00,235,520 | ---- | M] () -- C:\Users\Home\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini<br />
[2010.01.28 16:05:17 | 00,000,000 | -H-- | M] () -- C:\Users\Home\Documents\Default.rdp<br />
[2010.01.28 15:16:45 | 00,049,368 | ---- | M] () -- C:\Users\Home\AppData\Local\GDIPFONTCACHEV1.DAT<br />
[2010.01.28 15:16:35 | 00,008,850 | -HS- | M] () -- C:\Users\Home\AppData\Local\HdBV4yMQ7OM5k<br />
[2010.01.28 01:28:52 | 00,001,361 | ---- | M] () -- C:\Users\Home\Desktop\movies.rtf<br />
[2010.01.21 14:00:13 | 01,461,736 | ---- | M] () -- C:\Windows\System32\PerfStringBackup.INI<br />
[2010.01.21 14:00:13 | 00,641,106 | ---- | M] () -- C:\Windows\System32\perfh007.dat<br />
[2010.01.21 14:00:13 | 00,609,944 | ---- | M] () -- C:\Windows\System32\perfh009.dat<br />
[2010.01.21 14:00:13 | 00,116,500 | ---- | M] () -- C:\Windows\System32\perfc007.dat<br />
[2010.01.21 14:00:13 | 00,103,726 | ---- | M] () -- C:\Windows\System32\perfc009.dat<br />
[2010.01.21 13:57:11 | 00,001,315 | ---- | M] () -- C:\Users\Home\Desktop\Lebenslauf Ramona.rtf<br />
[2010.01.21 13:55:33 | 00,000,317 | ---- | M] () -- C:\Windows\Lexstat.ini<br />
[2010.01.19 16:10:27 | 14,004,4668 | ---- | M] () -- C:\Windows\MEMORY.DMP<br />
[2010.01.18 20:26:05 | 00,000,510 | ---- | M] () -- C:\Windows\WORDPAD.INI<br />
[2010.01.18 19:50:53 | 00,000,430 | ---- | M] () -- C:\Users\Home\Desktop\gangstar.rtf<br />
[2010.01.14 20:51:57 | 00,000,262 | ---- | M] () -- C:\Users\Home\Desktop\lustig.rtf<br />
[2010.01.11 19:34:52 | 00,000,168 | ---- | M] () -- C:\Users\Home\Desktop\doplet.rtf<br />
[2010.01.09 20:09:44 | 00,000,424 | ---- | M] () -- C:\Users\Home\Desktop\fans.rtf<br />
[2010.01.07 22:57:35 | 00,000,025 | ---- | M] () -- C:\Windows\cdplayer.ini<br />
[2010.01.07 16:07:14 | 00,038,224 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys<br />
[2010.01.07 16:07:04 | 00,019,160 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys<br />
[2010.01.06 18:09:08 | 00,000,008 | ---- | M] () -- C:\ProgramData\sysReserve.ini<br />
[2010.01.04 23:23:28 | 00,000,437 | ---- | M] () -- C:\Users\Home\Desktop\dd.rtf<br />
[2010.01.04 21:16:43 | 00,000,202 | ---- | M] () -- C:\Windows\System32\srcr.dat<br />
[2010.01.04 20:17:51 | 00,604,672 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\WMSPDMOD.DLL<br />
[2010.01.04 17:36:59 | 00,004,853 | ---- | M] () -- C:\Users\Home\Desktop\aaaaaa.rtf<br />
[2010.01.04 12:14:36 | 00,000,860 | ---- | M] () -- C:\Windows\System32\krl32mainweq.dll<br />
&nbsp;<br />
<font color="#E56717">========== Files Created - No Company Name ==========</font><br />
&nbsp;<br />
[2010.01.28 19:05:53 | 01,872,472 | ---- | C] () -- C:\Users\Home\Desktop\SmitfraudFix.exe<br />
[2010.01.28 16:05:17 | 00,000,000 | -H-- | C] () -- C:\Users\Home\Documents\Default.rdp<br />
[2010.01.28 01:26:51 | 00,008,850 | -HS- | C] () -- C:\Users\Home\AppData\Local\HdBV4yMQ7OM5k<br />
[2010.01.21 13:57:11 | 00,001,315 | ---- | C] () -- C:\Users\Home\Desktop\Lebenslauf Ramona.rtf<br />
[2010.01.14 20:51:57 | 00,000,262 | ---- | C] () -- C:\Users\Home\Desktop\lustig.rtf<br />
[2010.01.11 19:34:52 | 00,000,168 | ---- | C] () -- C:\Users\Home\Desktop\doplet.rtf<br />
[2010.01.07 22:57:35 | 00,000,025 | ---- | C] () -- C:\Windows\cdplayer.ini<br />
[2010.01.04 19:37:48 | 10,721,60768 | -HS- | C] () -- C:\hiberfil.sys<br />
[2010.01.04 17:36:59 | 00,004,853 | ---- | C] () -- C:\Users\Home\Desktop\aaaaaa.rtf<br />
[2010.01.04 16:51:57 | 00,000,437 | ---- | C] () -- C:\Users\Home\Desktop\dd.rtf<br />
[2010.01.04 12:14:36 | 00,000,860 | ---- | C] () -- C:\Windows\System32\krl32mainweq.dll<br />
[2010.01.04 12:13:25 | 00,000,202 | ---- | C] () -- C:\Windows\System32\srcr.dat<br />
[2010.01.04 12:11:59 | 00,000,008 | ---- | C] () -- C:\ProgramData\sysReserve.ini<br />
[2009.07.31 20:01:30 | 00,000,067 | ---- | C] () -- C:\Windows\AVIConverter.INI<br />
[2009.06.19 18:47:16 | 00,066,482 | ---- | C] () -- C:\Windows\System32\lvcoinst.ini<br />
[2009.06.16 15:00:07 | 00,413,696 | ---- | C] () -- C:\Windows\System32\lxbkutil.dll<br />
[2009.06.16 15:00:07 | 00,274,432 | ---- | C] () -- C:\Windows\System32\LXBKinst.dll<br />
[2009.06.16 13:42:18 | 00,000,317 | ---- | C] () -- C:\Windows\Lexstat.ini<br />
[2009.06.15 22:31:17 | 00,000,510 | ---- | C] () -- C:\Windows\WORDPAD.INI<br />
[2009.04.17 15:16:08 | 00,235,520 | ---- | C] () -- C:\Users\Home\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini<br />
[2008.07.26 07:25:02 | 00,025,624 | ---- | C] () -- C:\Windows\System32\drivers\LVPr2Mon.sys<br />
[2007.02.07 16:57:50 | 00,039,899 | ---- | C] () -- C:\Windows\System32\rtsicis.ini<br />
[2007.01.22 07:49:34 | 00,344,064 | ---- | C] () -- C:\Windows\System32\lxbkcoin.dll<br />
[2006.12.21 14:18:00 | 00,497,496 | ---- | C] () -- C:\Windows\System32\XceedZip.dll<br />
[2006.11.02 13:35:32 | 00,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll<br />
[2006.11.02 11:25:44 | 00,159,744 | ---- | C] () -- C:\Windows\System32\atitmmxx.dll<br />
[2006.11.02 08:40:29 | 00,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini<br />
[2006.09.11 10:53:00 | 00,276,352 | ---- | C] () -- C:\Windows\System32\XceedSco.dll<br />
[2005.10.05 11:19:32 | 00,040,960 | ---- | C] () -- C:\Windows\System32\lxbkvs.dll<br />
[2005.09.13 15:27:10 | 00,061,440 | ---- | C] () -- C:\Windows\System32\lxbkcnv5.dll<br />
[2005.09.13 15:27:10 | 00,061,440 | ---- | C] () -- C:\Windows\System32\lxbkcnv4.dll<br />
[2004.12.07 09:11:00 | 00,258,352 | ---- | C] () -- C:\Windows\System32\unicows.dll<br />
&nbsp;<br />
<font color="#E56717">========== Alternate Data Streams ==========</font><br />
&nbsp;<br />
@Alternate Data Stream - 142 bytes -&gt; C:\Windows\System32:pctlsp.log<br />
@Alternate Data Stream - 119 bytes -&gt; C:\ProgramData\TEMP:7E95B6FD<br />
&lt; End of report &gt;</code><hr />
</div> Ich bedanke mich schonmal vielmals für eure unterstützung  !!!!!!!!</div>


	<div style="padding:10px">

	

	

	

	
		<fieldset class="fieldset">
			<legend>Angehängte Dateien</legend>
			<ul>
			<li>
	<img class="inlineimg" src="/txt.gif" alt="Dateityp: txt" />
	<a href="http://www.hijackthis-forum.de/attachments/archiv/6428d1264704883-trojan-fake-alert-dnschanger-trojan-agent-mbam-log-2010-01-28-18-08-01-.txt">mbam-log-2010-01-28 (18-08-01).txt</a> 
(1,6 KB)
</li> 
			</ul>
		</fieldset>
	

	</div>
 ]]></content:encoded>
			<category domain="http://www.hijackthis-forum.de/archiv/">Archiv</category>
			<dc:creator>Joker85</dc:creator>
			<guid isPermaLink="true">http://www.hijackthis-forum.de/archiv/42156-trojan-fake-alert-dnschanger-trojan-agent.html</guid>
		</item>
		<item>
			<title>Notebook hängt sich nach Virusattacke auf immer wieder auf ...</title>
			<link>http://www.hijackthis-forum.de/archiv/42135-notebook-haengt-sich-nach-virusattacke-auf-immer-wieder-auf.html</link>
			<pubDate>Thu, 28 Jan 2010 08:21:43 GMT</pubDate>
			<description>Liebe Hijackt Community 
 
Ich bin zurzeit mit dem Fahrrad unterwegs - von südlichsten Argentinien bis ins nördliche Alaska. Für die GPS-Aufzeichnungen und unsere Homepage  (marandi.ch) habe ich einen Notebook mit dabei, der natürlich äusserst wichtig ist für diese Reise. Ich hoffe, ich poste hier...</description>
			<content:encoded><![CDATA[<div>Liebe Hijackt Community<br />
<br />
Ich bin zurzeit mit dem Fahrrad unterwegs - von südlichsten Argentinien bis ins nördliche Alaska. Für die GPS-Aufzeichnungen und unsere Homepage  (marandi.ch) habe ich einen Notebook mit dabei, der natürlich äusserst wichtig ist für diese Reise. Ich hoffe, ich poste hier alles richtig …<br />
<br />
<b>1.	Ausgangslage:</b><br />
Ich habe hier in den USA den trotz Avast Real Time Shield den „Internet Security 2010“ auf einer gefakten Photoshop Seite erwischt. Habe dann leider relativ chaotisch den Virus entfernt. Hier ein kurzer Abriss, was ich bisher alles gemacht habe.<br />
<br />
- Habe nach Internetanleitung den Dienst vom Virus gestoppt und dann mit <i>Avast, Malewarebytes und Spypot Search &amp; Destroy</i> Notebook komplett gescannt. Viele Einträge gefunden und entfernt.<br />
- Danach gleich neuste <i>Windowsupdates </i>automatisch runter geladen und installiert.<br />
<br />
Seither hängt sich aber mein Notebook immer nach einer unbestimmten Zeit (2 – 30 min.) auf und macht gar nichts mehr. Ich muss ihn dann mit der Powertaste (5 sec drücken) abmurksen und neu hochfahren.<br />
<br />
Aufgrund dieses Verhaltens habe ich danach mit div. Tools den Notebook geprüft und teils noch ein paar verdächtige RegEinträge gefunden. (Tools: <i>SDFix, ComboFix, HitmanPro, WindowsDefender, AshampooWinOptimizer, SuperAntispyware</i>). Habe auch Autostart überprüft und teils Dienste aus- und wieder eingeschaltet und geprüft ob die am „Aufhängen Schuld sind“. Kein Ergebnis.<br />
<br />
Danach habe ich alle <i>WinUpdates </i>wieder deinstalliert, weil ich dachte, dass da vielleicht ein Fehler passiert ist. Kein positives Ergebnis.<br />
<br />
Habe auch immer wieder mit <i>Malewarebytes </i>und <i>Spybot </i>weiter geprüft. Aber die finden nichts mehr.<br />
<br />
Nun weiss ich nicht mehr weiter … vielleicht, hoffentlich kann mir jemand helfen. Natürlich bin ich überaus dankbar dafür, denn das neu Aufsetzen des Notebooks ist für mich hier fast unmöglich, weil ich keine Software mit dabei habe.<br />
<br />
<b>2.	Problembeschreibung/Symptome</b><br />
Ich habe inzwischen gemerkt, dass sich der Notebook meistens aufhängt/einfriert, wenn ich Outlook oder einen Browser benutzer oder im Internet (Wi-Fi) bin. Teilweise ertönt auch ein Ton, wie wenn man zu lange auf einer Taste bleibt. Auch der Taskmanager friert ein und die Prozesse können nicht mehr beendet werden.<br />
<br />
Beim Durchlaufen von GMER – Scan hat sich der Notebook 3x „aufghängt“. Erst im 4. Anlauf hat es geklappt.<br />
<br />
Aber: Arbeite ich z.Bsp. nur mit Word (Office 2007) so ist alles i.O. Wenn ich mit Firefox offline meine Homepage bearbeite (localhost), passiert auch nichts, keine „Aufhängen“. Ohne Gewähr ... ich konnte heute 1 Stunde im Word arbeiten.<br />
<br />
<b>3.	Mein System</b><br />
Compaq 2510p mit WinXP deu, SP3<br />
Firefox, Opera, Avast, Malewarebytes, Spybot<br />
XAMPP Apache Server, GPS und viele andere SW<br />
<br />
<b>4.	F-Secure Log-File</b><br />
<div class="bbcode_container">
	<div class="bbcode_description">Code:</div>
	<hr /><code class="bbcode_code">01/27/10 23:58:49 [Info]: BlackLight Engine 2.2.1092 initialized<br />
01/27/10 23:58:49 [Info]: OS: 5.1 build 2600 (Service Pack 3)<br />
01/27/10 23:58:49 [Note]: 7019 4<br />
01/27/10 23:58:49 [Note]: 7005 0<br />
01/27/10 23:58:57 [Note]: 7006 0<br />
01/27/10 23:58:57 [Note]: 7011 228<br />
01/27/10 23:58:57 [Note]: 7035 0<br />
01/27/10 23:58:57 [Note]: 7026 0<br />
01/27/10 23:58:57 [Note]: 7026 0<br />
01/27/10 23:59:00 [Note]: FSRAW library version 1.7.1024<br />
01/28/10 00:07:27 [Note]: 7007 0</code><hr />
</div> <br />
<b>5.	Gmer - LOG</b><br />
<div class="bbcode_container">
	<div class="bbcode_description">Code:</div>
	<hr /><code class="bbcode_code">GMER 1.0.15.15281 - http://www.gmer.net<br />
Rootkit scan 2010-01-28 07:52:40<br />
Windows 5.1.2600 Service Pack 3<br />
Running: gmer.exe; Driver: C:\DOKUME~1\Andi\LOKALE~1\Temp\awtdypoc.sys<br />
<br />
<br />
---- System - GMER 1.0.15 ----<br />
<br />
SSDT&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  ZwClose [0xA3482BBC]<br />
SSDT&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  ZwCreateKey [0xA3482A78]<br />
SSDT&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  ZwDeleteKey [0xA348302C]<br />
SSDT&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  ZwDeleteValueKey [0xA3482F56]<br />
SSDT&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  ZwDuplicateObject [0xA348264E]<br />
SSDT&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  ZwOpenKey [0xA3482B52]<br />
SSDT&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  ZwOpenProcess [0xA348258E]<br />
SSDT&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  ZwOpenThread [0xA34825F2]<br />
SSDT&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  ZwQueryValueKey [0xA3482C72]<br />
SSDT&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  ZwRenameKey [0xA34830FA]<br />
SSDT&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  ZwRestoreKey [0xA3482C32]<br />
SSDT&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  ZwSetValueKey [0xA3482DB2]<br />
<br />
Code&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  ZwCreateProcessEx [0xA348F322]<br />
Code&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  ZwCreateSection [0xA348F14C]<br />
Code&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  ZwLoadDriver [0xA348F280]<br />
Code&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  NtCreateSection<br />
Code&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  ObInsertObject<br />
Code&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  ObMakeTemporaryObject<br />
<br />
---- Kernel code sections - GMER 1.0.15 ----<br />
<br />
PAGE&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; ntkrnlpa.exe!ZwLoadDriver&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  8058413A 7 Bytes&nbsp; JMP A348F284 \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)<br />
PAGE&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; ntkrnlpa.exe!NtCreateSection&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 805AB3AE 7 Bytes&nbsp; JMP A348F150 \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)<br />
PAGE&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; ntkrnlpa.exe!ObMakeTemporaryObject&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 805BC51E 5 Bytes&nbsp; JMP A348B594 \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)<br />
PAGE&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; ntkrnlpa.exe!ObInsertObject&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  805C2FA2 5 Bytes&nbsp; JMP A348C866 \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)<br />
PAGE&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; ntkrnlpa.exe!ZwCreateProcessEx&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 805D1142 7 Bytes&nbsp; JMP A348F326 \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)<br />
?&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\WINDOWS\system32\drivers\SafeBoot.sys&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; Der Prozess kann nicht auf die Datei zugreifen, da sie von einem anderen Prozess verwendet wird.<br />
<br />
---- User code sections - GMER 1.0.15 ----<br />
<br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\WINDOWS\Explorer.EXE[224] WS2_32.dll!closesocket&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A13E2B 5 Bytes&nbsp; JMP 01FF28F5 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\WINDOWS\Explorer.EXE[224] WS2_32.dll!send&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 71A14C27 5 Bytes&nbsp; JMP 01FF2781 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\WINDOWS\Explorer.EXE[224] WS2_32.dll!WSARecv&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A14CB5 5 Bytes&nbsp; JMP 01FF2873 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\WINDOWS\Explorer.EXE[224] WS2_32.dll!recv&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 71A1676F 5 Bytes&nbsp; JMP 01FF27B9 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\WINDOWS\Explorer.EXE[224] WS2_32.dll!WSASend&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A168FA 5 Bytes&nbsp; JMP 01FF27F1 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\Programme\Synaptics\SynTP\SynTPEnh.exe[1408] WS2_32.dll!closesocket&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 71A13E2B 5 Bytes&nbsp; JMP 012B28F5 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\Programme\Synaptics\SynTP\SynTPEnh.exe[1408] WS2_32.dll!send&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A14C27 5 Bytes&nbsp; JMP 012B2781 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\Programme\Synaptics\SynTP\SynTPEnh.exe[1408] WS2_32.dll!WSARecv&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 71A14CB5 5 Bytes&nbsp; JMP 012B2873 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\Programme\Synaptics\SynTP\SynTPEnh.exe[1408] WS2_32.dll!recv&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A1676F 5 Bytes&nbsp; JMP 012B27B9 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\Programme\Synaptics\SynTP\SynTPEnh.exe[1408] WS2_32.dll!WSASend&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 71A168FA 5 Bytes&nbsp; JMP 012B27F1 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\Programme\Alwil Software\Avast5\AvastSvc.exe[1772] WS2_32.dll!closesocket&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 71A13E2B 5 Bytes&nbsp; JMP 052628F5 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\Programme\Alwil Software\Avast5\AvastSvc.exe[1772] WS2_32.dll!send&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A14C27 5 Bytes&nbsp; JMP 05262781 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\Programme\Alwil Software\Avast5\AvastSvc.exe[1772] WS2_32.dll!WSARecv&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 71A14CB5 5 Bytes&nbsp; JMP 05262873 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\Programme\Alwil Software\Avast5\AvastSvc.exe[1772] WS2_32.dll!recv&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A1676F 5 Bytes&nbsp; JMP 052627B9 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\Programme\Alwil Software\Avast5\AvastSvc.exe[1772] WS2_32.dll!WSASend&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 71A168FA 5 Bytes&nbsp; JMP 052627F1 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\Programme\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE[1936] WS2_32.dll!closesocket&nbsp; &nbsp; &nbsp;  71A13E2B 5 Bytes&nbsp; JMP 012228F5 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\Programme\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE[1936] WS2_32.dll!send&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 71A14C27 5 Bytes&nbsp; JMP 01222781 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\Programme\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE[1936] WS2_32.dll!WSARecv&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A14CB5 5 Bytes&nbsp; JMP 01222873 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\Programme\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE[1936] WS2_32.dll!recv&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 71A1676F 5 Bytes&nbsp; JMP 012227B9 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\Programme\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE[1936] WS2_32.dll!WSASend&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A168FA 5 Bytes&nbsp; JMP 012227F1 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\Programme\Gemeinsame Dateien\Nero\Lib\NMIndexStoreSvr.exe[2172] WS2_32.dll!closesocket&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A13E2B 5 Bytes&nbsp; JMP 01AF28F5 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\Programme\Gemeinsame Dateien\Nero\Lib\NMIndexStoreSvr.exe[2172] WS2_32.dll!send&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 71A14C27 5 Bytes&nbsp; JMP 01AF2781 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\Programme\Gemeinsame Dateien\Nero\Lib\NMIndexStoreSvr.exe[2172] WS2_32.dll!WSARecv&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A14CB5 5 Bytes&nbsp; JMP 01AF2873 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\Programme\Gemeinsame Dateien\Nero\Lib\NMIndexStoreSvr.exe[2172] WS2_32.dll!recv&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 71A1676F 5 Bytes&nbsp; JMP 01AF27B9 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\Programme\Gemeinsame Dateien\Nero\Lib\NMIndexStoreSvr.exe[2172] WS2_32.dll!WSASend&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A168FA 5 Bytes&nbsp; JMP 01AF27F1 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\xampp\apache\bin\apache.exe[2500] WS2_32.dll!closesocket&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A13E2B 5 Bytes&nbsp; JMP 00D828F5 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\xampp\apache\bin\apache.exe[2500] WS2_32.dll!send&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 71A14C27 5 Bytes&nbsp; JMP 00D82781 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\xampp\apache\bin\apache.exe[2500] WS2_32.dll!WSARecv&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A14CB5 5 Bytes&nbsp; JMP 00D82873 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\xampp\apache\bin\apache.exe[2500] WS2_32.dll!recv&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 71A1676F 5 Bytes&nbsp; JMP 00D827B9 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\xampp\apache\bin\apache.exe[2500] WS2_32.dll!WSASend&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A168FA 5 Bytes&nbsp; JMP 00D827F1 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\WINDOWS\system32\ifxspmgt.exe[2868] WS2_32.dll!closesocket&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A13E2B 5 Bytes&nbsp; JMP 01C028F5 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\WINDOWS\system32\ifxspmgt.exe[2868] WS2_32.dll!send&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 71A14C27 5 Bytes&nbsp; JMP 01C02781 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\WINDOWS\system32\ifxspmgt.exe[2868] WS2_32.dll!WSARecv&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A14CB5 5 Bytes&nbsp; JMP 01C02873 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\WINDOWS\system32\ifxspmgt.exe[2868] WS2_32.dll!recv&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 71A1676F 5 Bytes&nbsp; JMP 01C027B9 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\WINDOWS\system32\ifxspmgt.exe[2868] WS2_32.dll!WSASend&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A168FA 5 Bytes&nbsp; JMP 01C027F1 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\WINDOWS\system32\SearchIndexer.exe[3008] kernel32.dll!WriteFile&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 7C810E27 7 Bytes&nbsp; JMP 00585C0C C:\WINDOWS\system32\MSSRCH.DLL (mssrch.dll/Microsoft Corporation)<br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\WINDOWS\system32\SearchIndexer.exe[3008] WS2_32.dll!closesocket&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 71A13E2B 5 Bytes&nbsp; JMP 032A28F5 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\WINDOWS\system32\SearchIndexer.exe[3008] WS2_32.dll!send&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A14C27 5 Bytes&nbsp; JMP 032A2781 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\WINDOWS\system32\SearchIndexer.exe[3008] WS2_32.dll!WSARecv&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 71A14CB5 5 Bytes&nbsp; JMP 032A2873 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\WINDOWS\system32\SearchIndexer.exe[3008] WS2_32.dll!recv&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A1676F 5 Bytes&nbsp; JMP 032A27B9 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\WINDOWS\system32\SearchIndexer.exe[3008] WS2_32.dll!WSASend&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 71A168FA 5 Bytes&nbsp; JMP 032A27F1 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\Programme\Intel\AMT\LMS.exe[3200] WS2_32.dll!closesocket&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A13E2B 5 Bytes&nbsp; JMP 018B28F5 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\Programme\Intel\AMT\LMS.exe[3200] WS2_32.dll!send&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 71A14C27 5 Bytes&nbsp; JMP 018B2781 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\Programme\Intel\AMT\LMS.exe[3200] WS2_32.dll!WSARecv&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A14CB5 5 Bytes&nbsp; JMP 018B2873 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\Programme\Intel\AMT\LMS.exe[3200] WS2_32.dll!recv&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 71A1676F 5 Bytes&nbsp; JMP 018B27B9 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\Programme\Intel\AMT\LMS.exe[3200] WS2_32.dll!WSASend&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A168FA 5 Bytes&nbsp; JMP 018B27F1 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  c:\xampp\mysql\bin\mysqld-nt.exe[3260] WS2_32.dll!closesocket&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A13E2B 5 Bytes&nbsp; JMP 023828F5 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  c:\xampp\mysql\bin\mysqld-nt.exe[3260] WS2_32.dll!send&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 71A14C27 5 Bytes&nbsp; JMP 02382781 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  c:\xampp\mysql\bin\mysqld-nt.exe[3260] WS2_32.dll!WSARecv&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A14CB5 5 Bytes&nbsp; JMP 02382873 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  c:\xampp\mysql\bin\mysqld-nt.exe[3260] WS2_32.dll!recv&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 71A1676F 5 Bytes&nbsp; JMP 023827B9 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  c:\xampp\mysql\bin\mysqld-nt.exe[3260] WS2_32.dll!WSASend&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A168FA 5 Bytes&nbsp; JMP 023827F1 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\Programme\HPQ\Shared\Sierra Wireless\Win32\Unicode\SWIHPWMI.exe[3300] WS2_32.dll!closesocket&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A13E2B 5 Bytes&nbsp; JMP 00B928F5 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\Programme\HPQ\Shared\Sierra Wireless\Win32\Unicode\SWIHPWMI.exe[3300] WS2_32.dll!send&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 71A14C27 5 Bytes&nbsp; JMP 00B92781 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\Programme\HPQ\Shared\Sierra Wireless\Win32\Unicode\SWIHPWMI.exe[3300] WS2_32.dll!WSARecv&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A14CB5 5 Bytes&nbsp; JMP 00B92873 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\Programme\HPQ\Shared\Sierra Wireless\Win32\Unicode\SWIHPWMI.exe[3300] WS2_32.dll!recv&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 71A1676F 5 Bytes&nbsp; JMP 00B927B9 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\Programme\HPQ\Shared\Sierra Wireless\Win32\Unicode\SWIHPWMI.exe[3300] WS2_32.dll!WSASend&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A168FA 5 Bytes&nbsp; JMP 00B927F1 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\Programme\Intel\AMT\UNS.exe[3560] WS2_32.dll!closesocket&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A13E2B 5 Bytes&nbsp; JMP 011828F5 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\Programme\Intel\AMT\UNS.exe[3560] WS2_32.dll!send&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 71A14C27 5 Bytes&nbsp; JMP 01182781 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\Programme\Intel\AMT\UNS.exe[3560] WS2_32.dll!WSARecv&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A14CB5 5 Bytes&nbsp; JMP 01182873 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\Programme\Intel\AMT\UNS.exe[3560] WS2_32.dll!recv&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 71A1676F 5 Bytes&nbsp; JMP 011827B9 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\Programme\Intel\AMT\UNS.exe[3560] WS2_32.dll!WSASend&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A168FA 5 Bytes&nbsp; JMP 011827F1 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\WINDOWS\system32\wbem\wmiprvse.exe[4136] WS2_32.dll!closesocket&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 71A13E2B 5 Bytes&nbsp; JMP 00EF28F5 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\WINDOWS\system32\wbem\wmiprvse.exe[4136] WS2_32.dll!send&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A14C27 5 Bytes&nbsp; JMP 00EF2781 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\WINDOWS\system32\wbem\wmiprvse.exe[4136] WS2_32.dll!WSARecv&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 71A14CB5 5 Bytes&nbsp; JMP 00EF2873 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\WINDOWS\system32\wbem\wmiprvse.exe[4136] WS2_32.dll!recv&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A1676F 5 Bytes&nbsp; JMP 00EF27B9 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\WINDOWS\system32\wbem\wmiprvse.exe[4136] WS2_32.dll!WSASend&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 71A168FA 5 Bytes&nbsp; JMP 00EF27F1 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\Programme\Gemeinsame Dateien\Nero\Lib\NMIndexingService.exe[4568] WS2_32.dll!closesocket&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A13E2B 5 Bytes&nbsp; JMP 013B28F5 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\Programme\Gemeinsame Dateien\Nero\Lib\NMIndexingService.exe[4568] WS2_32.dll!send&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 71A14C27 5 Bytes&nbsp; JMP 013B2781 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\Programme\Gemeinsame Dateien\Nero\Lib\NMIndexingService.exe[4568] WS2_32.dll!WSARecv&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A14CB5 5 Bytes&nbsp; JMP 013B2873 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\Programme\Gemeinsame Dateien\Nero\Lib\NMIndexingService.exe[4568] WS2_32.dll!recv&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 71A1676F 5 Bytes&nbsp; JMP 013B27B9 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\Programme\Gemeinsame Dateien\Nero\Lib\NMIndexingService.exe[4568] WS2_32.dll!WSASend&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A168FA 5 Bytes&nbsp; JMP 013B27F1 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\WINDOWS\system32\SearchFilterHost.exe[4592] WS2_32.dll!closesocket&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A13E2B 5 Bytes&nbsp; JMP 00DE28F5 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\WINDOWS\system32\SearchFilterHost.exe[4592] WS2_32.dll!send&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 71A14C27 5 Bytes&nbsp; JMP 00DE2781 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\WINDOWS\system32\SearchFilterHost.exe[4592] WS2_32.dll!WSARecv&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A14CB5 5 Bytes&nbsp; JMP 00DE2873 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\WINDOWS\system32\SearchFilterHost.exe[4592] WS2_32.dll!recv&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 71A1676F 5 Bytes&nbsp; JMP 00DE27B9 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\WINDOWS\system32\SearchFilterHost.exe[4592] WS2_32.dll!WSASend&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A168FA 5 Bytes&nbsp; JMP 00DE27F1 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\WINDOWS\system32\SearchProtocolHost.exe[4688] WS2_32.dll!closesocket&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A13E2B 5 Bytes&nbsp; JMP 01D228F5 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\WINDOWS\system32\SearchProtocolHost.exe[4688] WS2_32.dll!send&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 71A14C27 5 Bytes&nbsp; JMP 01D22781 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\WINDOWS\system32\SearchProtocolHost.exe[4688] WS2_32.dll!WSARecv&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A14CB5 5 Bytes&nbsp; JMP 01D22873 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\WINDOWS\system32\SearchProtocolHost.exe[4688] WS2_32.dll!recv&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 71A1676F 5 Bytes&nbsp; JMP 01D227B9 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\WINDOWS\system32\SearchProtocolHost.exe[4688] WS2_32.dll!WSASend&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A168FA 5 Bytes&nbsp; JMP 01D227F1 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\WINDOWS\System32\alg.exe[5192] WS2_32.dll!closesocket&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 71A13E2B 5 Bytes&nbsp; JMP 00BC28F5 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\WINDOWS\System32\alg.exe[5192] WS2_32.dll!send&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A14C27 5 Bytes&nbsp; JMP 00BC2781 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\WINDOWS\System32\alg.exe[5192] WS2_32.dll!WSARecv&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 71A14CB5 5 Bytes&nbsp; JMP 00BC2873 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\WINDOWS\System32\alg.exe[5192] WS2_32.dll!recv&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  71A1676F 5 Bytes&nbsp; JMP 00BC27B9 <br />
.text&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\WINDOWS\System32\alg.exe[5192] WS2_32.dll!WSASend&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 71A168FA 5 Bytes&nbsp; JMP 00BC27F1 <br />
<br />
---- User IAT/EAT - GMER 1.0.15 ----<br />
<br />
IAT&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\WINDOWS\system32\services.exe[976] @ C:\WINDOWS\system32\services.exe [ADVAPI32.dll!CreateProcessAsUserW]&nbsp; 00390002<br />
IAT&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  C:\WINDOWS\system32\services.exe[976] @ C:\WINDOWS\system32\services.exe [KERNEL32.dll!CreateProcessW]&nbsp; &nbsp; &nbsp; &nbsp; 00390000<br />
<br />
---- Devices - GMER 1.0.15 ----<br />
<br />
Device&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; \FileSystem\Ntfs \Ntfs&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; aswSP.SYS (avast! self protection module/ALWIL Software)<br />
<br />
AttachedDevice&nbsp; \FileSystem\Ntfs \Ntfs&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; aswMon2.SYS (avast! File System Filter Driver for Windows XP/ALWIL Software)<br />
AttachedDevice&nbsp; \Driver\Tcpip \Device\Ip&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; aswTdi.SYS (avast! TDI Filter Driver/ALWIL Software)<br />
AttachedDevice&nbsp; \Driver\Kbdclass \Device\KeyboardClass0&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  SynTP.sys (Synaptics Touchpad Driver/Synaptics, Inc.)<br />
AttachedDevice&nbsp; \Driver\Tcpip \Device\Tcp&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  aswTdi.SYS (avast! TDI Filter Driver/ALWIL Software)<br />
AttachedDevice&nbsp; \Driver\Tcpip \Device\Udp&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  aswTdi.SYS (avast! TDI Filter Driver/ALWIL Software)<br />
AttachedDevice&nbsp; \Driver\Tcpip \Device\RawIp&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  aswTdi.SYS (avast! TDI Filter Driver/ALWIL Software)<br />
<br />
Device&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; \Driver\hpdskflt -&gt;&nbsp; \Device\Harddisk0\DR0&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 8A7C3E20<br />
<br />
---- EOF - GMER 1.0.15 ----</code><hr />
</div> <b>6.	HijackThis - LOG</b><br />
<div class="bbcode_container">
	<div class="bbcode_description">Code:</div>
	<hr /><code class="bbcode_code">Logfile of Trend Micro HijackThis v2.0.2<br />
Scan saved at 08:26:16, on 28.01.2010<br />
Platform: Windows XP SP3 (WinNT 5.01.2600)<br />
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)<br />
Boot mode: Normal<br />
<br />
Running processes:<br />
C:\WINDOWS\System32\smss.exe<br />
C:\WINDOWS\system32\winlogon.exe<br />
C:\WINDOWS\system32\services.exe<br />
C:\WINDOWS\system32\lsass.exe<br />
C:\WINDOWS\System32\svchost.exe<br />
C:\WINDOWS\system32\svchost.exe<br />
C:\Programme\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe<br />
C:\WINDOWS\System32\svchost.exe<br />
C:\Programme\Alwil Software\Avast5\AvastSvc.exe<br />
C:\WINDOWS\Explorer.EXE<br />
C:\WINDOWS\system32\hkcmd.exe<br />
C:\Programme\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe<br />
C:\WINDOWS\system32\igfxsrvc.exe<br />
C:\Programme\Java\jre1.6.0\bin\jusched.exe<br />
C:\Programme\Intel\AMT\atchk.exe<br />
C:\Programme\Synaptics\SynTP\SynTPEnh.exe<br />
C:\Programme\Analog Devices\Core\smax4pnp.exe<br />
C:\WINDOWS\system32\igfxpers.exe<br />
C:\Programme\Hewlett-Packard\IAM\bin\asghost.exe<br />
C:\Programme\Hp\HP Software Update\HPWuSchd2.exe<br />
C:\WINDOWS\system32\igfxtray.exe<br />
C:\Programme\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE<br />
C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe<br />
C:\WINDOWS\system32\ctfmon.exe<br />
C:\Programme\Gemeinsame Dateien\Nero\Lib\NMIndexStoreSvr.exe<br />
C:\WINDOWS\system32\spoolsv.exe<br />
C:\xampp\apache\bin\apache.exe<br />
C:\Programme\Intel\AMT\atchksrv.exe<br />
C:\WINDOWS\system32\ifxspmgt.exe<br />
C:\WINDOWS\system32\ifxtcs.exe<br />
C:\Programme\Gemeinsame Dateien\InterVideo\RegMgr\iviRegMgr.exe<br />
C:\Programme\Intel\AMT\LMS.exe<br />
c:\xampp\mysql\bin\mysqld-nt.exe<br />
C:\Programme\Nero\Nero8\Nero BackItUp\NBService.exe<br />
C:\WINDOWS\system32\IfxPsdSv.exe<br />
C:\WINDOWS\system32\IoctlSvc.exe<br />
c:\Programme\Gemeinsame Dateien\Protexis\License Service\PsiService_2.exe<br />
C:\WINDOWS\system32\svchost.exe<br />
C:\Programme\Intel\AMT\UNS.exe<br />
C:\WINDOWS\system32\SearchIndexer.exe<br />
C:\xampp\apache\bin\apache.exe<br />
C:\Programme\Hewlett-Packard\Shared\hpqwmiex.exe<br />
C:\Programme\HPQ\Shared\Sierra Wireless\Win32\Unicode\SWIHPWMI.exe<br />
C:\WINDOWS\system32\wuauclt.exe<br />
C:\Programme\Gemeinsame Dateien\Nero\Lib\NMIndexingService.exe<br />
C:\Programme\Hewlett-Packard\Shared\HpqToaster.exe<br />
C:\WINDOWS\system32\wuauclt.exe<br />
C:\WINDOWS\system32\SearchProtocolHost.exe<br />
C:\WINDOWS\system32\SearchProtocolHost.exe<br />
C:\WINDOWS\system32\wscntfy.exe<br />
C:\Programme\Trend Micro\HijackThis\HijackThis.exe<br />
<br />
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = <br />
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = xxxxISAV01:8080<br />
O2 - BHO: HelperObject Class - {00C6482D-C502-44C8-8409-FCE54AD9C208} - C:\Programme\TechSmith\SnagIt 7\SnagItBHO.dll<br />
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx<br />
O2 - BHO: Spybot-S&amp;D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll<br />
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Java\jre1.6.0\bin\ssv.dll<br />
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Programme\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll<br />
O2 - BHO: Credential Manager for HP ProtectTools - {DF21F1DB-80C6-11D3-9483-B03D0EC10000} - C:\Programme\Hewlett-Packard\IAM\Bin\ItIEAddIn.dll<br />
O3 - Toolbar: SnagIt - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - C:\Programme\TechSmith\SnagIt 7\SnagItIEAddin.dll<br />
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe<br />
O4 - HKLM\..\Run: [hpWirelessAssistant] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe<br />
O4 - HKLM\..\Run: [SunJavaUpdateSched] &quot;C:\Programme\Java\jre1.6.0\bin\jusched.exe&quot;<br />
O4 - HKLM\..\Run: [atchk] &quot;C:\Programme\Intel\AMT\atchk.exe&quot;<br />
O4 - HKLM\..\Run: [SynTPEnh] C:\Programme\Synaptics\SynTP\SynTPEnh.exe<br />
O4 - HKLM\..\Run: [WatchDog] C:\Programme\InterVideo\DVD Check\DVDCheck.exe<br />
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Programme\Analog Devices\Core\smax4pnp.exe<br />
O4 - HKLM\..\Run: [QlbCtrl] %ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start<br />
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe<br />
O4 - HKLM\..\Run: [NBKeyScan] &quot;C:\Programme\Nero\Nero8\Nero BackItUp\NBKeyScan.exe&quot;<br />
O4 - HKLM\..\Run: [HP Software Update] C:\Programme\Hp\HP Software Update\HPWuSchd2.exe<br />
O4 - HKLM\..\Run: [CognizanceTS] rundll32.exe C:\PROGRA~1\HEWLET~1\IAM\Bin\ASTSVCC.dll,RegisterModule<br />
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe<br />
O4 - HKLM\..\Run: [PTHOSTTR] C:\Programme\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE /Start<br />
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui<br />
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe<br />
O4 - HKCU\..\Run: [swg] C:\Programme\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe<br />
O4 - HKCU\..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] &quot;C:\Programme\Gemeinsame Dateien\Nero\Lib\NMIndexStoreSvr.exe&quot; ASO-616B5711-6DAE-4795-A05F-39A1E5104020<br />
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')<br />
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')<br />
O4 - Global Startup: DVD Check.lnk = C:\Programme\InterVideo\DVD Check\DVDCheck.exe<br />
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present<br />
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Control Panel present<br />
O8 - Extra context menu item: Nach Microsoft E&amp;xel exportieren - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000<br />
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.6.0\bin\ssv.dll<br />
O9 - Extra 'Tools' menuitem: Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.6.0\bin\ssv.dll<br />
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL<br />
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll<br />
O9 - Extra 'Tools' menuitem: Spybot - Search &amp; Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll<br />
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe<br />
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe<br />
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe<br />
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe<br />
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1217511834671<br />
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1217512023906<br />
O20 - AppInit_DLLs: C:\WINDOWS\system32\APSHook.dll<br />
O20 - Winlogon Notify: !SASWinLogon - C:\Programme\SUPERAntiSpyware\SASWINLO.dll<br />
O20 - Winlogon Notify: DeviceNP - C:\WINDOWS\SYSTEM32\DeviceNP.dll<br />
O20 - Winlogon Notify: OneCard - C:\Programme\Hewlett-Packard\IAM\Bin\ASWLNPkg.dll<br />
O23 - Service: Apache2.2 - Apache Software Foundation - C:\xampp\apache\bin\apache.exe<br />
O23 - Service: Intel(R) Active Management Technology System Status Service (atchksrv) - Intel Corporation - C:\Programme\Intel\AMT\atchksrv.exe<br />
O23 - Service: avast! Antivirus - ALWIL Software - C:\Programme\Alwil Software\Avast5\AvastSvc.exe<br />
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Programme\Alwil Software\Avast5\AvastSvc.exe<br />
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Programme\Alwil Software\Avast5\AvastSvc.exe<br />
O23 - Service: Defragmentation-Service (DfSdkS) - mst software GmbH, Germany - C:\Programme\Ashampoo\Ashampoo WinOptimizer 6\Dfsdks.exe<br />
O23 - Service: HP ProtectTools Gerätesperre/Überwachung (FLCDLOCK) - Hewlett-Packard Ltd - C:\WINDOWS\system32\flcdlock.exe<br />
O23 - Service: Google Update Service (gupdate1c9cdda2637e332) (gupdate1c9cdda2637e332) - Google Inc. - C:\Programme\Google\Update\GoogleUpdate.exe<br />
O23 - Service: Google Software Updater (gusvc) - Google - C:\Programme\Google\Common\Google Updater\GoogleUpdaterService.exe<br />
O23 - Service: Drive Encryption Service (HpFkCryptService) - SafeBoot International - C:\Programme\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe<br />
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Programme\Hewlett-Packard\Shared\hpqwmiex.exe<br />
O23 - Service: Security Platform Management Service (IFXSpMgtSrv) - Infineon Technologies AG - C:\WINDOWS\system32\ifxspmgt.exe<br />
O23 - Service: Trusted Platform Core Service (IFXTCS) - Infineon Technologies AG - C:\WINDOWS\system32\ifxtcs.exe<br />
O23 - Service: IviRegMgr - InterVideo - C:\Programme\Gemeinsame Dateien\InterVideo\RegMgr\iviRegMgr.exe<br />
O23 - Service: Intel(R) Active Management Technology Local Management Service (LMS) - Intel Corporation - C:\Programme\Intel\AMT\LMS.exe<br />
O23 - Service: mysql - Unknown owner - c:\xampp\mysql\bin\mysqld-nt.exe<br />
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Programme\Nero\Nero8\Nero BackItUp\NBService.exe<br />
O23 - Service: NMIndexingService - Nero AG - C:\Programme\Gemeinsame Dateien\Nero\Lib\NMIndexingService.exe<br />
O23 - Service: Personal Secure Drive service for encrypted drives (PersonalSecureDriveService) - Infineon Technologies AG - C:\WINDOWS\system32\IfxPsdSv.exe<br />
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\WINDOWS\system32\IoctlSvc.exe<br />
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Programme\Gemeinsame Dateien\Protexis\License Service\PsiService_2.exe<br />
O23 - Service: SWIHPWMI - Sierra Wireless Inc. - C:\Programme\HPQ\Shared\Sierra Wireless\Win32\Unicode\SWIHPWMI.exe<br />
O23 - Service: Intel(R) Active Management Technology User Notification Service (UNS) - Intel Corporation - C:\Programme\Intel\AMT\UNS.exe<br />
O23 - Service: Windows Defender (WinDefend) - Unknown owner - C:\Programme\Windows Defender\MsMpEng.exe (file missing)<br />
O23 - Service: XAMPP Service (XAMPP) - Unknown owner - C:\xampp\service.exe<br />
<br />
--<br />
End of file - 10280 bytes</code><hr />
</div> <b>7. Hijack Scanlist</b><br />
<div class="bbcode_container">
	<div class="bbcode_description">Code:</div>
	<hr /><code class="bbcode_code">&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; $$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$ <br />
&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; º&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; º <br />
&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; hjtscanlist v2.0&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; <br />
&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; º&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; º <br />
&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; $$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$ <br />
<br />
Microsoft Windows XP [Version 5.1.2600]<br />
&nbsp;<br />
&nbsp;<br />
C:<br />
<br />
&nbsp; &nbsp; &nbsp; &nbsp; C:\hiberfil.sys ---------&nbsp; <br />
&nbsp; &nbsp; &nbsp; &nbsp; C:\pagefile.sys ---------&nbsp; <br />
&nbsp; 27.01.2010 23:56&nbsp; &nbsp; &nbsp; C:\WINDOWS --------- 0 <br />
&nbsp; 27.01.2010 23:01&nbsp; &nbsp; &nbsp; C:\Config.Msi --------- 0 <br />
&nbsp; 27.01.2010 20:20&nbsp; &nbsp; &nbsp; C:\Programme --------- 0 <br />
&nbsp; 27.01.2010 06:17&nbsp; &nbsp; &nbsp; C:\boot.ini --------- 282 <br />
&nbsp; 26.01.2010 22:21&nbsp; &nbsp; &nbsp; C:\rsit --------- 0 <br />
&nbsp; 26.01.2010 21:26&nbsp; &nbsp; &nbsp; C:\System Volume Information --------- 0 <br />
&nbsp; 25.01.2010 03:02&nbsp; &nbsp; &nbsp; C:\RECYCLER --------- 0 <br />
&nbsp; 25.01.2010 03:02&nbsp; &nbsp; &nbsp; C:\Qoobox --------- 0 <br />
&nbsp; 25.01.2010 03:02&nbsp; &nbsp; &nbsp; C:\RECYCLER(2) --------- 0 <br />
&nbsp; 25.01.2010 02:15&nbsp; &nbsp; &nbsp; C:\ComboFix.txt --------- 29487 <br />
&nbsp; 24.01.2010 16:47&nbsp; &nbsp; &nbsp; C:\cmdcons --------- 0 <br />
&nbsp; 24.01.2010 02:16&nbsp; &nbsp; &nbsp; C:\Boot.bak --------- 211 <br />
&nbsp; 23.01.2010 23:03&nbsp; &nbsp; &nbsp; C:\SDFix --------- 0 <br />
&nbsp; 20.01.2010 21:35&nbsp; &nbsp; &nbsp; C:\Program Files --------- 0 <br />
&nbsp; 20.01.2010 04:44&nbsp; &nbsp; &nbsp; C:\MapasGPS --------- 0 <br />
&nbsp; 19.01.2010 06:25&nbsp; &nbsp; &nbsp; C:\mbam-error.txt --------- 148 <br />
&nbsp; 19.01.2010 03:55&nbsp; &nbsp; &nbsp; C:\Dokumente und Einstellungen --------- 0 <br />
&nbsp; 19.01.2010 00:43&nbsp; &nbsp; &nbsp; C:\Movies --------- 0 <br />
&nbsp; 01.11.2009 02:37&nbsp; &nbsp; &nbsp; C:\Garmin --------- 0 <br />
&nbsp; 20.10.2009 17:11&nbsp; &nbsp; &nbsp; C:\Harald --------- 0 <br />
&nbsp; 26.09.2009 04:16&nbsp; &nbsp; &nbsp; C:\FotosPanamerika --------- 0 <br />
&nbsp; 28.07.2009 20:15&nbsp; &nbsp; &nbsp; C:\ctapi_out_gr.txt --------- 0 <br />
&nbsp; 07.05.2009 04:58&nbsp; &nbsp; &nbsp; C:\5f2cabb7353b34768d89979938166dca --------- 0 <br />
&nbsp; 02.04.2009 18:02&nbsp; &nbsp; &nbsp; C:\shldr --------- 185833 <br />
&nbsp; 09.03.2009 16:58&nbsp; &nbsp; &nbsp; C:\Verknpfung mit Daten (D).lnk --------- 280 <br />
&nbsp; 05.12.2008 13:49&nbsp; &nbsp; &nbsp; C:\updatedatfix.log --------- 586 <br />
&nbsp; 05.11.2008 21:39&nbsp; &nbsp; &nbsp; C:\Personal-Ausweise Andi.jpg --------- 1068354 <br />
&nbsp; 05.11.2008 13:18&nbsp; &nbsp; &nbsp; C:\MapSource --------- 0 <br />
&nbsp; 29.10.2008 14:15&nbsp; &nbsp; &nbsp; C:\ntldr --------- 251712 <br />
&nbsp; 31.07.2008 21:27&nbsp; &nbsp; &nbsp; C:\xampp --------- 0 <br />
&nbsp; 31.07.2008 15:04&nbsp; &nbsp; &nbsp; C:\MSOCache --------- 0 <br />
&nbsp; 31.07.2008 14:39&nbsp; &nbsp; &nbsp; C:\setup.log --------- 185 <br />
&nbsp; 31.07.2008 14:30&nbsp; &nbsp; &nbsp; C:\sunjava.log --------- 24392 <br />
&nbsp; 31.07.2008 14:30&nbsp; &nbsp; &nbsp; C:\walog.log --------- 22536 <br />
&nbsp; 31.07.2008 14:25&nbsp; &nbsp; &nbsp; C:\DNSP1.LOG --------- 3210910 <br />
&nbsp; 31.07.2008 14:20&nbsp; &nbsp; &nbsp; C:\SWSetup --------- 0 <br />
&nbsp; 31.07.2008 14:18&nbsp; &nbsp; &nbsp; C:\syntpad.log --------- 187 <br />
&nbsp; 31.07.2008 14:17&nbsp; &nbsp; &nbsp; C:\SYSTEM.SAV --------- 0 <br />
&nbsp; 31.07.2008 14:10&nbsp; &nbsp; &nbsp; C:\hpmdp.log --------- 177 <br />
&nbsp; 31.07.2008 14:09&nbsp; &nbsp; &nbsp; C:\esuinst.log --------- 161 <br />
&nbsp; 31.07.2008 14:09&nbsp; &nbsp; &nbsp; C:\sedinst2.log --------- 227 <br />
&nbsp; 31.07.2008 14:07&nbsp; &nbsp; &nbsp; C:\Intel --------- 0 <br />
&nbsp; 31.07.2008 14:06&nbsp; &nbsp; &nbsp; C:\modem.log --------- 201 <br />
&nbsp; 31.07.2008 14:03&nbsp; &nbsp; &nbsp; C:\esu_xpsp2.log --------- 198 <br />
&nbsp; 31.07.2008 13:53&nbsp; &nbsp; &nbsp; C:\CONFIG.SYS --------- 0 <br />
&nbsp; 31.07.2008 13:53&nbsp; &nbsp; &nbsp; C:\MSDOS.SYS --------- 0 <br />
&nbsp; 31.07.2008 13:53&nbsp; &nbsp; &nbsp; C:\AUTOEXEC.BAT --------- 0 <br />
&nbsp; 31.07.2008 13:53&nbsp; &nbsp; &nbsp; C:\IO.SYS --------- 0 <br />
&nbsp; 23.08.2006 13:39&nbsp; &nbsp; &nbsp; C:\IndiaNotice.bmp --------- 518450 <br />
&nbsp; 28.02.2006 13:00&nbsp; &nbsp; &nbsp; C:\NTDETECT.COM --------- 47564 <br />
&nbsp; 28.02.2006 13:00&nbsp; &nbsp; &nbsp; C:\bootfont.bin --------- 4952 <br />
&nbsp; 03.08.2004 23:00&nbsp; &nbsp; &nbsp; C:\cmldr --------- 262448 <br />
&nbsp; 21.04.2004 07:09&nbsp; &nbsp; &nbsp; C:\NavTeqOB.bmp --------- 28230 <br />
&nbsp; 21.08.2003 14:11&nbsp; &nbsp; &nbsp; C:\LANG.INI --------- 2736 <br />
----------------------------------------<br />
<br />
&nbsp;<br />
C:\WINDOWS<br />
<br />
&nbsp; 28.01.2010 08:24&nbsp; &nbsp;  C:\WINDOWS\WindowsUpdate.log --------- 1225602 <br />
&nbsp; 28.01.2010 08:23&nbsp; &nbsp;  C:\WINDOWS\wiadebug.log --------- 157 <br />
&nbsp; 28.01.2010 08:23&nbsp; &nbsp;  C:\WINDOWS\0.log --------- 0 <br />
&nbsp; 28.01.2010 08:23&nbsp; &nbsp;  C:\WINDOWS\wiaservc.log --------- 50 <br />
&nbsp; 28.01.2010 08:23&nbsp; &nbsp;  C:\WINDOWS\bootstat.dat --------- 2048 <br />
&nbsp; 28.01.2010 04:55&nbsp; &nbsp;  C:\WINDOWS\SchedLgU.Txt --------- 32632 <br />
&nbsp; 27.01.2010 19:01&nbsp; &nbsp;  C:\WINDOWS\NeroDigital.ini --------- 69 <br />
&nbsp; 26.01.2010 21:23&nbsp; &nbsp;  C:\WINDOWS\win.ini --------- 582 <br />
&nbsp; 26.01.2010 21:23&nbsp; &nbsp;  C:\WINDOWS\system.ini --------- 227 <br />
&nbsp; 25.01.2010 00:32&nbsp; &nbsp;  C:\WINDOWS\Sti_Trace.log --------- 0 <br />
&nbsp; 23.01.2010 21:10&nbsp; &nbsp;  C:\WINDOWS\mapiuid.ini --------- 105 <br />
&nbsp; 22.01.2010 21:42&nbsp; &nbsp;  C:\WINDOWS\UPGRADE.TXT --------- 730 <br />
&nbsp; 21.01.2010 19:38&nbsp; &nbsp;  C:\WINDOWS\my.ini --------- 58 <br />
&nbsp; 09.12.2009 22:54&nbsp; &nbsp;  C:\WINDOWS\PEV.exe --------- 261632 <br />
&nbsp; 25.10.2009 06:11&nbsp; &nbsp;  C:\WINDOWS\MBR.exe --------- 77312 <br />
&nbsp; 22.10.2009 06:00&nbsp; &nbsp;  C:\WINDOWS\iPlayer.INI --------- 0 <br />
&nbsp; 30.07.2009 03:45&nbsp; &nbsp;  C:\WINDOWS\INI2=No --------- 7 <br />
&nbsp; 30.07.2009 03:45&nbsp; &nbsp;  C:\WINDOWS\INI1=No --------- 7 <br />
&nbsp; 20.04.2009 12:56&nbsp; &nbsp;  C:\WINDOWS\NIRCMD.exe --------- 31232 <br />
&nbsp; 28.12.2008 17:18&nbsp; &nbsp;  C:\WINDOWS\ModemLog_Soft Data Fax Modem with SmartCP.txt --------- 36818 <br />
&nbsp; 03.12.2008 07:37&nbsp; &nbsp;  C:\WINDOWS\ODBC.INI --------- 28 <br />
&nbsp; 25.09.2008 06:31&nbsp; &nbsp;  C:\WINDOWS\FontData.fdb --------- 28619 <br />
&nbsp; 01.08.2008 19:17&nbsp; &nbsp;  C:\WINDOWS\nsreg.dat --------- 0 <br />
&nbsp; 31.07.2008 13:53&nbsp; &nbsp;  C:\WINDOWS\control.ini --------- 0 <br />
&nbsp; 31.07.2008 13:53&nbsp; &nbsp;  C:\WINDOWS\WMSysPr9.prx --------- 316640 <br />
&nbsp; 31.07.2008 13:53&nbsp; &nbsp;  C:\WINDOWS\ODBCINST.INI --------- 4161 <br />
&nbsp; 31.07.2008 13:52&nbsp; &nbsp;  C:\WINDOWS\WindowsShell.Manifest --------- 749 <br />
&nbsp; 31.07.2008 13:48&nbsp; &nbsp;  C:\WINDOWS\vbaddin.ini --------- 37 <br />
&nbsp; 31.07.2008 13:48&nbsp; &nbsp;  C:\WINDOWS\vb.ini --------- 36 <br />
&nbsp; 24.06.2008 15:06&nbsp; &nbsp;  C:\WINDOWS\UNNeroMediaHome.exe --------- 972072 <br />
&nbsp; 06.06.2008 13:54&nbsp; &nbsp;  C:\WINDOWS\UNRecode.exe --------- 972072 <br />
&nbsp; 14.04.2008 03:23&nbsp; &nbsp;  C:\WINDOWS\winhlp32.exe --------- 288768 <br />
&nbsp; 14.04.2008 03:23&nbsp; &nbsp;  C:\WINDOWS\slrundll.exe --------- 32866 <br />
&nbsp; 14.04.2008 03:22&nbsp; &nbsp;  C:\WINDOWS\regedit.exe --------- 153600 <br />
&nbsp; 14.04.2008 03:22&nbsp; &nbsp;  C:\WINDOWS\notepad.exe --------- 70144 <br />
&nbsp; 14.04.2008 03:22&nbsp; &nbsp;  C:\WINDOWS\hh.exe --------- 10752 <br />
&nbsp; 14.04.2008 03:22&nbsp; &nbsp;  C:\WINDOWS\explorer.exe --------- 1036800 <br />
&nbsp; 14.04.2008 03:22&nbsp; &nbsp;  C:\WINDOWS\twain_32.dll --------- 50688 <br />
&nbsp; 27.04.2007 09:59&nbsp; &nbsp;  C:\WINDOWS\SbHpNp.dll --------- 77824 <br />
&nbsp; 12.04.2007 13:03&nbsp; &nbsp;  C:\WINDOWS\HPNICVersion.dll --------- 12288 <br />
&nbsp; 30.03.2007 16:12&nbsp; &nbsp;  C:\WINDOWS\biwlandrvxpver.dll --------- 6656 <br />
&nbsp; 21.03.2007 20:02&nbsp; &nbsp;  C:\WINDOWS\UNNeroVision.exe --------- 972336 <br />
&nbsp; 20.03.2007 20:22&nbsp; &nbsp;  C:\WINDOWS\UNNeroBackItUp.exe --------- 972336 <br />
&nbsp; 28.02.2007 15:41&nbsp; &nbsp;  C:\WINDOWS\UNNeroShowTime.exe --------- 972336 <br />
&nbsp; 14.02.2007 15:11&nbsp; &nbsp;  C:\WINDOWS\HPModemVersion.dll --------- 13312 <br />
&nbsp; 23.01.2007 21:12&nbsp; &nbsp;  C:\WINDOWS\PSDrecovery.exe --------- 157216 <br />
&nbsp; 28.02.2006 13:00&nbsp; &nbsp;  C:\WINDOWS\winhelp.exe --------- 257568 <br />
&nbsp; 28.02.2006 13:00&nbsp; &nbsp;  C:\WINDOWS\Seifenblase.bmp --------- 65978 <br />
&nbsp; 28.02.2006 13:00&nbsp; &nbsp;  C:\WINDOWS\msdfmap.ini --------- 1405 <br />
&nbsp; 28.02.2006 13:00&nbsp; &nbsp;  C:\WINDOWS\Zapotek.bmp --------- 9522 <br />
&nbsp; 28.02.2006 13:00&nbsp; &nbsp;  C:\WINDOWS\Granit.bmp --------- 26582 <br />
&nbsp; 28.02.2006 13:00&nbsp; &nbsp;  C:\WINDOWS\Feder.bmp --------- 16730 <br />
&nbsp; 28.02.2006 13:00&nbsp; &nbsp;  C:\WINDOWS\clock.avi --------- 82944 <br />
&nbsp; 28.02.2006 13:00&nbsp; &nbsp;  C:\WINDOWS\Pr„riewind.bmp --------- 65954 <br />
&nbsp; 28.02.2006 13:00&nbsp; &nbsp;  C:\WINDOWS\TASKMAN.EXE --------- 15872 <br />
&nbsp; 28.02.2006 13:00&nbsp; &nbsp;  C:\WINDOWS\twain.dll --------- 94800 <br />
&nbsp; 28.02.2006 13:00&nbsp; &nbsp;  C:\WINDOWS\explorer.scf --------- 80 <br />
&nbsp; 28.02.2006 13:00&nbsp; &nbsp;  C:\WINDOWS\twunk_16.exe --------- 49680 <br />
&nbsp; 28.02.2006 13:00&nbsp; &nbsp;  C:\WINDOWS\twunk_32.exe --------- 25600 <br />
&nbsp; 28.02.2006 13:00&nbsp; &nbsp;  C:\WINDOWS\Santa Fe-Stuck.bmp --------- 65832 <br />
&nbsp; 28.02.2006 13:00&nbsp; &nbsp;  C:\WINDOWS\Rhododendron.bmp --------- 17362 <br />
&nbsp; 28.02.2006 13:00&nbsp; &nbsp;  C:\WINDOWS\Angler.bmp --------- 17336 <br />
&nbsp; 28.02.2006 13:00&nbsp; &nbsp;  C:\WINDOWS\Kaffeetasse.bmp --------- 17062 <br />
&nbsp; 28.02.2006 13:00&nbsp; &nbsp;  C:\WINDOWS\vmmreg32.dll --------- 18944 <br />
&nbsp; 28.02.2006 13:00&nbsp; &nbsp;  C:\WINDOWS\F„cher.bmp --------- 26680 <br />
&nbsp; 28.02.2006 13:00&nbsp; &nbsp;  C:\WINDOWS\winnt.bmp --------- 48680 <br />
&nbsp; 28.02.2006 13:00&nbsp; &nbsp;  C:\WINDOWS\Blaue Spitzen 16.bmp --------- 1272 <br />
&nbsp; 28.02.2006 13:00&nbsp; &nbsp;  C:\WINDOWS\wmprfDEU.prx --------- 34818 <br />
&nbsp; 28.02.2006 13:00&nbsp; &nbsp;  C:\WINDOWS\desktop.ini --------- 2 <br />
&nbsp; 28.02.2006 13:00&nbsp; &nbsp;  C:\WINDOWS\winnt256.bmp --------- 48680 <br />
&nbsp; 28.02.2006 13:00&nbsp; &nbsp;  C:\WINDOWS\_default.pif --------- 707 <br />
&nbsp; 15.09.2005 13:35&nbsp; &nbsp;  C:\WINDOWS\UNNeroMediaHome.cfg --------- 50 <br />
&nbsp; 30.08.2005 20:37&nbsp; &nbsp;  C:\WINDOWS\UNNeroVision.cfg --------- 50 <br />
&nbsp; 30.08.2005 20:37&nbsp; &nbsp;  C:\WINDOWS\UNNeroShowTime.cfg --------- 50 <br />
&nbsp; 30.08.2005 20:36&nbsp; &nbsp;  C:\WINDOWS\UNRecode.cfg --------- 50 <br />
&nbsp; 30.08.2005 20:33&nbsp; &nbsp;  C:\WINDOWS\UNNeroBackItUp.cfg --------- 50 <br />
&nbsp; 29.07.2003 21:10&nbsp; &nbsp;  C:\WINDOWS\Inst_GPS-Track-Analyse.NET_remove.exe --------- 737280 <br />
&nbsp; 31.08.2000 08:00&nbsp; &nbsp;  C:\WINDOWS\SWREG.exe --------- 161792 <br />
&nbsp; 31.08.2000 08:00&nbsp; &nbsp;  C:\WINDOWS\SWSC.exe --------- 136704 <br />
&nbsp; 31.08.2000 08:00&nbsp; &nbsp;  C:\WINDOWS\zip.exe --------- 68096 <br />
&nbsp; 31.08.2000 08:00&nbsp; &nbsp;  C:\WINDOWS\grep.exe --------- 80412 <br />
&nbsp; 31.08.2000 08:00&nbsp; &nbsp;  C:\WINDOWS\SWXCACLS.exe --------- 212480 <br />
&nbsp; 31.08.2000 08:00&nbsp; &nbsp;  C:\WINDOWS\sed.exe --------- 98816 <br />
&nbsp; 08.03.1999 02:38&nbsp; &nbsp;  C:\WINDOWS\corelpf.lrs --------- 28252 <br />
&nbsp; 17.11.1998 11:44&nbsp; &nbsp;  C:\WINDOWS\IsUn0407.exe --------- 328704 <br />
&nbsp; 10.12.1996 08:06&nbsp; &nbsp;  C:\WINDOWS\iccsigs.dat --------- 39095 <br />
&nbsp; 23.03.1996 14:24&nbsp; &nbsp;  C:\WINDOWS\pcdlib32.dll --------- 212480 <br />
----------------------------------------<br />
<br />
&nbsp;<br />
C:\WINDOWS\System<br />
<br />
&nbsp;18.10.2009 12:54&nbsp; &nbsp; C:\WINDOWS\System\vdremote.dll --------- 73728 <br />
&nbsp;18.10.2009 12:53&nbsp; &nbsp; C:\WINDOWS\System\vdsvrlnk.dll --------- 65536 <br />
&nbsp;14.04.2008 03:23&nbsp; &nbsp; C:\WINDOWS\System\winspool.drv --------- 146944 <br />
&nbsp;28.02.2006 13:00&nbsp; &nbsp; C:\WINDOWS\System\KEYBOARD.DRV --------- 2000 <br />
&nbsp;28.02.2006 13:00&nbsp; &nbsp; C:\WINDOWS\System\LZEXPAND.DLL --------- 9936 <br />
&nbsp;28.02.2006 13:00&nbsp; &nbsp; C:\WINDOWS\System\MCIAVI.DRV --------- 73760 <br />
&nbsp;28.02.2006 13:00&nbsp; &nbsp; C:\WINDOWS\System\MCISEQ.DRV --------- 25296 <br />
&nbsp;28.02.2006 13:00&nbsp; &nbsp; C:\WINDOWS\System\MCIWAVE.DRV --------- 28160 <br />
&nbsp;28.02.2006 13:00&nbsp; &nbsp; C:\WINDOWS\System\MMSYSTEM.DLL --------- 69632 <br />
&nbsp;28.02.2006 13:00&nbsp; &nbsp; C:\WINDOWS\System\MMTASK.TSK --------- 1152 <br />
&nbsp;28.02.2006 13:00&nbsp; &nbsp; C:\WINDOWS\System\MOUSE.DRV --------- 2032 <br />
&nbsp;28.02.2006 13:00&nbsp; &nbsp; C:\WINDOWS\System\MSVIDEO.DLL --------- 127104 <br />
&nbsp;28.02.2006 13:00&nbsp; &nbsp; C:\WINDOWS\System\COMMDLG.DLL --------- 33744 <br />
&nbsp;28.02.2006 13:00&nbsp; &nbsp; C:\WINDOWS\System\OLESVR.DLL --------- 24064 <br />
&nbsp;28.02.2006 13:00&nbsp; &nbsp; C:\WINDOWS\System\setup.inf --------- 59167 <br />
&nbsp;28.02.2006 13:00&nbsp; &nbsp; C:\WINDOWS\System\SHELL.DLL --------- 5120 <br />
&nbsp;28.02.2006 13:00&nbsp; &nbsp; C:\WINDOWS\System\SOUND.DRV --------- 1744 <br />
&nbsp;28.02.2006 13:00&nbsp; &nbsp; C:\WINDOWS\System\stdole.tlb --------- 5532 <br />
&nbsp;28.02.2006 13:00&nbsp; &nbsp; C:\WINDOWS\System\SYSTEM.DRV --------- 3360 <br />
&nbsp;28.02.2006 13:00&nbsp; &nbsp; C:\WINDOWS\System\TAPI.DLL --------- 19200 <br />
&nbsp;28.02.2006 13:00&nbsp; &nbsp; C:\WINDOWS\System\TIMER.DRV --------- 4048 <br />
&nbsp;28.02.2006 13:00&nbsp; &nbsp; C:\WINDOWS\System\AVIFILE.DLL --------- 109504 <br />
&nbsp;28.02.2006 13:00&nbsp; &nbsp; C:\WINDOWS\System\AVICAP.DLL --------- 70368 <br />
&nbsp;28.02.2006 13:00&nbsp; &nbsp; C:\WINDOWS\System\VER.DLL --------- 9200 <br />
&nbsp;28.02.2006 13:00&nbsp; &nbsp; C:\WINDOWS\System\VGA.DRV --------- 2176 <br />
&nbsp;28.02.2006 13:00&nbsp; &nbsp; C:\WINDOWS\System\WFWNET.DRV --------- 13600 <br />
&nbsp;28.02.2006 13:00&nbsp; &nbsp; C:\WINDOWS\System\OLECLI.DLL --------- 82944 <br />
----------------------------------------<br />
<br />
&nbsp;<br />
C:\WINDOWS\System32<br />
<br />
&nbsp;28.01.2010 08:28&nbsp; &nbsp;  C:\WINDOWS\system32\perfc009.dat --------- 72238 <br />
&nbsp;28.01.2010 08:28&nbsp; &nbsp;  C:\WINDOWS\system32\perfh009.dat --------- 444362 <br />
&nbsp;28.01.2010 08:28&nbsp; &nbsp;  C:\WINDOWS\system32\perfc007.dat --------- 95544 <br />
&nbsp;28.01.2010 08:28&nbsp; &nbsp;  C:\WINDOWS\system32\perfh007.dat --------- 487724 <br />
&nbsp;28.01.2010 08:28&nbsp; &nbsp;  C:\WINDOWS\system32\PerfStringBackup.INI --------- 1114434 <br />
&nbsp;28.01.2010 08:24&nbsp; &nbsp;  C:\WINDOWS\system32\wpa.dbl --------- 2206 <br />
&nbsp;28.01.2010 08:23&nbsp; &nbsp;  C:\WINDOWS\system32\CatRoot2 --------- 0 <br />
&nbsp;28.01.2010 08:23&nbsp; &nbsp;  C:\WINDOWS\system32\log.txt --------- 44 <br />
&nbsp;27.01.2010 23:51&nbsp; &nbsp;  C:\WINDOWS\system32\config --------- 0 <br />
&nbsp;27.01.2010 23:25&nbsp; &nbsp;  C:\WINDOWS\system32\CONFIG.NT --------- 3002 <br />
&nbsp;27.01.2010 23:01&nbsp; &nbsp;  C:\WINDOWS\system32\drivers --------- 0 <br />
&nbsp;27.01.2010 01:23&nbsp; &nbsp;  C:\WINDOWS\system32\dllcache --------- 0 <br />
&nbsp;27.01.2010 01:23&nbsp; &nbsp;  C:\WINDOWS\system32\inetsrv --------- 0 <br />
&nbsp;27.01.2010 01:23&nbsp; &nbsp;  C:\WINDOWS\system32\oobe --------- 0 <br />
&nbsp;27.01.2010 01:23&nbsp; &nbsp;  C:\WINDOWS\system32\CatRoot --------- 0 <br />
&nbsp;27.01.2010 01:18&nbsp; &nbsp;  C:\WINDOWS\system32\CatRoot_bak --------- 0 <br />
&nbsp;27.01.2010 01:12&nbsp; &nbsp;  C:\WINDOWS\system32\TZLog.log --------- 594066 <br />
&nbsp;27.01.2010 01:09&nbsp; &nbsp;  C:\WINDOWS\system32\FNTCACHE.DAT --------- 371280 <br />
&nbsp;27.01.2010 01:02&nbsp; &nbsp;  C:\WINDOWS\system32\de-DE --------- 0 <br />
&nbsp;26.01.2010 21:26&nbsp; &nbsp;  C:\WINDOWS\system32\Restore --------- 0 <br />
&nbsp;26.01.2010 20:37&nbsp; &nbsp;  C:\WINDOWS\system32\ias --------- 0 <br />
&nbsp;25.01.2010 03:03&nbsp; &nbsp;  C:\WINDOWS\system32\wbem --------- 0 <br />
&nbsp;24.01.2010 21:17&nbsp; &nbsp;  C:\WINDOWS\system32\NtmsData --------- 0 <br />
&nbsp;24.01.2010 19:53&nbsp; &nbsp;  C:\WINDOWS\system32\oeminfo.ini --------- 34 <br />
&nbsp;20.01.2010 09:22&nbsp; &nbsp;  C:\WINDOWS\system32\amcompat.tlb --------- 16832 <br />
&nbsp;20.01.2010 09:22&nbsp; &nbsp;  C:\WINDOWS\system32\nscompat.tlb --------- 23392 <br />
&nbsp;19.01.2010 22:22&nbsp; &nbsp;  C:\WINDOWS\system32\zh-TW --------- 0 <br />
&nbsp;19.01.2010 22:22&nbsp; &nbsp;  C:\WINDOWS\system32\zh-HK --------- 0 <br />
&nbsp;19.01.2010 22:22&nbsp; &nbsp;  C:\WINDOWS\system32\tr-TR --------- 0 <br />
&nbsp;19.01.2010 22:22&nbsp; &nbsp;  C:\WINDOWS\system32\sv-SE --------- 0 <br />
&nbsp;19.01.2010 22:22&nbsp; &nbsp;  C:\WINDOWS\system32\pt-BR --------- 0 <br />
&nbsp;19.01.2010 22:22&nbsp; &nbsp;  C:\WINDOWS\system32\nl-NL --------- 0 <br />
&nbsp;19.01.2010 22:22&nbsp; &nbsp;  C:\WINDOWS\system32\nb-NO --------- 0 <br />
&nbsp;19.01.2010 22:22&nbsp; &nbsp;  C:\WINDOWS\system32\ko-KR --------- 0 <br />
&nbsp;19.01.2010 22:22&nbsp; &nbsp;  C:\WINDOWS\system32\it-IT --------- 0 <br />
&nbsp;19.01.2010 22:22&nbsp; &nbsp;  C:\WINDOWS\system32\he-IL --------- 0 <br />
&nbsp;19.01.2010 22:22&nbsp; &nbsp;  C:\WINDOWS\system32\fr-FR --------- 0 <br />
&nbsp;19.01.2010 22:22&nbsp; &nbsp;  C:\WINDOWS\system32\fi-FI --------- 0 <br />
&nbsp;19.01.2010 22:22&nbsp; &nbsp;  C:\WINDOWS\system32\es-ES --------- 0 <br />
&nbsp;19.01.2010 22:22&nbsp; &nbsp;  C:\WINDOWS\system32\el-GR --------- 0 <br />
&nbsp;19.01.2010 22:22&nbsp; &nbsp;  C:\WINDOWS\system32\da-DK --------- 0 <br />
&nbsp;19.01.2010 22:22&nbsp; &nbsp;  C:\WINDOWS\system32\en-us --------- 0 <br />
&nbsp;19.01.2010 22:22&nbsp; &nbsp;  C:\WINDOWS\system32\ar-SA --------- 0 <br />
&nbsp;19.01.2010 12:57&nbsp; &nbsp;  C:\WINDOWS\system32\avastSS.scr --------- 38848 <br />
&nbsp;19.01.2010 12:57&nbsp; &nbsp;  C:\WINDOWS\system32\aswBoot.exe --------- 152672 <br />
&nbsp;14.01.2010 11:12&nbsp; &nbsp;  C:\WINDOWS\system32\MpSigStub.exe --------- 181120 <br />
&nbsp;04.01.2010 16:17&nbsp; &nbsp;  C:\WINDOWS\system32\MRT.exe --------- 29634504 <br />
&nbsp;19.10.2009 18:00&nbsp; &nbsp;  C:\WINDOWS\system32\LogFiles --------- 0 <br />
&nbsp;09.10.2009 22:50&nbsp; &nbsp;  C:\WINDOWS\system32\SNAGIT7 --------- 8871658 <br />
&nbsp;24.08.2009 22:08&nbsp; &nbsp;  C:\WINDOWS\system32\DfSdkBt.exe --------- 28160 <br />
&nbsp;17.08.2009 23:33&nbsp; &nbsp;  C:\WINDOWS\system32\FM20.DLL --------- 1193832 <br />
&nbsp;13.08.2009 16:15&nbsp; &nbsp;  C:\WINDOWS\system32\jscript.dll --------- 512000 <br />
&nbsp;06.08.2009 18:24&nbsp; &nbsp;  C:\WINDOWS\system32\wucltui.dll --------- 327896 <br />
&nbsp;06.08.2009 18:24&nbsp; &nbsp;  C:\WINDOWS\system32\wuweb.dll --------- 209632 <br />
&nbsp;06.08.2009 18:24&nbsp; &nbsp;  C:\WINDOWS\system32\wuaueng.dll.mui --------- 18144 <br />
&nbsp;06.08.2009 18:24&nbsp; &nbsp;  C:\WINDOWS\system32\wuaucpl.cpl --------- 217816 <br />
&nbsp;06.08.2009 18:24&nbsp; &nbsp;  C:\WINDOWS\system32\wups.dll --------- 35552 <br />
&nbsp;06.08.2009 18:24&nbsp; &nbsp;  C:\WINDOWS\system32\wups2.dll --------- 44768 <br />
&nbsp;06.08.2009 18:24&nbsp; &nbsp;  C:\WINDOWS\system32\wuapi.dll.mui --------- 15584 <br />
&nbsp;06.08.2009 18:24&nbsp; &nbsp;  C:\WINDOWS\system32\wuauclt.exe --------- 53472 <br />
&nbsp;06.08.2009 18:24&nbsp; &nbsp;  C:\WINDOWS\system32\cdm.dll --------- 96480 <br />
&nbsp;06.08.2009 18:24&nbsp; &nbsp;  C:\WINDOWS\system32\wuaucpl.cpl.mui --------- 15584 <br />
&nbsp;06.08.2009 18:24&nbsp; &nbsp;  C:\WINDOWS\system32\wucltui.dll.mui --------- 23264 <br />
&nbsp;06.08.2009 18:23&nbsp; &nbsp;  C:\WINDOWS\system32\wuapi.dll --------- 575704 <br />
&nbsp;06.08.2009 18:23&nbsp; &nbsp;  C:\WINDOWS\system32\mucltui.dll --------- 274288 <br />
&nbsp;06.08.2009 18:23&nbsp; &nbsp;  C:\WINDOWS\system32\muweb.dll --------- 215920 <br />
&nbsp;06.08.2009 18:23&nbsp; &nbsp;  C:\WINDOWS\system32\mucltui.dll.mui --------- 17776 <br />
&nbsp;06.08.2009 18:23&nbsp; &nbsp;  C:\WINDOWS\system32\wuaueng.dll --------- 1929952 <br />
&nbsp;03.08.2009 15:07&nbsp; &nbsp;  C:\WINDOWS\system32\OGAAddin.dll --------- 322928 <br />
&nbsp;03.08.2009 15:07&nbsp; &nbsp;  C:\WINDOWS\system32\OGAEXEC.exe --------- 230768 <br />
&nbsp;03.08.2009 15:07&nbsp; &nbsp;  C:\WINDOWS\system32\OGACheckControl.dll --------- 403816 <br />
&nbsp;01.08.2009 23:31&nbsp; &nbsp;  C:\WINDOWS\system32\AIPICT8.GID --------- 16826 <br />
&nbsp;21.07.2009 00:05&nbsp; &nbsp;  C:\WINDOWS\system32\msxml4.dll --------- 1348432 <br />
&nbsp;25.06.2009 09:25&nbsp; &nbsp;  C:\WINDOWS\system32\msv1_0.dll --------- 136192 <br />
&nbsp;25.05.2009 00:24&nbsp; &nbsp;  C:\WINDOWS\system32\mssph.dll --------- 350208 <br />
&nbsp;07.05.2009 13:42&nbsp; &nbsp;  C:\WINDOWS\system32\spupdsvc.inf --------- 274 <br />
&nbsp;07.05.2009 05:10&nbsp; &nbsp;  C:\WINDOWS\system32\XPSViewer --------- 0 <br />
&nbsp;21.03.2009 15:06&nbsp; &nbsp;  C:\WINDOWS\system32\kernel32.dll --------- 1063424 <br />
&nbsp;10.03.2009 22:18&nbsp; &nbsp;  C:\WINDOWS\system32\WgaTray.exe --------- 970632 <br />
&nbsp;10.03.2009 22:18&nbsp; &nbsp;  C:\WINDOWS\system32\LegitCheckControl.dll --------- 1482112 <br />
&nbsp;10.03.2009 22:18&nbsp; &nbsp;  C:\WINDOWS\system32\WgaLogon.dll --------- 265096 <br />
&nbsp;08.03.2009 04:33&nbsp; &nbsp;  C:\WINDOWS\system32\corpol.dll --------- 18944 <br />
&nbsp;06.03.2009 15:19&nbsp; &nbsp;  C:\WINDOWS\system32\pdh.dll --------- 286720 <br />
&nbsp;09.02.2009 15:04&nbsp; &nbsp;  C:\WINDOWS\system32\win32k.sys --------- 1846912 <br />
&nbsp;09.02.2009 12:21&nbsp; &nbsp;  C:\WINDOWS\system32\ntkrnlpa.exe --------- 2026496 <br />
&nbsp;09.02.2009 12:21&nbsp; &nbsp;  C:\WINDOWS\system32\ntoskrnl.exe --------- 2147840 <br />
&nbsp;09.02.2009 12:21&nbsp; &nbsp;  C:\WINDOWS\system32\services.exe --------- 111104 <br />
&nbsp;09.02.2009 11:51&nbsp; &nbsp;  C:\WINDOWS\system32\rpcss.dll --------- 401408 <br />
&nbsp;09.02.2009 11:51&nbsp; &nbsp;  C:\WINDOWS\system32\lsasrv.dll --------- 736768 <br />
&nbsp;09.02.2009 11:51&nbsp; &nbsp;  C:\WINDOWS\system32\advapi32.dll --------- 678400 <br />
&nbsp;09.02.2009 11:51&nbsp; &nbsp;  C:\WINDOWS\system32\ntdll.dll --------- 740352 <br />
&nbsp;06.02.2009 11:39&nbsp; &nbsp;  C:\WINDOWS\system32\sc.exe --------- 35328 <br />
&nbsp;03.02.2009 20:57&nbsp; &nbsp;  C:\WINDOWS\system32\secur32.dll --------- 56832 <br />
&nbsp;07.01.2009 18:20&nbsp; &nbsp;  C:\WINDOWS\system32\nlsdl.dll --------- 24576 <br />
&nbsp;07.01.2009 18:20&nbsp; &nbsp;  C:\WINDOWS\system32\normaliz.dll --------- 23552 <br />
&nbsp;07.01.2009 18:20&nbsp; &nbsp;  C:\WINDOWS\system32\normnfkc.nls --------- 66384 <br />
&nbsp;07.01.2009 18:20&nbsp; &nbsp;  C:\WINDOWS\system32\idndl.dll --------- 26112 <br />
&nbsp;07.01.2009 18:20&nbsp; &nbsp;  C:\WINDOWS\system32\normnfd.nls --------- 39284 <br />
&nbsp;07.01.2009 18:20&nbsp; &nbsp;  C:\WINDOWS\system32\normidna.nls --------- 59342 <br />
&nbsp;07.01.2009 18:20&nbsp; &nbsp;  C:\WINDOWS\system32\normnfkd.nls --------- 60294 <br />
----------------------------------------<br />
<br />
&nbsp;<br />
C:\WINDOWS\Prefetch<br />
<br />
&nbsp;28.01.2010 08:29&nbsp; &nbsp;  C:\WINDOWS\Prefetch\CMD.EXE-087B4001.pf --------- 13208 <br />
&nbsp;28.01.2010 08:29&nbsp; &nbsp;  C:\WINDOWS\Prefetch\WMIPRVSE.EXE-28F301A9.pf --------- 35002 <br />
&nbsp;28.01.2010 08:28&nbsp; &nbsp;  C:\WINDOWS\Prefetch\SEARCHFILTERHOST.EXE-148579FB.pf --------- 21700 <br />
&nbsp;28.01.2010 08:28&nbsp; &nbsp;  C:\WINDOWS\Prefetch\SEARCHPROTOCOLHOST.EXE-34E0253A.pf --------- 77960 <br />
&nbsp;28.01.2010 08:27&nbsp; &nbsp;  C:\WINDOWS\Prefetch\WMIADAP.EXE-2DF425B2.pf --------- 65270 <br />
&nbsp;28.01.2010 08:26&nbsp; &nbsp;  C:\WINDOWS\Prefetch\NOTEPAD.EXE-336351A9.pf --------- 66010 <br />
&nbsp;28.01.2010 08:26&nbsp; &nbsp;  C:\WINDOWS\Prefetch\HIJACKTHIS.EXE-39024128.pf --------- 22590 <br />
&nbsp;28.01.2010 08:25&nbsp; &nbsp;  C:\WINDOWS\Prefetch\WSCNTFY.EXE-1B24F5EB.pf --------- 9998 <br />
&nbsp;28.01.2010 08:24&nbsp; &nbsp;  C:\WINDOWS\Prefetch\ALG.EXE-0F138680.pf --------- 17080 <br />
&nbsp;28.01.2010 08:24&nbsp; &nbsp;  C:\WINDOWS\Prefetch\HPQTOASTER.EXE-3835EFAF.pf --------- 19446 <br />
&nbsp;28.01.2010 08:24&nbsp; &nbsp;  C:\WINDOWS\Prefetch\IMAPI.EXE-0BF740A4.pf --------- 28892 <br />
&nbsp;28.01.2010 08:24&nbsp; &nbsp;  C:\WINDOWS\Prefetch\PTSERVS.EXE-2D68FEAA.pf --------- 15746 <br />
&nbsp;28.01.2010 08:24&nbsp; &nbsp;  C:\WINDOWS\Prefetch\WUAUCLT.EXE-399A8E72.pf --------- 23354 <br />
&nbsp;28.01.2010 08:24&nbsp; &nbsp;  C:\WINDOWS\Prefetch\SWIHPWMI.EXE-0B7277F9.pf --------- 18404 <br />
&nbsp;28.01.2010 08:24&nbsp; &nbsp;  C:\WINDOWS\Prefetch\SEARCHINDEXER.EXE-1AD3307F.pf --------- 101904 <br />
&nbsp;28.01.2010 08:24&nbsp; &nbsp;  C:\WINDOWS\Prefetch\SERVICE.EXE-1E558E56.pf --------- 5608 <br />
&nbsp;28.01.2010 08:24&nbsp; &nbsp;  C:\WINDOWS\Prefetch\HPQWMIEX.EXE-13981AE1.pf --------- 15946 <br />
&nbsp;28.01.2010 08:24&nbsp; &nbsp;  C:\WINDOWS\Prefetch\UNS.EXE-20C12FBA.pf --------- 44722 <br />
&nbsp;28.01.2010 08:24&nbsp; &nbsp;  C:\WINDOWS\Prefetch\APACHE.EXE-01808022.pf --------- 50438 <br />
&nbsp;28.01.2010 08:24&nbsp; &nbsp;  C:\WINDOWS\Prefetch\VERCLSID.EXE-3667BD89.pf --------- 15618 <br />
&nbsp;28.01.2010 08:24&nbsp; &nbsp;  C:\WINDOWS\Prefetch\NTOSBOOT-B00DFAAD.pf --------- 997990 <br />
&nbsp;28.01.2010 08:17&nbsp; &nbsp;  C:\WINDOWS\Prefetch\WINZIP32.EXE-335422C1.pf --------- 30186 <br />
&nbsp;28.01.2010 08:16&nbsp; &nbsp;  C:\WINDOWS\Prefetch\FIREFOX.EXE-1D57670A.pf --------- 85578 <br />
&nbsp;28.01.2010 08:12&nbsp; &nbsp;  C:\WINDOWS\Prefetch\OPERA.EXE-24550E7A.pf --------- 90166 <br />
&nbsp;28.01.2010 08:11&nbsp; &nbsp;  C:\WINDOWS\Prefetch\AVAST.SETUP-235119C9.pf --------- 86072 <br />
&nbsp;28.01.2010 08:11&nbsp; &nbsp;  C:\WINDOWS\Prefetch\NMINDEXINGSERVICE.EXE-1C758E9B.pf --------- 34244 <br />
&nbsp;28.01.2010 08:11&nbsp; &nbsp;  C:\WINDOWS\Prefetch\SVCHOST.EXE-3530F672.pf --------- 19090 <br />
&nbsp;28.01.2010 08:11&nbsp; &nbsp;  C:\WINDOWS\Prefetch\PSISERVICE_2.EXE-2EE6ED5B.pf --------- 9286 <br />
&nbsp;28.01.2010 08:11&nbsp; &nbsp;  C:\WINDOWS\Prefetch\IOCTLSVC.EXE-27C73A35.pf --------- 7582 <br />
&nbsp;28.01.2010 08:11&nbsp; &nbsp;  C:\WINDOWS\Prefetch\NBSERVICE.EXE-21D80A5A.pf --------- 64270 <br />
&nbsp;28.01.2010 08:11&nbsp; &nbsp;  C:\WINDOWS\Prefetch\IFXPSDSV.EXE-055082B6.pf --------- 12262 <br />
&nbsp;28.01.2010 07:21&nbsp; &nbsp;  C:\WINDOWS\Prefetch\GOOGLEUPDATE.EXE-187AE91D.pf --------- 32684 <br />
&nbsp;28.01.2010 06:16&nbsp; &nbsp;  C:\WINDOWS\Prefetch\GMER.EXE-00BC0684.pf --------- 32040 <br />
&nbsp;28.01.2010 06:16&nbsp; &nbsp;  C:\WINDOWS\Prefetch\RUNDLL32.EXE-25C40596.pf --------- 17360 <br />
&nbsp;28.01.2010 06:16&nbsp; &nbsp;  C:\WINDOWS\Prefetch\RUNDLL32.EXE-2576181F.pf --------- 35932 <br />
&nbsp;28.01.2010 06:04&nbsp; &nbsp;  C:\WINDOWS\Prefetch\LOGONUI.EXE-0AF22957.pf --------- 33616 <br />
&nbsp;28.01.2010 04:51&nbsp; &nbsp;  C:\WINDOWS\Prefetch\ACRORD32.EXE-0BE2C5CE.pf --------- 60886 <br />
&nbsp;28.01.2010 01:18&nbsp; &nbsp;  C:\WINDOWS\Prefetch\CCLEANER.EXE-065E2F3F.pf --------- 23974 <br />
&nbsp;28.01.2010 00:21&nbsp; &nbsp;  C:\WINDOWS\Prefetch\GOOGLECRASHHANDLER.EXE-2652FEB7.pf --------- 13688 <br />
&nbsp;28.01.2010 00:01&nbsp; &nbsp;  C:\WINDOWS\Prefetch\JAVA.EXE-27F749B2.pf --------- 8156 <br />
&nbsp;27.01.2010 23:58&nbsp; &nbsp;  C:\WINDOWS\Prefetch\F-SECURE-BLACKLIGHT.EXE-18770BBD.pf --------- 16138 <br />
&nbsp;27.01.2010 23:49&nbsp; &nbsp;  C:\WINDOWS\Prefetch\REGEDIT.EXE-1B606482.pf --------- 12878 <br />
&nbsp;27.01.2010 23:48&nbsp; &nbsp;  C:\WINDOWS\Prefetch\WO6.EXE-1C38BD78.pf --------- 32208 <br />
&nbsp;27.01.2010 23:41&nbsp; &nbsp;  C:\WINDOWS\Prefetch\WINWORD.EXE-0B995611.pf --------- 86172 <br />
&nbsp;27.01.2010 23:36&nbsp; &nbsp;  C:\WINDOWS\Prefetch\HJTINSTALL.EXE-136FD093.pf --------- 15794 <br />
&nbsp;27.01.2010 23:36&nbsp; &nbsp;  C:\WINDOWS\Prefetch\HIJACKTHISINSTALLER.EXE-120AB4A3.pf --------- 16266 <br />
&nbsp;27.01.2010 23:25&nbsp; &nbsp;  C:\WINDOWS\Prefetch\SETUP.OVR-209B8890.pf --------- 29438 <br />
&nbsp;27.01.2010 23:02&nbsp; &nbsp;  C:\WINDOWS\Prefetch\AVASTUI.EXE-08F5549F.pf --------- 37008 <br />
&nbsp;27.01.2010 23:02&nbsp; &nbsp;  C:\WINDOWS\Prefetch\ASWRUNDLL.EXE-39A589E2.pf --------- 24146 <br />
&nbsp;27.01.2010 23:02&nbsp; &nbsp;  C:\WINDOWS\Prefetch\AVASTSVC.EXE-107496F9.pf --------- 57970 <br />
&nbsp;27.01.2010 23:01&nbsp; &nbsp;  C:\WINDOWS\Prefetch\MSIEXEC.EXE-2F8A8CAE.pf --------- 123368 <br />
&nbsp;27.01.2010 23:01&nbsp; &nbsp;  C:\WINDOWS\Prefetch\INSTALL.EXE-327ABF13.pf --------- 20540 <br />
&nbsp;27.01.2010 23:01&nbsp; &nbsp;  C:\WINDOWS\Prefetch\VCREDIST_X86_SP1.EXE-1E03832F.pf --------- 71976 <br />
&nbsp;27.01.2010 23:00&nbsp; &nbsp;  C:\WINDOWS\Prefetch\AVAST.SETUP-30CF3E9F.pf --------- 22030 <br />
&nbsp;27.01.2010 23:00&nbsp; &nbsp;  C:\WINDOWS\Prefetch\AVAST.SETUP-2F3325CE.pf --------- 16840 <br />
&nbsp;27.01.2010 22:59&nbsp; &nbsp;  C:\WINDOWS\Prefetch\AVAST_ANTIVIRUS5_FREE_ENG.EXE-2148834D.pf --------- 55694 <br />
&nbsp;27.01.2010 22:56&nbsp; &nbsp;  C:\WINDOWS\Prefetch\ASHPOPWZ.EXE-2606EB69.pf --------- 42084 <br />
&nbsp;27.01.2010 22:56&nbsp; &nbsp;  C:\WINDOWS\Prefetch\ASWRUNDLL.EXE-0E01E700.pf --------- 17224 <br />
&nbsp;27.01.2010 22:56&nbsp; &nbsp;  C:\WINDOWS\Prefetch\ASHCNSNT.EXE-37A373CF.pf --------- 22604 <br />
&nbsp;27.01.2010 22:55&nbsp; &nbsp;  C:\WINDOWS\Prefetch\AVAST.SETUP-2B043760.pf --------- 87504 <br />
&nbsp;27.01.2010 22:55&nbsp; &nbsp;  C:\WINDOWS\Prefetch\RUNDLL32.EXE-13404D23.pf --------- 74390 <br />
&nbsp;27.01.2010 22:52&nbsp; &nbsp;  C:\WINDOWS\Prefetch\SETUP.OVR-10EB9DE2.pf --------- 22216 <br />
&nbsp;27.01.2010 22:50&nbsp; &nbsp;  C:\WINDOWS\Prefetch\ASHCHEST.EXE-057D57A0.pf --------- 29246 <br />
&nbsp;27.01.2010 22:49&nbsp; &nbsp;  C:\WINDOWS\Prefetch\ASHSIMPL.EXE-007287FE.pf --------- 94634 <br />
&nbsp;27.01.2010 22:48&nbsp; &nbsp;  C:\WINDOWS\Prefetch\ASHAVAST.EXE-0274A551.pf --------- 68672 <br />
&nbsp;27.01.2010 22:47&nbsp; &nbsp;  C:\WINDOWS\Prefetch\ASHWEBSV.EXE-091EF0CF.pf --------- 22828 <br />
&nbsp;27.01.2010 22:47&nbsp; &nbsp;  C:\WINDOWS\Prefetch\ASHMAISV.EXE-24E25810.pf --------- 20734 <br />
&nbsp;27.01.2010 22:42&nbsp; &nbsp;  C:\WINDOWS\Prefetch\AVAST.SETUP-17E9E205.pf --------- 20672 <br />
&nbsp;27.01.2010 22:42&nbsp; &nbsp;  C:\WINDOWS\Prefetch\RUNDLL32.EXE-147710F4.pf --------- 28540 <br />
&nbsp;27.01.2010 22:42&nbsp; &nbsp;  C:\WINDOWS\Prefetch\AVAST4HOME.EXE-2867DC9B.pf --------- 54292 <br />
&nbsp;27.01.2010 22:42&nbsp; &nbsp;  C:\WINDOWS\Prefetch\MMC.EXE-22FA564C.pf --------- 42948 <br />
&nbsp;27.01.2010 22:41&nbsp; &nbsp;  C:\WINDOWS\Prefetch\CONTROL.EXE-013DBFB5.pf --------- 64022 <br />
&nbsp;27.01.2010 22:41&nbsp; &nbsp;  C:\WINDOWS\Prefetch\RUNDLL32.EXE-1831A4F3.pf --------- 43840 <br />
&nbsp;27.01.2010 22:23&nbsp; &nbsp;  C:\WINDOWS\Prefetch\OUTLOOK.EXE-34D715FD.pf --------- 67356 <br />
&nbsp;27.01.2010 22:21&nbsp; &nbsp;  C:\WINDOWS\Prefetch\DRWTSN32.EXE-2B4B52AC.pf --------- 26210 <br />
&nbsp;27.01.2010 22:21&nbsp; &nbsp;  C:\WINDOWS\Prefetch\DWWIN.EXE-30875ADC.pf --------- 28560 <br />
&nbsp;27.01.2010 22:21&nbsp; &nbsp;  C:\WINDOWS\Prefetch\RUNDLL32.EXE-2B80B5E3.pf --------- 16722 <br />
&nbsp;27.01.2010 22:21&nbsp; &nbsp;  C:\WINDOWS\Prefetch\DUMPREP.EXE-1B46F901.pf --------- 121190 <br />
&nbsp;27.01.2010 22:13&nbsp; &nbsp;  C:\WINDOWS\Prefetch\EXPLORER.EXE-082F38A9.pf --------- 91216 <br />
&nbsp;27.01.2010 22:13&nbsp; &nbsp;  C:\WINDOWS\Prefetch\TASKMGR.EXE-20256C55.pf --------- 18972 <br />
&nbsp;27.01.2010 22:11&nbsp; &nbsp;  C:\WINDOWS\Prefetch\RUNDLL32.EXE-451FC2C0.pf --------- 12646 <br />
&nbsp;27.01.2010 21:35&nbsp; &nbsp;  C:\WINDOWS\Prefetch\SNAGIT32.EXE-29D52F66.pf --------- 47870 <br />
&nbsp;27.01.2010 21:35&nbsp; &nbsp;  C:\WINDOWS\Prefetch\RUNDLL32.EXE-3A8B9DED.pf --------- 16726 <br />
&nbsp;27.01.2010 21:35&nbsp; &nbsp;  C:\WINDOWS\Prefetch\TSCHELP.EXE-02EEB29E.pf --------- 12992 <br />
&nbsp;27.01.2010 21:28&nbsp; &nbsp;  C:\WINDOWS\Prefetch\POWERPNT.EXE-35D9866D.pf --------- 51994 <br />
&nbsp;27.01.2010 21:27&nbsp; &nbsp;  C:\WINDOWS\Prefetch\OUTLOOK.EXE-2FC6F8AB.pf --------- 60794 <br />
&nbsp;27.01.2010 20:33&nbsp; &nbsp;  C:\WINDOWS\Prefetch\GOOGLEUPDATER.EXE-36CE3796.pf --------- 34510 <br />
&nbsp;27.01.2010 20:33&nbsp; &nbsp;  C:\WINDOWS\Prefetch\GOOGLEUPDATERSERVICE.EXE-19F5FCF4.pf --------- 17212 <br />
&nbsp;27.01.2010 20:31&nbsp; &nbsp;  C:\WINDOWS\Prefetch\LMS.EXE-19F9CEFA.pf --------- 7494 <br />
&nbsp;27.01.2010 20:31&nbsp; &nbsp;  C:\WINDOWS\Prefetch\MYSQLD-NT.EXE-2D34BCE2.pf --------- 21906 <br />
&nbsp;27.01.2010 20:31&nbsp; &nbsp;  C:\WINDOWS\Prefetch\IVIREGMGR.EXE-1F09B9E8.pf --------- 9816 <br />
&nbsp;27.01.2010 20:31&nbsp; &nbsp;  C:\WINDOWS\Prefetch\IFXTCS.EXE-05209F14.pf --------- 31830 <br />
&nbsp;27.01.2010 20:21&nbsp; &nbsp;  C:\WINDOWS\Prefetch\INSTALL.EXE-1D3D6ED6.pf --------- 20740 <br />
&nbsp;27.01.2010 20:20&nbsp; &nbsp;  C:\WINDOWS\Prefetch\AVAST.SETUP-139ADF48.pf --------- 21642 <br />
&nbsp;27.01.2010 20:14&nbsp; &nbsp;  C:\WINDOWS\Prefetch\SNDVOL32.EXE-383480B7.pf --------- 36050 <br />
&nbsp;27.01.2010 20:13&nbsp; &nbsp;  C:\WINDOWS\Prefetch\AVAST.SETUP-1110E40E.pf --------- 21878 <br />
&nbsp;27.01.2010 19:29&nbsp; &nbsp;  C:\WINDOWS\Prefetch\ACDSEE10.EXE-004BC4BB.pf --------- 91530 <br />
&nbsp;27.01.2010 19:29&nbsp; &nbsp;  C:\WINDOWS\Prefetch\ACDSEEQV10.EXE-33CDB887.pf --------- 63820 <br />
&nbsp;27.01.2010 19:28&nbsp; &nbsp;  C:\WINDOWS\Prefetch\MEDIACATALOGER.EXE-00EBBB54.pf --------- 29138 <br />
&nbsp;27.01.2010 19:28&nbsp; &nbsp;  C:\WINDOWS\Prefetch\COREL PAINT SHOP PRO PHOTO.EX-298CA039.pf --------- 79894 <br />
&nbsp;27.01.2010 17:31&nbsp; &nbsp;  C:\WINDOWS\Prefetch\XAMPP-CONTROL.EXE-0F0FBF15.pf --------- 22748 <br />
&nbsp;27.01.2010 17:31&nbsp; &nbsp;  C:\WINDOWS\Prefetch\PTHOST.EXE-367708D4.pf --------- 60442 <br />
&nbsp;27.01.2010 07:29&nbsp; &nbsp;  C:\WINDOWS\Prefetch\MAPSOURCE.EXE-2660B940.pf --------- 47024 <br />
&nbsp;27.01.2010 06:21&nbsp; &nbsp;  C:\WINDOWS\Prefetch\CALC.EXE-02CD573A.pf --------- 13422 <br />
&nbsp;27.01.2010 06:17&nbsp; &nbsp;  C:\WINDOWS\Prefetch\RUNDLL32.EXE-44A0B4BC.pf --------- 28318 <br />
&nbsp;27.01.2010 06:15&nbsp; &nbsp;  C:\WINDOWS\Prefetch\HELPHOST.EXE-247D2792.pf --------- 28126 <br />
&nbsp;27.01.2010 06:15&nbsp; &nbsp;  C:\WINDOWS\Prefetch\HELPSVC.EXE-2878DDA2.pf --------- 25658 <br />
&nbsp;27.01.2010 06:15&nbsp; &nbsp;  C:\WINDOWS\Prefetch\HELPCTR.EXE-3862B6F5.pf --------- 58984 <br />
&nbsp;27.01.2010 06:12&nbsp; &nbsp;  C:\WINDOWS\Prefetch\RUNDLL32.EXE-146D9EC8.pf --------- 16314 <br />
&nbsp;27.01.2010 05:58&nbsp; &nbsp;  C:\WINDOWS\Prefetch\VLC.EXE-29851A71.pf --------- 111480 <br />
&nbsp;27.01.2010 05:50&nbsp; &nbsp;  C:\WINDOWS\Prefetch\MDS-MINI.EXE-0EC87CAC.pf --------- 34864 <br />
&nbsp;27.01.2010 05:49&nbsp; &nbsp;  C:\WINDOWS\Prefetch\MOFFFREECALC.EXE-18828A7F.pf --------- 16256 <br />
&nbsp;27.01.2010 04:56&nbsp; &nbsp;  C:\WINDOWS\Prefetch\WMPLAYER.EXE-09969332.pf --------- 68912 <br />
&nbsp;27.01.2010 04:55&nbsp; &nbsp;  C:\WINDOWS\Prefetch\WMPLAYER.EXE-09969338.pf --------- 56406 <br />
&nbsp;27.01.2010 02:47&nbsp; &nbsp;  C:\WINDOWS\Prefetch\OPERA_1010_IN_SETUP.EXE-34D42E5D.pf --------- 17684 <br />
&nbsp;27.01.2010 02:42&nbsp; &nbsp;  C:\WINDOWS\Prefetch\OFFLB.EXE-03A7C203.pf --------- 49704 <br />
&nbsp;27.01.2010 02:29&nbsp; &nbsp;  C:\WINDOWS\Prefetch\AVAST.SETUP-21817719.pf --------- 20324 <br />
&nbsp;27.01.2010 02:17&nbsp; &nbsp;  C:\WINDOWS\Prefetch\AVAST.SETUP-04326461.pf --------- 21154 <br />
&nbsp;27.01.2010 02:14&nbsp; &nbsp;  C:\WINDOWS\Prefetch\AVASTVIRUSENTFERNFER.TMP-3B599739.pf --------- 15622 <br />
&nbsp;27.01.2010 02:14&nbsp; &nbsp;  C:\WINDOWS\Prefetch\AVASTVIRUSENTFERNFER.EXE-2E04B381.pf --------- 7748 <br />
&nbsp;27.01.2010 02:04&nbsp; &nbsp;  C:\WINDOWS\Prefetch\WINVER.EXE-33E0A108.pf --------- 13480 <br />
----------------------------------------<br />
<br />
&nbsp;<br />
C:\WINDOWS\Tasks<br />
<br />
&nbsp;28.01.2010 08:23&nbsp; &nbsp;  C:\WINDOWS\Tasks\Google Software Updater.job --------- 1044 <br />
&nbsp;28.01.2010 08:23&nbsp; &nbsp;  C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job --------- 1084 <br />
&nbsp;28.01.2010 08:23&nbsp; &nbsp;  C:\WINDOWS\Tasks\SA.DAT --------- 6 <br />
&nbsp;28.01.2010 07:21&nbsp; &nbsp;  C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job --------- 1088 <br />
&nbsp;28.02.2006 13:00&nbsp; &nbsp;  C:\WINDOWS\Tasks\desktop.ini --------- 65 <br />
----------------------------------------<br />
<br />
&nbsp;<br />
C:\WINDOWS\Temp<br />
<br />
&nbsp;28.01.2010 08:26&nbsp; &nbsp;  C:\WINDOWS\Temp\msetupd.log --------- 53435 <br />
&nbsp;28.01.2010 08:23&nbsp; &nbsp;  C:\WINDOWS\Temp\xsw2 --------- 4 <br />
&nbsp;28.01.2010 08:23&nbsp; &nbsp;  C:\WINDOWS\Temp\WGAErrLog.txt --------- 483 <br />
&nbsp;28.01.2010 08:18&nbsp; &nbsp;  C:\WINDOWS\Temp\_avast5_ --------- 0 <br />
&nbsp;27.01.2010 23:32&nbsp; &nbsp;  C:\WINDOWS\Temp\$$$dq3e --------- 193556 <br />
&nbsp;26.01.2010 20:02&nbsp; &nbsp;  C:\WINDOWS\Temp\$67we.$ --------- 14643 <br />
&nbsp;25.01.2010 02:43&nbsp; &nbsp;  C:\WINDOWS\Temp\atchk.log --------- 0 <br />
&nbsp;25.01.2010 01:49&nbsp; &nbsp;  C:\WINDOWS\Temp\atchksrv.log --------- 0 <br />
----------------------------------------<br />
<br />
&nbsp;<br />
C:\DOKUME~1\Andi\LOKALE~1\Temp<br />
<br />
&nbsp;28.01.2010 08:28&nbsp; &nbsp; &nbsp; C:\DOKUME~1\Andi\LOKALE~1\Temp\jusched.log --------- 1953 <br />
&nbsp;28.01.2010 08:23&nbsp; &nbsp; &nbsp; C:\DOKUME~1\Andi\LOKALE~1\Temp\WPDNSE --------- 0 <br />
&nbsp;27.01.2010 23:58&nbsp; &nbsp; &nbsp; C:\DOKUME~1\Andi\LOKALE~1\Temp\F-Secure --------- 0 <br />
&nbsp;27.01.2010 23:56&nbsp; &nbsp; &nbsp; C:\DOKUME~1\Andi\LOKALE~1\Temp\_avast5_ --------- 0 <br />
&nbsp;26.01.2010 07:13&nbsp; &nbsp; &nbsp; C:\DOKUME~1\Andi\LOKALE~1\Temp\VBE --------- 0 <br />
&nbsp;26.01.2010 06:59&nbsp; &nbsp; &nbsp; C:\DOKUME~1\Andi\LOKALE~1\Temp\Petite Argentinian Teen Painful Anal and Unwanted Facial.torrent --------- 15917 <br />
&nbsp;26.01.2010 06:55&nbsp; &nbsp; &nbsp; C:\DOKUME~1\Andi\LOKALE~1\Temp\Devils Film Anal Teen Tryouts - Masha SiLvErDuSt.avi.torrent --------- 21374 <br />
----------------------------------------<br />
<br />
&nbsp;<br />
C:\Programme<br />
<br />
&nbsp;28.01.2010 08:16&nbsp; &nbsp;  C:\Programme\Mozilla Firefox --------- 0 <br />
&nbsp;27.01.2010 23:58&nbsp; &nbsp;  C:\Programme\F-Secure Blacklight --------- 0 <br />
&nbsp;27.01.2010 22:42&nbsp; &nbsp;  C:\Programme\Alwil Software --------- 0 <br />
&nbsp;27.01.2010 02:48&nbsp; &nbsp;  C:\Programme\Opera --------- 0 <br />
&nbsp;27.01.2010 01:23&nbsp; &nbsp;  C:\Programme\Messenger --------- 0 <br />
&nbsp;27.01.2010 01:02&nbsp; &nbsp;  C:\Programme\Internet Explorer --------- 0 <br />
&nbsp;27.01.2010 00:59&nbsp; &nbsp;  C:\Programme\Outlook Express --------- 0 <br />
&nbsp;27.01.2010 00:13&nbsp; &nbsp;  C:\Programme\Hewlett-Packard --------- 0 <br />
&nbsp;26.01.2010 21:37&nbsp; &nbsp;  C:\Programme\MapCenter --------- 0 <br />
&nbsp;26.01.2010 20:38&nbsp; &nbsp;  C:\Programme\SUPERAntiSpyware --------- 0 <br />
&nbsp;26.01.2010 05:27&nbsp; &nbsp;  C:\Programme\WhoCrashed --------- 0 <br />
&nbsp;25.01.2010 02:05&nbsp; &nbsp;  C:\Programme\Gemeinsame Dateien --------- 0 <br />
&nbsp;24.01.2010 17:24&nbsp; &nbsp;  C:\Programme\Ashampoo --------- 0 <br />
&nbsp;22.01.2010 08:38&nbsp; &nbsp;  C:\Programme\Enigma Software Group --------- 0 <br />
&nbsp;22.01.2010 08:11&nbsp; &nbsp;  C:\Programme\IMG2MS --------- 0 <br />
&nbsp;21.01.2010 19:35&nbsp; &nbsp;  C:\Programme\Spybot - Search &amp; Destroy --------- 0 <br />
&nbsp;21.01.2010 07:33&nbsp; &nbsp;  C:\Programme\Trend Micro --------- 0 <br />
&nbsp;20.01.2010 17:08&nbsp; &nbsp;  C:\Programme\Windows Media Player --------- 0 <br />
&nbsp;20.01.2010 04:43&nbsp; &nbsp;  C:\Programme\Applied_Insights --------- 0 <br />
&nbsp;20.01.2010 00:04&nbsp; &nbsp;  C:\Programme\Windows Desktop Search --------- 0 <br />
&nbsp;19.01.2010 21:46&nbsp; &nbsp;  C:\Programme\Malwarebytes' Anti-Malware --------- 0 <br />
&nbsp;02.01.2010 19:30&nbsp; &nbsp;  C:\Programme\Google --------- 0 <br />
&nbsp;19.12.2009 20:24&nbsp; &nbsp;  C:\Programme\uTorrent --------- 0 <br />
&nbsp;03.12.2009 05:30&nbsp; &nbsp;  C:\Programme\cGPSmapper --------- 0 <br />
&nbsp;30.07.2009 00:01&nbsp; &nbsp;  C:\Programme\Adobe --------- 0 <br />
&nbsp;29.07.2009 21:25&nbsp; &nbsp;  C:\Programme\InstallShield Installation Information --------- 0 <br />
&nbsp;16.07.2009 20:07&nbsp; &nbsp;  C:\Programme\WinRAR --------- 0 <br />
&nbsp;14.07.2009 14:05&nbsp; &nbsp;  C:\Programme\ArcSoft --------- 0 <br />
&nbsp;07.05.2009 14:07&nbsp; &nbsp;  C:\Programme\Microsoft Works --------- 0 <br />
&nbsp;25.03.2009 02:20&nbsp; &nbsp;  C:\Programme\GPS.com.ar --------- 0 <br />
&nbsp;09.01.2009 23:15&nbsp; &nbsp;  C:\Programme\Microsoft Research --------- 0 <br />
&nbsp;29.12.2008 13:47&nbsp; &nbsp;  C:\Programme\CCleaner --------- 0 <br />
&nbsp;17.12.2008 08:38&nbsp; &nbsp;  C:\Programme\VideoLAN --------- 0 <br />
&nbsp;05.12.2008 13:49&nbsp; &nbsp;  C:\Programme\Hp --------- 0 <br />
&nbsp;30.10.2008 21:32&nbsp; &nbsp;  C:\Programme\Corel --------- 0 <br />
&nbsp;29.10.2008 15:32&nbsp; &nbsp;  C:\Programme\MSXML 4.0 --------- 0 <br />
&nbsp;29.10.2008 14:19&nbsp; &nbsp;  C:\Programme\Movie Maker --------- 0 <br />
&nbsp;29.10.2008 14:17&nbsp; &nbsp;  C:\Programme\NetMeeting --------- 0 <br />
&nbsp;29.10.2008 14:17&nbsp; &nbsp;  C:\Programme\Windows NT --------- 0 <br />
&nbsp;25.09.2008 08:13&nbsp; &nbsp;  C:\Programme\FreePDF_XP --------- 0 <br />
&nbsp;25.09.2008 08:13&nbsp; &nbsp;  C:\Programme\gs --------- 0 <br />
&nbsp;25.08.2008 12:42&nbsp; &nbsp;  C:\Programme\MSECache --------- 0 <br />
&nbsp;15.08.2008 15:28&nbsp; &nbsp;  C:\Programme\WinZip --------- 0 <br />
&nbsp;05.08.2008 17:28&nbsp; &nbsp;  C:\Programme\Nero --------- 0 <br />
&nbsp;01.08.2008 20:59&nbsp; &nbsp;  C:\Programme\GPS Freeware.de --------- 0 <br />
&nbsp;01.08.2008 19:43&nbsp; &nbsp;  C:\Programme\TrackMaker --------- 0 <br />
&nbsp;01.08.2008 19:38&nbsp; &nbsp;  C:\Programme\TechSmith --------- 0 <br />
&nbsp;01.08.2008 19:34&nbsp; &nbsp;  C:\Programme\Moffsoft FreeCalc --------- 0 <br />
&nbsp;01.08.2008 09:24&nbsp; &nbsp;  C:\Programme\Microsoft CAPICOM 2.1.0.2 --------- 0 <br />
&nbsp;31.07.2008 21:05&nbsp; &nbsp;  C:\Programme\AquaSoft --------- 0 <br />
&nbsp;31.07.2008 20:58&nbsp; &nbsp;  C:\Programme\ACD Systems --------- 0 <br />
&nbsp;31.07.2008 19:46&nbsp; &nbsp;  C:\Programme\Analog Devices --------- 0 <br />
&nbsp;31.07.2008 15:09&nbsp; &nbsp;  C:\Programme\Microsoft Office --------- 0 <br />
&nbsp;31.07.2008 15:09&nbsp; &nbsp;  C:\Programme\Microsoft Visual Studio --------- 0 <br />
&nbsp;31.07.2008 15:09&nbsp; &nbsp;  C:\Programme\Microsoft.NET --------- 0 <br />
&nbsp;31.07.2008 14:55&nbsp; &nbsp;  C:\Programme\MSBuild --------- 0 <br />
&nbsp;31.07.2008 14:55&nbsp; &nbsp;  C:\Programme\Reference Assemblies --------- 0 <br />
&nbsp;31.07.2008 14:52&nbsp; &nbsp;  C:\Programme\MSXML 6.0 --------- 0 <br />
&nbsp;31.07.2008 14:35&nbsp; &nbsp;  C:\Programme\Intel --------- 0 <br />
&nbsp;31.07.2008 14:34&nbsp; &nbsp;  C:\Programme\InterVideo --------- 0 <br />
&nbsp;31.07.2008 14:32&nbsp; &nbsp;  C:\Programme\Windows Media Connect 2 --------- 0 <br />
&nbsp;31.07.2008 14:30&nbsp; &nbsp;  C:\Programme\Java --------- 0 <br />
&nbsp;31.07.2008 14:30&nbsp; &nbsp;  C:\Programme\HPQ --------- 0 <br />
&nbsp;31.07.2008 14:18&nbsp; &nbsp;  C:\Programme\Synaptics --------- 0 <br />
&nbsp;31.07.2008 14:16&nbsp; &nbsp;  C:\Programme\HP PCMCIA Smart Card Reader --------- 0 <br />
&nbsp;31.07.2008 14:14&nbsp; &nbsp;  C:\Programme\Fingerprint Sensor --------- 0 <br />
&nbsp;31.07.2008 14:07&nbsp; &nbsp;  C:\Programme\Common Files --------- 0 <br />
&nbsp;31.07.2008 14:06&nbsp; &nbsp;  C:\Programme\CONEXANT --------- 0 <br />
&nbsp;31.07.2008 13:59&nbsp; &nbsp;  C:\Programme\Uninstall Information --------- 0 <br />
&nbsp;31.07.2008 13:54&nbsp; &nbsp;  C:\Programme\xerox --------- 0 <br />
&nbsp;31.07.2008 13:54&nbsp; &nbsp;  C:\Programme\microsoft frontpage --------- 0 <br />
&nbsp;31.07.2008 13:52&nbsp; &nbsp;  C:\Programme\WindowsUpdate --------- 0 <br />
&nbsp;31.07.2008 13:51&nbsp; &nbsp;  C:\Programme\Online-Dienste --------- 0 <br />
&nbsp;31.07.2008 13:48&nbsp; &nbsp;  C:\Programme\ComPlus Applications --------- 0 <br />
&nbsp;31.07.2008 13:48&nbsp; &nbsp;  C:\Programme\Online Services --------- 0 <br />
&nbsp;31.07.2008 13:48&nbsp; &nbsp;  C:\Programme\MSN Gaming Zone --------- 0 <br />
&nbsp;31.07.2008 13:47&nbsp; &nbsp;  C:\Programme\MSN --------- 0 <br />
----------------------------------------<br />
<br />
&nbsp;<br />
C:\Dokumente und Einstellungen\All Users\.. <br />
<br />
HelpAssistant&nbsp; &nbsp; <br />
Andi&nbsp; &nbsp; <br />
NetworkService&nbsp; &nbsp; <br />
Administrator&nbsp; &nbsp; <br />
LocalService&nbsp; &nbsp; <br />
Default User&nbsp; &nbsp; <br />
All Users&nbsp; &nbsp; <br />
----------------------------------------<br />
<br />
&nbsp;<br />
C:\WINDOWS\system32\drivers\etc\hosts<br />
<br />
127.0.0.1&nbsp; &nbsp; &nbsp;  localhost<br />
<br />
----------------------------------------<br />
<br />
&nbsp;<br />
<br />
Abbildname&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; PID Sitzungsname&nbsp; &nbsp; &nbsp; Sitz.-Nr. Speichernutzung<br />
========================= ===== ================ ========== ===============<br />
System Idle Process&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 28 K<br />
System&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 4 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  240 K<br />
smss.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 848 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  416 K<br />
csrss.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  904 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  4'248 K<br />
winlogon.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 928 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  5'652 K<br />
services.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 972 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp; 15'580 K<br />
lsass.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  984 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  6'556 K<br />
svchost.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 1164 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  8'604 K<br />
svchost.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 1192 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  6'096 K<br />
HpFkCrypt.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 1260 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  1'616 K<br />
svchost.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 1296 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  5'188 K<br />
svchost.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 1340 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp; 26'408 K<br />
svchost.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 1464 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  3'204 K<br />
svchost.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 1496 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  4'672 K<br />
AvastSvc.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  1768 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp; 25'840 K<br />
explorer.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 244 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp; 30'136 K<br />
hkcmd.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  636 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  4'064 K<br />
HPWAMain.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 664 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  4'488 K<br />
igfxsrvc.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 672 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  4'392 K<br />
jusched.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  692 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  2'508 K<br />
ATCHK.EXE&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  744 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  3'352 K<br />
SynTPEnh.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 760 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  5'680 K<br />
smax4pnp.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 812 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  4'424 K<br />
igfxpers.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 888 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  3'800 K<br />
asghost.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  908 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp; 12'712 K<br />
hpwuSchd2.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 1224 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  2'320 K<br />
igfxtray.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  1524 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  4'096 K<br />
pthosttr.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  1564 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp; 20'496 K<br />
AvastUI.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 1572 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  4'268 K<br />
ctfmon.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  1588 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  3'628 K<br />
NMIndexStoreSvr.exe&nbsp; &nbsp; &nbsp; &nbsp; 1640 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp; 19'364 K<br />
spoolsv.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 2236 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  5'188 K<br />
scardsvr.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  2276 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  2'812 K<br />
svchost.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 2328 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  3'908 K<br />
apache.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  2436 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp; 22'112 K<br />
ATCHKSRV.EXE&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  2628 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  2'032 K<br />
IFXSPMGT.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  2740 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  9'624 K<br />
IFXTCS.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  2840 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  7'220 K<br />
iviRegMgr.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 2876 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  2'316 K<br />
LMS.EXE&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 2924 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  5'048 K<br />
mysqld-nt.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 2984 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  6'828 K<br />
NBService.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 3004 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  6'644 K<br />
IfxPsdSv.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  3056 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  2'800 K<br />
IoctlSvc.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  3076 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  1'884 K<br />
PsiService_2.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  3100 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  2'116 K<br />
svchost.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 3132 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  4'928 K<br />
UNS.EXE&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 3312 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  6'528 K<br />
searchindexer.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 3352 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp; 34'432 K<br />
apache.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  3420 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp; 23'612 K<br />
hpqwmiex.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  2360 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  4'112 K<br />
SWIHPWMI.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 748 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  4'292 K<br />
wuauclt.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 1596 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  9'048 K<br />
wmiprvse.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  4120 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  6'136 K<br />
NMIndexingService.exe&nbsp; &nbsp; &nbsp; 4436 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp; 11'244 K<br />
HpqToaster.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  5144 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  4'532 K<br />
alg.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 5228 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  4'256 K<br />
wuauclt.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 5668 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  4'196 K<br />
wscntfy.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 2564 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  2'308 K<br />
searchprotocolhost.exe&nbsp; &nbsp; &nbsp; 824 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  8'700 K<br />
searchfilterhost.exe&nbsp; &nbsp; &nbsp;  1852 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  4'832 K<br />
wmiprvse.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  2148 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  6'624 K<br />
cmd.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  416 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  2'412 K<br />
searchprotocolhost.exe&nbsp; &nbsp;  6120 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  5'768 K<br />
tasklist.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  5484 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  4'556 K<br />
<br />
&nbsp;<br />
***** Ende des Scans 28.01.2010 um&nbsp; 8:29:55.37 ***</code><hr />
</div> <br />
<b>7.	Uninstall Liste (Mit HijackThis)</b><br />
<div class="bbcode_container">
	<div class="bbcode_description">Code:</div>
	<hr /><code class="bbcode_code">µTorrent<br />
ACDSee 10 Photo Manager<br />
Adobe Acrobat 5.0<br />
Adobe Digital Editions<br />
Adobe Flash Player 10 ActiveX<br />
Adobe Flash Player 10 Plugin<br />
AquaSoft DiaShow XP five<br />
AquaSoft DiaShow XP five<br />
ArcSoft Panorama Maker 4 Pro<br />
Ashampoo WinOptimizer 6.50<br />
avast! Free Antivirus<br />
BIOS Configuration for HP ProtectTools<br />
Cartografía ConoSur GeoRed v9.03<br />
CCleaner (remove only)<br />
cGPSmapper Free 0096<br />
Corel Applications<br />
Corel Paint Shop Pro Photo X2<br />
Credential Manager for HP ProtectTools<br />
Device Access Manager for HP ProtectTools<br />
Drive Encryption for HP ProtectTools<br />
Embedded Security for HP ProtectTools<br />
FreePDF XP (Remove only)<br />
Garmin City Navigator Europe v8<br />
Garmin City Navigator North America NT 2008<br />
Garmin MapSource<br />
Garmin POI Loader<br />
Garmin WorldMap v4<br />
Google Earth<br />
Google Update Helper<br />
Google Updater<br />
GPS TrackMaker<br />
GPS-Track-Analyse.NET 4.4.1.7<br />
HijackThis 2.0.2<br />
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)<br />
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)<br />
Hotfix for Windows Media Format 11 SDK (KB929399)<br />
Hotfix for Windows XP (KB915800-v4)<br />
Hotfix für Windows Media Player 11 (KB939683)<br />
Hotfix für Windows XP (KB952287)<br />
Hotfix für Windows XP (KB961118)<br />
HP 3D DriveGuard<br />
HP Broadband Wireless Modules<br />
HP PCMCIA Smart Card Reader<br />
HP ProtectTools Security Manager<br />
HP Quick Launch Buttons 6.40 B2<br />
HP Update<br />
HP Wireless Assistant<br />
IMG2MS<br />
IMG2MS<br />
Intel(R) Active Management Technology Device Software<br />
Intel(R) Graphics Media Accelerator Driver<br />
Intel(R) Management Engine Interface<br />
Intel(R) PRO Network Connections Drivers<br />
InterVideo DVD Check<br />
InterVideo WinDVD<br />
Java(TM) SE Runtime Environment 6<br />
Malwarebytes' Anti-Malware<br />
MapCenter - North America<br />
Microsoft .NET Framework 1.1<br />
Microsoft .NET Framework 1.1<br />
Microsoft .NET Framework 1.1 German Language Pack<br />
Microsoft .NET Framework 1.1 Security Update (KB953297)<br />
Microsoft .NET Framework 2.0 Service Pack 2<br />
Microsoft .NET Framework 2.0 Service Pack 2 Language Pack - DEU<br />
Microsoft .NET Framework 3.0 Service Pack 2<br />
Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - DEU<br />
Microsoft .NET Framework 3.5 Language Pack SP1 - deu<br />
Microsoft .NET Framework 3.5 Language Pack SP1 - DEU<br />
Microsoft .NET Framework 3.5 SP1<br />
Microsoft .NET Framework 3.5 SP1<br />
Microsoft Compression Client Pack 1.0 for Windows XP<br />
Microsoft Image Composite Editor<br />
Microsoft Internationalized Domain Names Mitigation APIs<br />
Microsoft Kernel-Mode Driver Framework Feature Pack 1.5<br />
Microsoft National Language Support Downlevel APIs<br />
Microsoft Office 2007 Service Pack 2 (SP2)<br />
Microsoft Office 2007 Service Pack 2 (SP2)<br />
Microsoft Office 2007 Service Pack 2 (SP2)<br />
Microsoft Office 2007 Service Pack 2 (SP2)<br />
Microsoft Office 2007 Service Pack 2 (SP2)<br />
Microsoft Office 2007 Service Pack 2 (SP2)<br />
Microsoft Office 2007 Service Pack 2 (SP2)<br />
Microsoft Office 2007 Service Pack 2 (SP2)<br />
Microsoft Office 2007 Service Pack 2 (SP2)<br />
Microsoft Office 2007 Service Pack 2 (SP2)<br />
Microsoft Office 2007 Service Pack 2 (SP2)<br />
Microsoft Office Access MUI (German) 2007<br />
Microsoft Office Enterprise 2007<br />
Microsoft Office Enterprise 2007<br />
Microsoft Office Excel MUI (German) 2007<br />
Microsoft Office Groove MUI (German) 2007<br />
Microsoft Office InfoPath MUI (German) 2007<br />
Microsoft Office OneNote MUI (German) 2007<br />
Microsoft Office Outlook MUI (German) 2007<br />
Microsoft Office PowerPoint MUI (German) 2007<br />
Microsoft Office Proof (English) 2007<br />
Microsoft Office Proof (French) 2007<br />
Microsoft Office Proof (German) 2007<br />
Microsoft Office Proof (Italian) 2007<br />
Microsoft Office Proofing (German) 2007<br />
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)<br />
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)<br />
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)<br />
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)<br />
Microsoft Office Publisher MUI (German) 2007<br />
Microsoft Office Shared MUI (German) 2007<br />
Microsoft Office Word MUI (German) 2007<br />
Microsoft Save as PDF Add-in for 2007 Microsoft Office programs<br />
Microsoft User-Mode Driver Framework Feature Pack 1.0<br />
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17<br />
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148<br />
Moffsoft FreeCalc<br />
Mozilla Firefox (3.0.1)<br />
MSXML 4.0 SP2 (KB936181)<br />
MSXML 4.0 SP2 (KB954430)<br />
MSXML 4.0 SP2 (KB973688)<br />
MSXML 6.0 Parser (KB933579)<br />
Nero 8 Ultra Edition HD<br />
neroxml<br />
OGA Notifier 2.0.0048.0<br />
Opera 10.10<br />
RedMon - Redirection Port Monitor<br />
RICOH R5C853 Driver Ver.1.00.02<br />
Security Update for 2007 Microsoft Office System (KB969559)<br />
Security Update for 2007 Microsoft Office System (KB973704)<br />
Security Update for CAPICOM (KB931906)<br />
Security Update for CAPICOM (KB931906)<br />
Security Update for Microsoft Office Excel 2007 (KB973593)<br />
Security Update for Microsoft Office Outlook 2007 (KB972363)<br />
Security Update for Microsoft Office PowerPoint 2007 (KB957789)<br />
Security Update for Microsoft Office Publisher 2007 (KB969693)<br />
Security Update for Microsoft Office system 2007 (972581)<br />
Security Update for Microsoft Office system 2007 (KB969613)<br />
Security Update for Microsoft Office system 2007 (KB974234)<br />
Security Update for Microsoft Office Visio Viewer 2007 (KB973709)<br />
Security Update for Microsoft Office Word 2007 (KB969604)<br />
Security Update for Windows Search 4 - KB963093<br />
Sicherheitsupdate für Windows Media Player (KB952069)<br />
Sicherheitsupdate für Windows Media Player 11 (KB936782)<br />
Sicherheitsupdate für Windows Media Player 11 (KB954154)<br />
Sicherheitsupdate für Windows XP (KB923561)<br />
Sicherheitsupdate für Windows XP (KB923789)<br />
Sicherheitsupdate für Windows XP (KB938464)<br />
Sicherheitsupdate für Windows XP (KB941569)<br />
Sicherheitsupdate für Windows XP (KB946648)<br />
Sicherheitsupdate für Windows XP (KB950759)<br />
Sicherheitsupdate für Windows XP (KB950760)<br />
Sicherheitsupdate für Windows XP (KB950762)<br />
Sicherheitsupdate für Windows XP (KB950974)<br />
Sicherheitsupdate für Windows XP (KB951066)<br />
Sicherheitsupdate für Windows XP (KB951376-v2)<br />
Sicherheitsupdate für Windows XP (KB951698)<br />
Sicherheitsupdate für Windows XP (KB951748)<br />
Sicherheitsupdate für Windows XP (KB952004)<br />
Sicherheitsupdate für Windows XP (KB952954)<br />
Sicherheitsupdate für Windows XP (KB954211)<br />
Sicherheitsupdate für Windows XP (KB954459)<br />
Sicherheitsupdate für Windows XP (KB954600)<br />
Sicherheitsupdate für Windows XP (KB955069)<br />
Sicherheitsupdate für Windows XP (KB956391)<br />
Sicherheitsupdate für Windows XP (KB956572)<br />
Sicherheitsupdate für Windows XP (KB956802)<br />
Sicherheitsupdate für Windows XP (KB956803)<br />
Sicherheitsupdate für Windows XP (KB956841)<br />
Sicherheitsupdate für Windows XP (KB957095)<br />
Sicherheitsupdate für Windows XP (KB957097)<br />
Sicherheitsupdate für Windows XP (KB958644)<br />
Sicherheitsupdate für Windows XP (KB958687)<br />
Sicherheitsupdate für Windows XP (KB958690)<br />
Sicherheitsupdate für Windows XP (KB959426)<br />
Sicherheitsupdate für Windows XP (KB960225)<br />
Sicherheitsupdate für Windows XP (KB960715)<br />
Sicherheitsupdate für Windows XP (KB960803)<br />
Sicherheitsupdate für Windows XP (KB961373)<br />
SnagIt 7<br />
Soft Data Fax Modem with SmartCP<br />
Spybot - Search &amp; Destroy<br />
SUPERAntiSpyware Free Edition<br />
Synaptics Pointing Device Driver<br />
Topo Schweiz<br />
Update for 2007 Microsoft Office System (KB967642)<br />
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)<br />
Update for Microsoft Office InfoPath 2007 (KB976416)<br />
Update for Outlook 2007 Junk Email Filter (kb977839)<br />
Update für Windows XP (KB942763)<br />
Update für Windows XP (KB951072-v2)<br />
Update für Windows XP (KB951978)<br />
Update für Windows XP (KB955839)<br />
Update für Windows XP (KB967715)<br />
VCRedistSetup<br />
Visual Studio Tools for the Office system 3.0 Runtime<br />
Visual Studio Tools for the Office system 3.0 Runtime<br />
VLC media player 1.0.3<br />
WhoCrashed 2.00<br />
Wichtiges Update für Windows Media Player 11 (KB959772)<br />
Windows Imaging Component<br />
Windows Media Format 11 runtime<br />
Windows Media Format 11 runtime<br />
Windows Media Player 11<br />
Windows Media Player 11<br />
Windows Search 4.0<br />
Windows XP Service Pack 3<br />
WinRAR<br />
WinZip<br />
XAMPP 1.6.6a<br />
XML Paper Specification Shared Components Language Pack 1.0</code><hr />
</div> <br />
<b>8. CCcleaner Installierte Software</b><br />
<div class="bbcode_container">
	<div class="bbcode_description">Code:</div>
	<hr /><code class="bbcode_code">ACDSee 10 Photo Manager<br />
Adobe Acrobat 5.0<br />
Adobe Digital Editions<br />
Adobe Flash Player 10 ActiveX<br />
Adobe Flash Player 10 Plugin<br />
AquaSoft DiaShow XP five<br />
ArcSoft Panorama Maker 4 Pro<br />
Ashampoo WinOptimizer 6.50<br />
avast! Free Antivirus<br />
BIOS Configuration for HP ProtectTools<br />
Cartografía ConoSur GeoRed v9.03<br />
CCleaner (remove only)<br />
cGPSmapper Free 0096<br />
Corel Applications<br />
Corel Paint Shop Pro Photo X2<br />
Credential Manager for HP ProtectTools<br />
Device Access Manager for HP ProtectTools<br />
Drive Encryption for HP ProtectTools<br />
Embedded Security for HP ProtectTools<br />
FreePDF XP (Remove only)<br />
Garmin City Navigator Europe v8<br />
Garmin City Navigator North America NT 2008<br />
Garmin MapSource<br />
Garmin POI Loader<br />
Garmin WorldMap v4<br />
Google Earth<br />
Google Updater<br />
GPS TrackMaker<br />
GPS-Track-Analyse.NET 4.4.1.7<br />
HijackThis 2.0.2<br />
HP 3D DriveGuard<br />
HP Broadband Wireless Modules<br />
HP ProtectTools Security Manager<br />
HP Quick Launch Buttons 6.40 B2<br />
HP Update<br />
HP Wireless Assistant<br />
IMG2MS<br />
Intel(R) Active Management Technology Device Software<br />
Intel(R) Graphics Media Accelerator Driver<br />
Intel(R) Management Engine Interface<br />
Intel(R) PRO Network Connections Drivers<br />
InterVideo DVD Check<br />
InterVideo WinDVD<br />
Java(TM) SE Runtime Environment 6<br />
Malwarebytes' Anti-Malware<br />
MapCenter - North America<br />
Microsoft .NET Framework 1.1<br />
Microsoft .NET Framework 1.1 German Language Pack<br />
Microsoft .NET Framework 2.0 Service Pack 2<br />
Microsoft .NET Framework 2.0 Service Pack 2 Language Pack - DEU<br />
Microsoft .NET Framework 3.0 Service Pack 2<br />
Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - DEU<br />
Microsoft .NET Framework 3.5 Language Pack SP1 - DEU<br />
Microsoft .NET Framework 3.5 SP1<br />
Microsoft Compression Client Pack 1.0 for Windows XP<br />
Microsoft Image Composite Editor<br />
Microsoft Internationalized Domain Names Mitigation APIs<br />
Microsoft National Language Support Downlevel APIs<br />
Microsoft Office Enterprise 2007<br />
Microsoft Save as PDF Add-in for 2007 Microsoft Office programs<br />
Microsoft User-Mode Driver Framework Feature Pack 1.0<br />
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17<br />
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148<br />
Moffsoft FreeCalc<br />
Mozilla Firefox (3.0.1)<br />
MSXML 4.0 SP2 (KB936181)<br />
MSXML 4.0 SP2 (KB954430)<br />
MSXML 4.0 SP2 (KB973688)<br />
MSXML 6.0 Parser (KB933579)<br />
Nero 8 Ultra Edition HD<br />
Opera 10.10<br />
RedMon - Redirection Port Monitor<br />
RICOH R5C853 Driver Ver.1.00.02<br />
Security Update for Windows Search 4 - KB963093<br />
SnagIt 7<br />
Soft Data Fax Modem with SmartCP<br />
Spybot - Search &amp; Destroy<br />
SUPERAntiSpyware Free Edition<br />
Synaptics Pointing Device Driver<br />
Topo Schweiz<br />
Visual Studio Tools for the Office system 3.0 Runtime<br />
VLC media player 1.0.3<br />
WhoCrashed 2.00<br />
Windows Genuine Advantage Validation Tool (KB892130)<br />
Windows Media Format 11 runtime<br />
Windows Media Player 11<br />
Windows Search 4.0<br />
Windows XP Service Pack 3<br />
WinRAR<br />
WinZip<br />
XAMPP 1.6.6a<br />
µTorrent</code><hr />
</div> <br />
Ich hoffe, ich konnte fürs erste alle Infos geben. Herzlichen Dank schon jetzt im Voraus.<br />
<br />
Grüsse aus Kalifornien<br />
Andi</div>

 ]]></content:encoded>
			<category domain="http://www.hijackthis-forum.de/archiv/">Archiv</category>
			<dc:creator>AlaskaBear</dc:creator>
			<guid isPermaLink="true">http://www.hijackthis-forum.de/archiv/42135-notebook-haengt-sich-nach-virusattacke-auf-immer-wieder-auf.html</guid>
		</item>
		<item>
			<title><![CDATA[Download des Objekts "demod.exe" | enthält schädlichen Link]]></title>
			<link>http://www.hijackthis-forum.de/archiv/42121-download-des-objekts-demod-exe-enthaelt-schaedlichen-link.html</link>
			<pubDate>Wed, 27 Jan 2010 18:22:34 GMT</pubDate>
			<description><![CDATA[Hallo, 
 
seit gestern habe ich ein Malware-Problem und würde mich über euren Support sehr freuen. 
 
Kaspersky Internet Security 2010 zeigt mir, wenn ich mit dem IE oder Firefox surfe, im 5-Minuten-Takt folgende Meldung an: 
 
 
Code: 
--------- 
"C:\WINDOWS\system32\SVCHOST.EXE (PID: 768):]]></description>
			<content:encoded><![CDATA[<div>Hallo,<br />
<br />
seit gestern habe ich ein Malware-Problem und würde mich über euren Support sehr freuen.<br />
<br />
Kaspersky Internet Security 2010 zeigt mir, wenn ich mit dem IE oder Firefox surfe, im 5-Minuten-Takt folgende Meldung an:<br />
<br />
<div class="bbcode_container">
	<div class="bbcode_description">Code:</div>
	<hr /><code class="bbcode_code">&quot;C:\WINDOWS\system32\SVCHOST.EXE (PID: 768):<br />
Download des Objekts<br />
http://91.213.121.11/download/demod.exe Es enthält schädlichen Link. Verboten.&quot;<br />
<br />
Status:verdächtig<br />
manchmal steht &quot;nocl.exe&quot; anstatt &quot;demod.exe&quot;</code><hr />
</div> Kaspersky Log File<br />
<div class="bbcode_container">
	<div class="bbcode_description">Code:</div>
	<hr /><code class="bbcode_code">27.01.2010 17:47:35&nbsp; &nbsp; &nbsp; &nbsp; Verboten: http://91.213.121.11/download/demod.exe (mit der Datenbank für verdächtige Webadressen untersuchen)&nbsp; &nbsp; &nbsp; &nbsp; http://91.213.121.11/download/demod.exe&nbsp; &nbsp; &nbsp; &nbsp; Der Link wurde in einer Datenbank gefunden&nbsp; &nbsp; &nbsp; &nbsp; Host Process for Windows Services&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; <br />
27.01.2010 17:47:35&nbsp; &nbsp; &nbsp; &nbsp; Verboten: http://91.213.121.11/download/nocl.exe (mit der Datenbank für verdächtige Webadressen untersuchen)&nbsp; &nbsp; &nbsp; &nbsp; http://91.213.121.11/download/nocl.exe&nbsp; &nbsp; &nbsp; &nbsp; Der Link wurde in einer Datenbank gefunden&nbsp; &nbsp; &nbsp; &nbsp; Host Process for Windows Services&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; <br />
27.01.2010 17:52:36&nbsp; &nbsp; &nbsp; &nbsp; Verboten: http://91.213.121.11/download/demod.exe (mit der Datenbank für verdächtige Webadressen untersuchen)&nbsp; &nbsp; &nbsp; &nbsp; http://91.213.121.11/download/demod.exe&nbsp; &nbsp; &nbsp; &nbsp; Der Link wurde in einer Datenbank gefunden&nbsp; &nbsp; &nbsp; &nbsp; Host Process for Windows Services&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; <br />
27.01.2010 17:52:36&nbsp; &nbsp; &nbsp; &nbsp; Verboten: http://91.213.121.11/download/nocl.exe (mit der Datenbank für verdächtige Webadressen untersuchen)&nbsp; &nbsp; &nbsp; &nbsp; http://91.213.121.11/download/nocl.exe&nbsp; &nbsp; &nbsp; &nbsp; Der Link wurde in einer Datenbank gefunden</code><hr />
</div> Ich habe nach dem Problem auch schon gegoogelt, aber leider nichts passendes gefunden. Im Prinzip sollte es ja nicht so schlimm sein, da Kaspersky den Aufruf immer verbietet. Dass diese Meldung ständig kommt, beunruhigt mich aber schon. <br />
<br />
Ach ja, es ist auch schon oft vorgekommen, dass ich bei Google-Ergebnissen auf eine falsche Homepage weitergeleitet wurde. :confused: <br />
<br />
Hier ist meine HijackThis-LogFile<br />
<div class="bbcode_container">
	<div class="bbcode_description">Code:</div>
	<hr /><code class="bbcode_code">Logfile of Trend Micro HijackThis v2.0.3 (BETA)<br />
Scan saved at 19:19:04, on 27.01.2010<br />
Platform: Unknown Windows (WinNT 6.01.3504)<br />
MSIE: Internet Explorer v8.00 (8.00.7600.16385)<br />
Boot mode: Normal<br />
<br />
Running processes:<br />
C:\Windows\system32\taskhost.exe<br />
C:\Windows\system32\Dwm.exe<br />
C:\Windows\Explorer.EXE<br />
C:\Windows\V0330Mon.exe<br />
C:\Program Files\Adobe\Acrobat 8.0\Acrobat\acrotray.exe<br />
C:\Program Files\Java\jre6\bin\jusched.exe<br />
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe<br />
C:\Program Files\Mozilla Firefox\firefox.exe<br />
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\klwtblfs.exe<br />
C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE<br />
C:\Program Files\Security Task Manager\taskman.exe<br />
C:\PROGRA~1\MICROS~1\Office12\OIS.EXE<br />
C:\Program Files\HiJack\TrendMicro\HiJackThis\HiJackThis.exe<br />
<br />
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896<br />
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157<br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157<br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896<br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896<br />
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157<br />
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = <br />
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = <br />
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local<br />
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = <br />
O2 - BHO: Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll<br />
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll<br />
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\ievkbd.dll<br />
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll<br />
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll<br />
O2 - BHO: link filter bho - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\klwtbbho.dll<br />
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll<br />
O4 - HKLM\..\Run: [V0330Mon.exe] C:\Windows\V0330Mon.exe<br />
O4 - HKLM\..\Run: [Acrobat Assistant 8.0] &quot;C:\Program Files\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe&quot;<br />
O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon<br />
O4 - HKLM\..\Run: [QuickTime Task] &quot;C:\Program Files\QuickTime\QTTask.exe&quot; -atboottime<br />
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] &quot;C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe&quot;<br />
O4 - HKLM\..\Run: [Adobe ARM] &quot;C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe&quot;<br />
O4 - HKLM\..\Run: [SunJavaUpdateSched] &quot;C:\Program Files\Java\jre6\bin\jusched.exe&quot;<br />
O4 - HKLM\..\Run: [AVP] &quot;C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe&quot;<br />
O4 - HKCU\..\Run: [AlcoholAutomount] &quot;C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe&quot; /automount<br />
O4 - HKCU\..\Run: [AlSrvN] C:\Users\Felix\Downloads\Alcohol 120% 1.9.8.7612 Retail\PatCh 5.0.0 ML by ChVL\Plugins\Helper\AlSrvN.exe<br />
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOKALER DIENST')<br />
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOKALER DIENST')<br />
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETZWERKDIENST')<br />
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETZWERKDIENST')<br />
O8 - Extra context menu item: An vorhandenes PDF anfügen - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html<br />
O8 - Extra context menu item: Ausgewählte Verknüpfungen in Adobe PDF konvertieren - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html<br />
O8 - Extra context menu item: Ausgewählte Verknüpfungen in vorhandene PDF-Datei konvertieren - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html<br />
O8 - Extra context menu item: Auswahl in Adobe PDF konvertieren - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html<br />
O8 - Extra context menu item: Auswahl in vorhandene PDF-Datei konvertieren - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html<br />
O8 - Extra context menu item: Hinzufügen zu Anti-Banner - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\ie_banner_deny.htm<br />
O8 - Extra context menu item: In Adobe PDF konvertieren - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html<br />
O8 - Extra context menu item: Nach Microsoft E&amp;xel exportieren - res://C:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000<br />
O8 - Extra context menu item: Verknüpfungsziel in Adobe PDF konvertieren - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html<br />
O8 - Extra context menu item: Verknüpfungsziel in vorhandene PDF-Datei konvertieren - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html<br />
O9 - Extra button: An OneNote senden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~1\Office12\ONBttnIE.dll<br />
O9 - Extra 'Tools' menuitem: An OneNote s&amp;enden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~1\Office12\ONBttnIE.dll<br />
O9 - Extra button: &amp;Virtuelle Tastatur - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\klwtbbho.dll<br />
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL<br />
O9 - Extra button: Li&amp;nks untersuchen - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\klwtbbho.dll<br />
O13 - Gopher Prefix: <br />
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab<br />
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll<br />
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL<br />
O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~2\mzvkbd3.dll,C:\PROGRA~1\KASPER~1\KASPER~2\kloehk.dll<br />
O23 - Service: Apple Time Service (AppleTime) - Apple Inc. - c:\Windows\AppleTimeSrv.exe<br />
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe<br />
O23 - Service: Kaspersky Internet Security (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe<br />
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe<br />
O23 - Service: Cisco Systems, Inc. VPN Service (CVPND) - Cisco Systems, Inc. - C:\Program Files\VPN Client\cvpnd.exe<br />
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe<br />
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe<br />
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe<br />
<br />
--<br />
End of file - 8082 bytes</code><hr />
</div> Freue mich über Euren Support.</div>

 ]]></content:encoded>
			<category domain="http://www.hijackthis-forum.de/archiv/">Archiv</category>
			<dc:creator>Hust@</dc:creator>
			<guid isPermaLink="true">http://www.hijackthis-forum.de/archiv/42121-download-des-objekts-demod-exe-enthaelt-schaedlichen-link.html</guid>
		</item>
		<item>
			<title>Probleme bei Auswertung, MBAM Installation und IE - Virus?</title>
			<link>http://www.hijackthis-forum.de/archiv/42076-probleme-bei-auswertung-mbam-installation-und-ie-virus.html</link>
			<pubDate>Mon, 25 Jan 2010 22:08:26 GMT</pubDate>
			<description>Hallo zusammen, 
 
bin neu hier und bemühe mich, alles richtig zu machen. Sorry, falls ich einen Fehler mache ist das, weil ich ein absoluter Laie bin. 
 
Ich hoffe sehr, dass ihr mir weiterhelfen könnt, da ich am Rande der Verzweiflung stehe. Stehe kurz vor meinen Klausuren und mein PC dreht durch...</description>
			<content:encoded><![CDATA[<div>Hallo zusammen,<br />
<br />
bin neu hier und bemühe mich, alles richtig zu machen. Sorry, falls ich einen Fehler mache ist das, weil ich ein absoluter Laie bin.<br />
<br />
Ich hoffe sehr, dass ihr mir weiterhelfen könnt, da ich am Rande der Verzweiflung stehe. Stehe kurz vor meinen Klausuren und mein PC dreht durch - und ich ziehe mit:balla:<br />
<br />
Habe schon etwas gegoogelt und einige Programme ausprobiert, ich komme aber einfach nicht mehr weiter...<br />
<br />
Übrigens, ich nutze Windows XP Home mit Service Pack 3. AVG Free ist mein Virus Programm.<br />
<br />
Das Problem zeigte sich wie folgt aus (chronologisch):<br />
<br />
1) beim Posten in einem Fußball Forum bemerkte ich, dass permanent angezeigt wird, ich würde einen falschen Post Modus verwenden. (die Meldung tritt übrigens auch hier auf). Es klappt fast immer nur der zweite Versuch. AVG meldet den Fund von Trojan Horse generic 16.amtr. <br />
2) IE Explorer öffnete sich immer wieder von alleine.<br />
3) beim Klick auf Google Links werde ich auf falsche Seiten weitergeleitet (sporadisch)<br />
4) IE 8 Neuinstallation. Beim Neustart kam die Meldung, dass folgendes aus Sicherheitsgründen blockiert würde: generic host process system32.<br />
Anschließend dann der Windows Problembericht, dass eben dieser Prozess nicht ausgeführt werden kann.<br />
5) IE kann keine Verbindung zum Internet herstellen. Mehrmalige Neuinstallation erfolglos.<br />
6) AVG Free findet drei mal trojan horse.downloader.agent2.RAE und dazu noch einen darauf verweisenden Regestry Key mit HKU vorne (finde ich in der registry selbst aber nicht.)<br />
7) Versuche HiJackThis Log Files selber auszuwerten. (hier der !ALTER! Log:)<br />
<br />
<div class="bbcode_container">
	<div class="bbcode_description">HTML-Code:</div>
	<hr /><code class="bbcode_code">Logfile of Trend Micro HijackThis v2.0.2<br />
Scan saved at 18:46:34, on 24.01.2010<br />
Platform: Windows XP SP3 (WinNT 5.01.2600)<br />
MSIE: Internet Explorer v8.00 (8.00.6001.18702)<br />
Boot mode: Normal<br />
<br />
Running processes:<br />
C:\WINDOWS\System32\smss.exe<br />
C:\WINDOWS\system32\winlogon.exe<br />
C:\WINDOWS\system32\services.exe<br />
C:\WINDOWS\system32\lsass.exe<br />
C:\WINDOWS\system32\Ati2evxx.exe<br />
C:\WINDOWS\system32\svchost.exe<br />
C:\WINDOWS\system32\spoolsv.exe<br />
C:\WINDOWS\system32\Ati2evxx.exe<br />
C:\Programme\Gemeinsame Dateien\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe<br />
C:\WINDOWS\Explorer.EXE<br />
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe<br />
C:\Programme\Bonjour\mDNSResponder.exe<br />
C:\Programme\Cisco Systems\VPN Client\cvpnd.exe<br />
C:\Programme\Java\jre6\bin\jqs.exe<br />
C:\Programme\Gemeinsame Dateien\LightScribe\LSSrvc.exe<br />
C:\Programme\Gemeinsame Dateien\Marmiko Shared\MZCCntrl.exe<br />
C:\WINDOWS\system32\svchost.exe<br />
C:\Programme\ATI Technologies\ATI Control Panel\atiptaxx.exe<br />
C:\Programme\Hp\HP Software Update\HPWuSchd2.exe<br />
C:\Programme\Hewlett-Packard\Shared\hpqwmiex.exe<br />
C:\Programme\Synaptics\SynTP\SynTPEnh.exe<br />
C:\Programme\HP\QuickPlay\QPService.exe<br />
C:\Programme\HPQ\Quick Launch Buttons\EabServr.exe<br />
C:\Programme\hpq\HP Wireless Assistant\HP Wireless Assistant.exe<br />
C:\PROGRA~1\AVG\AVG8\avgtray.exe<br />
C:\Programme\Java\jre6\bin\jusched.exe<br />
C:\Programme\Winamp\winampa.exe<br />
C:\Programme\iTunes\iTunesHelper.exe<br />
C:\WINDOWS\system32\ctfmon.exe<br />
C:\Programme\Veoh Networks\Veoh\VeohClient.exe<br />
C:\Programme\Messenger\msmsgs.exe<br />
C:\PROGRA~1\AVG\AVG8\avgrsx.exe<br />
C:\PROGRA~1\AVG\AVG8\avgnsx.exe<br />
C:\WINDOWS\System32\svchost.exe<br />
C:\Programme\HP\Digital Imaging\bin\hpqimzone.exe<br />
C:\PROGRA~1\hpq\Shared\HPQTOA~1.EXE<br />
C:\WINDOWS\system32\wbem\wmiapsrv.exe<br />
C:\Programme\iPod\bin\iPodService.exe<br />
C:\WINDOWS\System32\svchost.exe<br />
C:\Programme\Mozilla Firefox\firefox.exe<br />
C:\DOKUME~1\Besitzer\LOKALE~1\Temp\Xsl.exe<br />
C:\Programme\HP\Digital Imaging\bin\hpqimzone.exe<br />
C:\Programme\Trend Micro\HijackThis\HijackThis.exe<br />
<br />
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896<br />
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com<br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157<br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896<br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896<br />
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157<br />
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 127.0.0.1:9666<br />
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1<br />
R3 - URLSearchHook: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Programme\AVG\AVG8\Toolbar\IEToolbar.dll<br />
R3 - URLSearchHook: (no name) - *{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)<br />
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Programme\AVG\AVG8\avgssie.dll<br />
O2 - BHO: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Programme\AVG\AVG8\Toolbar\IEToolbar.dll<br />
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programme\Java\jre6\bin\jp2ssv.dll<br />
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Programme\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll<br />
O3 - Toolbar: Veoh Browser Plug-in - {D0943516-5076-4020-A3B5-AEFAF26AB263} - C:\Programme\Veoh Networks\Veoh\Plugins\reg\VeohToolbar.dll<br />
O3 - Toolbar: (no name) - {0FBB9689-D3D7-4f7a-A2E2-585B10099BFC} - (no file)<br />
O3 - Toolbar: AVG Security Toolbar - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Programme\AVG\AVG8\Toolbar\IEToolbar.dll<br />
O4 - HKLM\..\Run: &#91;ATIPTA&#93; &quot;C:\Programme\ATI Technologies\ATI Control Panel\atiptaxx.exe&quot;<br />
O4 - HKLM\..\Run: &#91;HP Software Update&#93; C:\Programme\Hp\HP Software Update\HPWuSchd2.exe<br />
O4 - HKLM\..\Run: &#91;SynTPEnh&#93; C:\Programme\Synaptics\SynTP\SynTPEnh.exe<br />
O4 - HKLM\..\Run: &#91;QPService&#93; &quot;C:\Programme\HP\QuickPlay\QPService.exe&quot;<br />
O4 - HKLM\..\Run: &#91;eabconfg.cpl&#93; C:\Programme\HPQ\Quick Launch Buttons\EabServr.exe /Start<br />
O4 - HKLM\..\Run: &#91;Cpqset&#93; C:\Programme\HPQ\Default Settings\cpqset.exe<br />
O4 - HKLM\..\Run: &#91;RecGuard&#93; C:\Windows\SMINST\RecGuard.exe<br />
O4 - HKLM\..\Run: &#91;hpWirelessAssistant&#93; C:\Programme\hpq\HP Wireless Assistant\HP Wireless Assistant.exe<br />
O4 - HKLM\..\Run: &#91;AVG8_TRAY&#93; C:\PROGRA~1\AVG\AVG8\avgtray.exe<br />
O4 - HKLM\..\Run: &#91;SunJavaUpdateSched&#93; &quot;C:\Programme\Java\jre6\bin\jusched.exe&quot;<br />
O4 - HKLM\..\Run: &#91;WinampAgent&#93; C:\Programme\Winamp\winampa.exe<br />
O4 - HKLM\..\Run: &#91;QuickTime Task&#93; &quot;C:\Programme\QuickTime\QTTask.exe&quot; -atboottime<br />
O4 - HKLM\..\Run: &#91;iTunesHelper&#93; &quot;C:\Programme\iTunes\iTunesHelper.exe&quot;<br />
O4 - HKLM\..\Run: &#91;bugarobad&#93; Rundll32.exe &quot;c:\windows\system32\veyoroda.dll&quot;,a<br />
O4 - HKLM\..\Run: &#91;UserFaultCheck&#93; %systemroot%\system32\dumprep 0 -u<br />
O4 - HKCU\..\Run: &#91;CTFMON.EXE&#93; C:\WINDOWS\system32\ctfmon.exe<br />
O4 - HKCU\..\Run: &#91;Veoh&#93; &quot;C:\Programme\Veoh Networks\Veoh\VeohClient.exe&quot; /VeohHide<br />
O4 - HKCU\..\Run: &#91;MSMSGS&#93; &quot;C:\Programme\Messenger\msmsgs.exe&quot; /background<br />
O4 - HKCU\..\Run: &#91;BMIMZMHMFM&#93; C:\DOKUME~1\Besitzer\LOKALE~1\Temp\Xsl.exe<br />
O4 - HKUS\S-1-5-19\..\Run: &#91;CTFMON.EXE&#93; C:\WINDOWS\system32\CTFMON.EXE (User 'LOKALER DIENST')<br />
O4 - HKUS\S-1-5-20\..\Run: &#91;CTFMON.EXE&#93; C:\WINDOWS\system32\CTFMON.EXE (User 'NETZWERKDIENST')<br />
O4 - HKUS\S-1-5-18\..\Run: &#91;CTFMON.EXE&#93; C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')<br />
O4 - HKUS\.DEFAULT\..\Run: &#91;CTFMON.EXE&#93; C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')<br />
O4 - Global Startup: HP Photosmart Premier – Schnellstart.lnk = C:\Programme\HP\Digital Imaging\bin\hpqthb08.exe<br />
O4 - Global Startup: Microsoft Office.lnk = C:\Programme\Microsoft Office\Office10\OSA.EXE<br />
O4 - Global Startup: VPN Client.lnk = ?<br />
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe<br />
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe<br />
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe<br />
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe<br />
O14 - IERESET.INF: START_PAGE_URL=http://www.hp.com<br />
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Programme\AVG\AVG8\avgpp.dll<br />
O20 - AppInit_DLLs: pajosuri.dll c:\windows\system32\veyoroda.dll<br />
O20 - Winlogon Notify: avgrsstarter - C:\WINDOWS\SYSTEM32\avgrsstx.dll<br />
O21 - SSODL: wayurudut - {edc5e5ff-12e6-429f-bcad-7ee6666f671d} - c:\windows\system32\veyoroda.dll<br />
O22 - SharedTaskScheduler: tokatiluy - {edc5e5ff-12e6-429f-bcad-7ee6666f671d} - c:\windows\system32\veyoroda.dll<br />
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Programme\Gemeinsame Dateien\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe<br />
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe<br />
O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe<br />
O23 - Service: Bonjour-Dienst (Bonjour Service) - Apple Inc. - C:\Programme\Bonjour\mDNSResponder.exe<br />
O23 - Service: Cisco Systems, Inc. VPN Service (CVPND) - Cisco Systems, Inc. - C:\Programme\Cisco Systems\VPN Client\cvpnd.exe<br />
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Programme\Hewlett-Packard\Shared\hpqwmiex.exe<br />
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programme\Gemeinsame Dateien\InstallShield\Driver\1050\Intel 32\IDriverT.exe<br />
O23 - Service: iPod-Dienst (iPod Service) - Apple Inc. - C:\Programme\iPod\bin\iPodService.exe<br />
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Programme\Java\jre6\bin\jqs.exe<br />
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Programme\Gemeinsame Dateien\LightScribe\LSSrvc.exe<br />
O23 - Service: T-Online WLAN Adapter Steuerungsdienst (MZCCntrl) - Deutsche Telekom AG, Marmiko IT-Solutions GmbH - C:\Programme\Gemeinsame Dateien\Marmiko Shared\MZCCntrl.exe<br />
<br />
--<br />
End of file - 8480 bytes</code><hr />
</div> 8) Fixe die verdächtigen und versuche MALWAREBYTES ANTI MALWARE. Funktioniert nicht, muss es neu installieren. <br />
Bei jeder Neuinstallation wird am Ende gesagt, dass das Zugreifen auf die EXE Datei verweigert wird. Ich finde sie auch nicht manuel.<br />
Habe dann ca 20x hintereinander versucht die Installationsdatei normal auszuführen. Zweimal hat sich anschließend, warum auch immer, KURZ das Programm geöffnet und ist dann entweder beim Klicken auf Scan oder schon vorher einfach runtergefahren. Ich verstehe die Welt nicht mehr.<br />
<br />
Habe es auch schon im abgesicherten Modus und mit USB Stick versucht - erfolglos.<br />
Auch das Umbenennen der Download Datei in test.exe brachte nichts. Zwar wird dann im Explorer eine mbamgui.exe angezeigt, doch das anklicken bringt nach wie vor nichts.<br />
<br />
Habe nun noch einmal aktuell HiJackThis benutzt:<br />
<br />
<div class="bbcode_container">
	<div class="bbcode_description">HTML-Code:</div>
	<hr /><code class="bbcode_code">Logfile of Trend Micro HijackThis v2.0.2<br />
Scan saved at 23:03:06, on 25.01.2010<br />
Platform: Windows XP SP3 (WinNT 5.01.2600)<br />
MSIE: Internet Explorer v8.00 (8.00.6001.18702)<br />
Boot mode: Normal<br />
<br />
Running processes:<br />
C:\WINDOWS\System32\smss.exe<br />
C:\WINDOWS\system32\winlogon.exe<br />
C:\WINDOWS\system32\services.exe<br />
C:\WINDOWS\system32\lsass.exe<br />
C:\WINDOWS\system32\Ati2evxx.exe<br />
C:\WINDOWS\system32\svchost.exe<br />
C:\WINDOWS\System32\svchost.exe<br />
C:\WINDOWS\system32\spoolsv.exe<br />
C:\WINDOWS\system32\Ati2evxx.exe<br />
C:\Programme\Gemeinsame Dateien\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe<br />
C:\WINDOWS\Explorer.EXE<br />
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe<br />
C:\Programme\Bonjour\mDNSResponder.exe<br />
C:\Programme\Cisco Systems\VPN Client\cvpnd.exe<br />
C:\Programme\Java\jre6\bin\jqs.exe<br />
C:\Programme\Gemeinsame Dateien\LightScribe\LSSrvc.exe<br />
C:\Programme\Gemeinsame Dateien\Marmiko Shared\MZCCntrl.exe<br />
C:\WINDOWS\system32\svchost.exe<br />
C:\Programme\Hewlett-Packard\Shared\hpqwmiex.exe<br />
C:\PROGRA~1\AVG\AVG8\avgrsx.exe<br />
C:\PROGRA~1\AVG\AVG8\avgnsx.exe<br />
C:\Programme\Winamp\winampa.exe<br />
C:\Programme\Synaptics\SynTP\SynTPEnh.exe<br />
C:\Programme\Java\jre6\bin\jusched.exe<br />
C:\Programme\HP\QuickPlay\QPService.exe<br />
C:\Programme\iTunes\iTunesHelper.exe<br />
C:\Programme\hpq\HP Wireless Assistant\HP Wireless Assistant.exe<br />
C:\Programme\Hp\HP Software Update\HPWuSchd2.exe<br />
C:\Programme\HPQ\Quick Launch Buttons\EabServr.exe<br />
C:\Programme\ATI Technologies\ATI Control Panel\atiptaxx.exe<br />
C:\WINDOWS\system32\ctfmon.exe<br />
C:\WINDOWS\System32\svchost.exe<br />
C:\WINDOWS\system32\wbem\wmiapsrv.exe<br />
C:\Programme\HP\Digital Imaging\bin\hpqimzone.exe<br />
C:\PROGRA~1\hpq\Shared\HPQTOA~1.EXE<br />
C:\Programme\iPod\bin\iPodService.exe<br />
C:\Dokumente und Einstellungen\Besitzer\Eigene Dateien\Downloads\fj8zcy7p.exe<br />
C:\Programme\Microsoft Office\Office10\WINWORD.EXE<br />
C:\Programme\AVG\AVG8\avgcsrvx.exe<br />
C:\WINDOWS\system32\NOTEPAD.EXE<br />
C:\Programme\AVG\AVG8\avgtray.exe<br />
C:\Programme\Mozilla Firefox\firefox.exe<br />
C:\Programme\Trend Micro\HijackThis\HijackThis.exe<br />
<br />
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896<br />
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com<br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157<br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896<br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896<br />
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157<br />
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 127.0.0.1:9666<br />
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1<br />
R3 - URLSearchHook: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Programme\AVG\AVG8\Toolbar\IEToolbar.dll<br />
R3 - URLSearchHook: (no name) - *{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)<br />
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Programme\AVG\AVG8\avgssie.dll<br />
O2 - BHO: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Programme\AVG\AVG8\Toolbar\IEToolbar.dll<br />
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programme\Java\jre6\bin\jp2ssv.dll<br />
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Programme\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll<br />
O3 - Toolbar: Veoh Browser Plug-in - {D0943516-5076-4020-A3B5-AEFAF26AB263} - C:\Programme\Veoh Networks\Veoh\Plugins\reg\VeohToolbar.dll<br />
O3 - Toolbar: AVG Security Toolbar - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Programme\AVG\AVG8\Toolbar\IEToolbar.dll<br />
O4 - HKLM\..\Run: &#91;WinampAgent&#93; C:\Programme\Winamp\winampa.exe<br />
O4 - HKLM\..\Run: &#91;SynTPEnh&#93; C:\Programme\Synaptics\SynTP\SynTPEnh.exe<br />
O4 - HKLM\..\Run: &#91;SunJavaUpdateSched&#93; &quot;C:\Programme\Java\jre6\bin\jusched.exe&quot;<br />
O4 - HKLM\..\Run: &#91;RecGuard&#93; C:\Windows\SMINST\RecGuard.exe<br />
O4 - HKLM\..\Run: &#91;QuickTime Task&#93; &quot;C:\Programme\QuickTime\QTTask.exe&quot; -atboottime<br />
O4 - HKLM\..\Run: &#91;QPService&#93; &quot;C:\Programme\HP\QuickPlay\QPService.exe&quot;<br />
O4 - HKLM\..\Run: &#91;iTunesHelper&#93; &quot;C:\Programme\iTunes\iTunesHelper.exe&quot;<br />
O4 - HKLM\..\Run: &#91;hpWirelessAssistant&#93; C:\Programme\hpq\HP Wireless Assistant\HP Wireless Assistant.exe<br />
O4 - HKLM\..\Run: &#91;HP Software Update&#93; C:\Programme\Hp\HP Software Update\HPWuSchd2.exe<br />
O4 - HKLM\..\Run: &#91;eabconfg.cpl&#93; C:\Programme\HPQ\Quick Launch Buttons\EabServr.exe /Start<br />
O4 - HKLM\..\Run: &#91;Cpqset&#93; C:\Programme\HPQ\Default Settings\cpqset.exe<br />
O4 - HKLM\..\Run: &#91;AVG8_TRAY&#93; C:\PROGRA~1\AVG\AVG8\avgtray.exe<br />
O4 - HKLM\..\Run: &#91;ATIPTA&#93; &quot;C:\Programme\ATI Technologies\ATI Control Panel\atiptaxx.exe&quot;<br />
O4 - HKLM\..\Run: &#91;bugarobad&#93; Rundll32.exe &quot;c:\windows\system32\fizelugo.dll&quot;,a<br />
O4 - HKCU\..\Run: &#91;ctfmon.exe&#93; C:\WINDOWS\system32\ctfmon.exe<br />
O4 - HKUS\S-1-5-19\..\Run: &#91;CTFMON.EXE&#93; C:\WINDOWS\system32\CTFMON.EXE (User 'LOKALER DIENST')<br />
O4 - HKUS\S-1-5-20\..\Run: &#91;CTFMON.EXE&#93; C:\WINDOWS\system32\CTFMON.EXE (User 'NETZWERKDIENST')<br />
O4 - HKUS\S-1-5-18\..\Run: &#91;CTFMON.EXE&#93; C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')<br />
O4 - HKUS\.DEFAULT\..\Run: &#91;CTFMON.EXE&#93; C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')<br />
O4 - Global Startup: HP Photosmart Premier – Schnellstart.lnk = C:\Programme\HP\Digital Imaging\bin\hpqthb08.exe<br />
O4 - Global Startup: Microsoft Office.lnk = C:\Programme\Microsoft Office\Office10\OSA.EXE<br />
O4 - Global Startup: VPN Client.lnk = ?<br />
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe<br />
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe<br />
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe<br />
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe<br />
O14 - IERESET.INF: START_PAGE_URL=http://www.hp.com<br />
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Programme\AVG\AVG8\avgpp.dll<br />
O20 - AppInit_DLLs: pajosuri.dll c:\windows\system32\fizelugo.dll<br />
O20 - Winlogon Notify: avgrsstarter - C:\WINDOWS\SYSTEM32\avgrsstx.dll<br />
O21 - SSODL: nalofazug - {ef956721-b7a3-4a34-8201-15a14598f6b2} - c:\windows\system32\fizelugo.dll<br />
O22 - SharedTaskScheduler: tokatiluy - {ef956721-b7a3-4a34-8201-15a14598f6b2} - c:\windows\system32\fizelugo.dll<br />
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Programme\Gemeinsame Dateien\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe<br />
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe<br />
O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe<br />
O23 - Service: Bonjour-Dienst (Bonjour Service) - Apple Inc. - C:\Programme\Bonjour\mDNSResponder.exe<br />
O23 - Service: Cisco Systems, Inc. VPN Service (CVPND) - Cisco Systems, Inc. - C:\Programme\Cisco Systems\VPN Client\cvpnd.exe<br />
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Programme\Hewlett-Packard\Shared\hpqwmiex.exe<br />
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programme\Gemeinsame Dateien\InstallShield\Driver\1050\Intel 32\IDriverT.exe<br />
O23 - Service: iPod-Dienst (iPod Service) - Apple Inc. - C:\Programme\iPod\bin\iPodService.exe<br />
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Programme\Java\jre6\bin\jqs.exe<br />
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Programme\Gemeinsame Dateien\LightScribe\LSSrvc.exe<br />
O23 - Service: T-Online WLAN Adapter Steuerungsdienst (MZCCntrl) - Deutsche Telekom AG, Marmiko IT-Solutions GmbH - C:\Programme\Gemeinsame Dateien\Marmiko Shared\MZCCntrl.exe<br />
<br />
--<br />
End of file - 8118 bytes</code><hr />
</div> Besonders irritiert bin ich durch die neuen Einträge, in denen gayudida.dll am Ende steht...<br />
<br />
Hier noch die Ergebnisse von RSIT:<br />
<br />
<div class="bbcode_container">
	<div class="bbcode_description">HTML-Code:</div>
	<hr /><code class="bbcode_code">Logfile of random's system information tool 1.06 (written by random/random)<br />
Run by Besitzer at 2010-01-25 19:55:03<br />
Microsoft Windows XP Home Edition Service Pack 3<br />
System drive C: has 48 GB (46%) free of 103 GB<br />
Total RAM: 1022 MB (37% free)<br />
<br />
Logfile of Trend Micro HijackThis v2.0.2<br />
Scan saved at 19:55:05, on 25.01.2010<br />
Platform: Windows XP SP3 (WinNT 5.01.2600)<br />
MSIE: Internet Explorer v8.00 (8.00.6001.18702)<br />
Boot mode: Normal<br />
<br />
Running processes:<br />
C:\WINDOWS\System32\smss.exe<br />
C:\WINDOWS\system32\winlogon.exe<br />
C:\WINDOWS\system32\services.exe<br />
C:\WINDOWS\system32\lsass.exe<br />
C:\WINDOWS\system32\Ati2evxx.exe<br />
C:\WINDOWS\system32\svchost.exe<br />
C:\WINDOWS\System32\svchost.exe<br />
C:\WINDOWS\system32\spoolsv.exe<br />
C:\WINDOWS\system32\Ati2evxx.exe<br />
C:\Programme\Gemeinsame Dateien\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe<br />
C:\WINDOWS\Explorer.EXE<br />
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe<br />
C:\Programme\Bonjour\mDNSResponder.exe<br />
C:\Programme\Cisco Systems\VPN Client\cvpnd.exe<br />
C:\Programme\Java\jre6\bin\jqs.exe<br />
C:\Programme\Gemeinsame Dateien\LightScribe\LSSrvc.exe<br />
C:\Programme\Gemeinsame Dateien\Marmiko Shared\MZCCntrl.exe<br />
C:\WINDOWS\system32\svchost.exe<br />
C:\Programme\Hewlett-Packard\Shared\hpqwmiex.exe<br />
C:\PROGRA~1\AVG\AVG8\avgrsx.exe<br />
C:\Programme\Winamp\winampa.exe<br />
C:\Programme\Synaptics\SynTP\SynTPEnh.exe<br />
C:\PROGRA~1\AVG\AVG8\avgnsx.exe<br />
C:\Programme\Java\jre6\bin\jusched.exe<br />
C:\Programme\HP\QuickPlay\QPService.exe<br />
C:\Programme\iTunes\iTunesHelper.exe<br />
C:\Programme\hpq\HP Wireless Assistant\HP Wireless Assistant.exe<br />
C:\Programme\Hp\HP Software Update\HPWuSchd2.exe<br />
C:\Programme\HPQ\Quick Launch Buttons\EabServr.exe<br />
C:\PROGRA~1\AVG\AVG8\avgtray.exe<br />
C:\Programme\ATI Technologies\ATI Control Panel\atiptaxx.exe<br />
C:\WINDOWS\system32\wbem\wmiapsrv.exe<br />
C:\Programme\HP\Digital Imaging\bin\hpqimzone.exe<br />
C:\Programme\iPod\bin\iPodService.exe<br />
C:\WINDOWS\System32\svchost.exe<br />
C:\PROGRA~1\hpq\Shared\HPQTOA~1.EXE<br />
C:\Programme\Mozilla Firefox\firefox.exe<br />
C:\Programme\AVG\AVG8\avgscanx.exe<br />
C:\Programme\AVG\AVG8\avgcsrvx.exe<br />
C:\Dokumente und Einstellungen\Besitzer\Eigene Dateien\Downloads\RSIT.exe<br />
C:\Programme\Trend Micro\HijackThis\Besitzer.exe<br />
<br />
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896<br />
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com<br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157<br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896<br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896<br />
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157<br />
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 127.0.0.1:9666<br />
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1<br />
R3 - URLSearchHook: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Programme\AVG\AVG8\Toolbar\IEToolbar.dll<br />
R3 - URLSearchHook: (no name) - *{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)<br />
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Programme\AVG\AVG8\avgssie.dll<br />
O2 - BHO: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Programme\AVG\AVG8\Toolbar\IEToolbar.dll<br />
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programme\Java\jre6\bin\jp2ssv.dll<br />
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Programme\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll<br />
O3 - Toolbar: Veoh Browser Plug-in - {D0943516-5076-4020-A3B5-AEFAF26AB263} - C:\Programme\Veoh Networks\Veoh\Plugins\reg\VeohToolbar.dll<br />
O3 - Toolbar: AVG Security Toolbar - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Programme\AVG\AVG8\Toolbar\IEToolbar.dll<br />
O4 - HKLM\..\Run: &#91;bugarobad&#93; Rundll32.exe &quot;c:\windows\system32\gayudida.dll&quot;,a<br />
O4 - HKLM\..\Run: &#91;WinampAgent&#93; C:\Programme\Winamp\winampa.exe<br />
O4 - HKLM\..\Run: &#91;SynTPEnh&#93; C:\Programme\Synaptics\SynTP\SynTPEnh.exe<br />
O4 - HKLM\..\Run: &#91;SunJavaUpdateSched&#93; &quot;C:\Programme\Java\jre6\bin\jusched.exe&quot;<br />
O4 - HKLM\..\Run: &#91;RecGuard&#93; C:\Windows\SMINST\RecGuard.exe<br />
O4 - HKLM\..\Run: &#91;QuickTime Task&#93; &quot;C:\Programme\QuickTime\QTTask.exe&quot; -atboottime<br />
O4 - HKLM\..\Run: &#91;QPService&#93; &quot;C:\Programme\HP\QuickPlay\QPService.exe&quot;<br />
O4 - HKLM\..\Run: &#91;iTunesHelper&#93; &quot;C:\Programme\iTunes\iTunesHelper.exe&quot;<br />
O4 - HKLM\..\Run: &#91;hpWirelessAssistant&#93; C:\Programme\hpq\HP Wireless Assistant\HP Wireless Assistant.exe<br />
O4 - HKLM\..\Run: &#91;HP Software Update&#93; C:\Programme\Hp\HP Software Update\HPWuSchd2.exe<br />
O4 - HKLM\..\Run: &#91;eabconfg.cpl&#93; C:\Programme\HPQ\Quick Launch Buttons\EabServr.exe /Start<br />
O4 - HKLM\..\Run: &#91;Cpqset&#93; C:\Programme\HPQ\Default Settings\cpqset.exe<br />
O4 - HKLM\..\Run: &#91;AVG8_TRAY&#93; C:\PROGRA~1\AVG\AVG8\avgtray.exe<br />
O4 - HKLM\..\Run: &#91;ATIPTA&#93; &quot;C:\Programme\ATI Technologies\ATI Control Panel\atiptaxx.exe&quot;<br />
O4 - HKLM\..\RunOnce: &#91;Malwarebytes' Anti-Malware&#93; C:\Programme\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent<br />
O4 - HKUS\S-1-5-19\..\Run: &#91;CTFMON.EXE&#93; C:\WINDOWS\system32\CTFMON.EXE (User 'LOKALER DIENST')<br />
O4 - HKUS\S-1-5-20\..\Run: &#91;CTFMON.EXE&#93; C:\WINDOWS\system32\CTFMON.EXE (User 'NETZWERKDIENST')<br />
O4 - HKUS\S-1-5-18\..\Run: &#91;CTFMON.EXE&#93; C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')<br />
O4 - HKUS\.DEFAULT\..\Run: &#91;CTFMON.EXE&#93; C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')<br />
O4 - Global Startup: HP Photosmart Premier – Schnellstart.lnk = C:\Programme\HP\Digital Imaging\bin\hpqthb08.exe<br />
O4 - Global Startup: Microsoft Office.lnk = C:\Programme\Microsoft Office\Office10\OSA.EXE<br />
O4 - Global Startup: VPN Client.lnk = ?<br />
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe<br />
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe<br />
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe<br />
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe<br />
O14 - IERESET.INF: START_PAGE_URL=http://www.hp.com<br />
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Programme\AVG\AVG8\avgpp.dll<br />
O20 - AppInit_DLLs: c:\windows\system32\gayudida.dll,pajosuri.dll<br />
O20 - Winlogon Notify: avgrsstarter - C:\WINDOWS\SYSTEM32\avgrsstx.dll<br />
O21 - SSODL: dibositut - {11b856f5-0335-4f78-b2df-a299fd82b613} - c:\windows\system32\gayudida.dll<br />
O22 - SharedTaskScheduler: gahurihor - {11b856f5-0335-4f78-b2df-a299fd82b613} - c:\windows\system32\gayudida.dll<br />
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Programme\Gemeinsame Dateien\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe<br />
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe<br />
O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe<br />
O23 - Service: Bonjour-Dienst (Bonjour Service) - Apple Inc. - C:\Programme\Bonjour\mDNSResponder.exe<br />
O23 - Service: Cisco Systems, Inc. VPN Service (CVPND) - Cisco Systems, Inc. - C:\Programme\Cisco Systems\VPN Client\cvpnd.exe<br />
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Programme\Hewlett-Packard\Shared\hpqwmiex.exe<br />
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programme\Gemeinsame Dateien\InstallShield\Driver\1050\Intel 32\IDriverT.exe<br />
O23 - Service: iPod-Dienst (iPod Service) - Apple Inc. - C:\Programme\iPod\bin\iPodService.exe<br />
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Programme\Java\jre6\bin\jqs.exe<br />
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Programme\Gemeinsame Dateien\LightScribe\LSSrvc.exe<br />
O23 - Service: T-Online WLAN Adapter Steuerungsdienst (MZCCntrl) - Deutsche Telekom AG, Marmiko IT-Solutions GmbH - C:\Programme\Gemeinsame Dateien\Marmiko Shared\MZCCntrl.exe<br />
<br />
--<br />
End of file - 8088 bytes<br />
<br />
======Scheduled tasks folder======<br />
<br />
C:\WINDOWS\tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job<br />
C:\WINDOWS\tasks\{66BA574B-1E11-49b8-909C-8CC9E0E8E015}.job<br />
<br />
======Registry dump======<br />
<br />
&#91;HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}&#93;<br />
AVG Safe Search - C:\Programme\AVG\AVG8\avgssie.dll &#91;2009-12-12 1111320&#93;<br />
<br />
&#91;HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A3BC75A2-1F87-4686-AA43-5347D756017C}&#93;<br />
AVG Security Toolbar BHO - C:\Programme\AVG\AVG8\Toolbar\IEToolbar.dll &#91;2009-11-25 1230080&#93;<br />
<br />
&#91;HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}&#93;<br />
Java(tm) Plug-In 2 SSV Helper - C:\Programme\Java\jre6\bin\jp2ssv.dll &#91;2009-10-22 41760&#93;<br />
<br />
&#91;HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}&#93;<br />
JQSIEStartDetectorImpl Class - C:\Programme\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll &#91;2009-10-22 73728&#93;<br />
<br />
&#91;HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar&#93;<br />
{D0943516-5076-4020-A3B5-AEFAF26AB263} - Veoh Browser Plug-in - C:\Programme\Veoh Networks\Veoh\Plugins\reg\VeohToolbar.dll &#91;2008-06-19 352256&#93;<br />
{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - AVG Security Toolbar - C:\Programme\AVG\AVG8\Toolbar\IEToolbar.dll &#91;2009-11-25 1230080&#93;<br />
<br />
&#91;HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run&#93;<br />
&quot;bugarobad&quot;=c:\windows\system32\gayudida.dll &#91;1601-01-01 95744&#93;<br />
&quot;WinampAgent&quot;=C:\Programme\Winamp\winampa.exe &#91;2009-07-01 37888&#93;<br />
&quot;SynTPEnh&quot;=C:\Programme\Synaptics\SynTP\SynTPEnh.exe &#91;2005-06-19 729178&#93;<br />
&quot;SunJavaUpdateSched&quot;=C:\Programme\Java\jre6\bin\jusched.exe &#91;2009-10-22 149280&#93;<br />
&quot;RecGuard&quot;=C:\Windows\SMINST\RecGuard.exe &#91;2005-10-11 1187840&#93;<br />
&quot;QuickTime Task&quot;=C:\Programme\QuickTime\QTTask.exe &#91;2009-11-10 417792&#93;<br />
&quot;QPService&quot;=C:\Programme\HP\QuickPlay\QPService.exe &#91;2005-12-12 94208&#93;<br />
&quot;iTunesHelper&quot;=C:\Programme\iTunes\iTunesHelper.exe &#91;2009-11-12 141600&#93;<br />
&quot;hpWirelessAssistant&quot;=C:\Programme\hpq\HP Wireless Assistant\HP Wireless Assistant.exe &#91;2005-12-13 507904&#93;<br />
&quot;HP Software Update&quot;=C:\Programme\Hp\HP Software Update\HPWuSchd2.exe &#91;2005-02-16 49152&#93;<br />
&quot;eabconfg.cpl&quot;=C:\Programme\HPQ\Quick Launch Buttons\EabServr.exe &#91;2005-12-22 405504&#93;<br />
&quot;Cpqset&quot;=C:\Programme\HPQ\Default Settings\cpqset.exe &#91;2005-08-01 233534&#93;<br />
&quot;AVG8_TRAY&quot;=C:\PROGRA~1\AVG\AVG8\avgtray.exe &#91;2009-12-12 2043160&#93;<br />
&quot;ATIPTA&quot;=C:\Programme\ATI Technologies\ATI Control Panel\atiptaxx.exe &#91;2005-11-10 344064&#93;<br />
<br />
&#91;HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce&#93;<br />
&quot;Malwarebytes' Anti-Malware&quot;=C:\Programme\Malwarebytes' Anti-Malware\mbamgui.exe &#91;2010-01-07 429392&#93;<br />
<br />
C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart<br />
HP Photosmart Premier – Schnellstart.lnk - C:\Programme\HP\Digital Imaging\bin\hpqthb08.exe<br />
Microsoft Office.lnk - C:\Programme\Microsoft Office\Office10\OSA.EXE<br />
VPN Client.lnk - C:\WINDOWS\Installer\{08B785C1-3893-4154-B53B-F5D341D0AAAA}\Icon3E5562ED7.ico<br />
<br />
&#91;HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows&#93;<br />
&quot;AppInit_DLLS&quot;=&quot;c:\windows\system32\gayudida.dll,pajosuri.dll&quot;<br />
<br />
&#91;HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent&#93;<br />
C:\WINDOWS\system32\Ati2evxx.dll &#91;2005-11-10 47616&#93;<br />
<br />
&#91;HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\avgrsstarter&#93;<br />
C:\WINDOWS\system32\avgrsstx.dll &#91;2009-08-19 11952&#93;<br />
<br />
&#91;HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad&#93;<br />
dibositut - {11b856f5-0335-4f78-b2df-a299fd82b613} - c:\windows\system32\gayudida.dll &#91;1601-01-01 95744&#93;<br />
<br />
&#91;HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\SharedTaskScheduler&#93;<br />
gahurihor - {11b856f5-0335-4f78-b2df-a299fd82b613} - c:\windows\system32\gayudida.dll &#91;1601-01-01 95744&#93;<br />
<br />
&#91;HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa&#93;<br />
&quot;notification packages&quot;=scecli<br />
vorehuye.dll<br />
<br />
&#91;HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm&#93;<br />
<br />
&#91;HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm.sys&#93;<br />
<br />
&#91;HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System&#93;<br />
&quot;dontdisplaylastusername&quot;=0<br />
&quot;legalnoticecaption&quot;=<br />
&quot;legalnoticetext&quot;=<br />
&quot;shutdownwithoutlogon&quot;=1<br />
&quot;undockwithoutlogon&quot;=1<br />
<br />
&#91;HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer&#93;<br />
&quot;NoDriveTypeAutoRun&quot;=145<br />
<br />
&#91;HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer&#93;<br />
&quot;HonorAutoRunSetting&quot;=<br />
<br />
&#91;HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list&#93;<br />
&quot;%windir%\system32\sessmgr.exe&quot;=&quot;%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019&quot;<br />
&quot;C:\Programme\AOL 9.0\waol.exe&quot;=&quot;C:\Programme\AOL 9.0\waol.exe:*:Enabled:AOL Germany&quot;<br />
&quot;C:\Programme\Winamp Remote\bin\Orb.exe&quot;=&quot;C:\Programme\Winamp Remote\bin\Orb.exe:*:Enabled:Orb&quot;<br />
&quot;C:\Programme\Winamp Remote\bin\OrbTray.exe&quot;=&quot;C:\Programme\Winamp Remote\bin\OrbTray.exe:*:Enabled:OrbTray&quot;<br />
&quot;C:\Programme\Winamp Remote\bin\OrbStreamerClient.exe&quot;=&quot;C:\Programme\Winamp Remote\bin\OrbStreamerClient.exe:*:Enabled:Orb Stream Client&quot;<br />
&quot;C:\Programme\Soulseek-Test\slsk.exe&quot;=&quot;C:\Programme\Soulseek-Test\slsk.exe:*:Enabled:SoulSeek&quot;<br />
&quot;C:\Programme\Veoh Networks\Veoh\VeohClient.exe&quot;=&quot;C:\Programme\Veoh Networks\Veoh\VeohClient.exe:*:Enabled:Veoh Client&quot;<br />
&quot;%windir%\Network Diagnostic\xpnetdiag.exe&quot;=&quot;%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000&quot;<br />
&quot;C:\Programme\SopCast\adv\SopAdver.exe&quot;=&quot;C:\Programme\SopCast\adv\SopAdver.exe:*:Enabled:SopCast Adver&quot;<br />
&quot;C:\Programme\SopCast\SopCast.exe&quot;=&quot;C:\Programme\SopCast\SopCast.exe:*:Enabled:SopCast Main Application&quot;<br />
&quot;C:\Dokumente und Einstellungen\Besitzer\Lokale Einstellungen\Temp\WZSE0.TMP\SymNRT.exe&quot;=&quot;C:\Dokumente und Einstellungen\Besitzer\Lokale Einstellungen\Temp\WZSE0.TMP\SymNRT.exe:*:Enabled:Norton Removal Tool&quot;<br />
&quot;C:\Programme\uusee\UUSeePlayer.exe&quot;=&quot;C:\Programme\uusee\UUSeePlayer.exe:*:Enabled:UUPlayer&quot;<br />
&quot;C:\Programme\BitTorrent++\BT++.exe&quot;=&quot;C:\Programme\BitTorrent++\BT++.exe:*:Enabled:BT++&quot;<br />
&quot;C:\Programme\AVG\AVG8\avgupd.exe&quot;=&quot;C:\Programme\AVG\AVG8\avgupd.exe:*:Enabled:avgupd.exe&quot;<br />
&quot;C:\Programme\AVG\AVG8\avgnsx.exe&quot;=&quot;C:\Programme\AVG\AVG8\avgnsx.exe:*:Enabled:avgnsx.exe&quot;<br />
&quot;C:\Programme\Firaxis Games\Sid Meier's Civilization 4\Civilization4.exe&quot;=&quot;C:\Programme\Firaxis Games\Sid Meier's Civilization 4\Civilization4.exe:*:Enabled:Sid Meier's Civilization 4&quot;<br />
&quot;C:\Programme\Mozilla Firefox\firefox.exe&quot;=&quot;C:\Programme\Mozilla Firefox\firefox.exe:*:Enabled:Firefox&quot;<br />
&quot;C:\Programme\Veoh Networks\VeohWebPlayer\veohwebplayer.exe&quot;=&quot;C:\Programme\Veoh Networks\VeohWebPlayer\veohwebplayer.exe:*:Enabled:Veoh Web Player &quot;<br />
&quot;C:\Programme\Bonjour\mDNSResponder.exe&quot;=&quot;C:\Programme\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour&quot;<br />
&quot;C:\Programme\iTunes\iTunes.exe&quot;=&quot;C:\Programme\iTunes\iTunes.exe:*:Enabled:iTunes&quot;<br />
&quot;C:\WINDOWS\explorer.exe&quot;=&quot;C:\WINDOWS\explorer.exe:*:Enabled:Explorer&quot;<br />
&quot;C:\WINDOWS\system32\winlogon.exe&quot;=&quot;C:\WINDOWS\system32\winlogon.exe:*:Enabled:winlogon&quot;<br />
&quot;C:\Programme\iPod\bin\iPodService.exe&quot;=&quot;C:\Programme\iPod\bin\iPodService.exe:*:Enabled:iPodService&quot;<br />
<br />
&#91;HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list&#93;<br />
&quot;%windir%\system32\sessmgr.exe&quot;=&quot;%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019&quot;<br />
&quot;%windir%\Network Diagnostic\xpnetdiag.exe&quot;=&quot;%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000&quot;<br />
<br />
&#91;HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{2456cddc-f7be-11de-96cb-001eec176fb0}&#93;<br />
shell\AutoRun\command - F:\Seagate\Installer\InstallSeagateManager.exe<br />
shell\Install\command - F:\Seagate\Installer\InstallSeagateManager.exe<br />
<br />
<br />
======List of files/folders created in the last 1 months======<br />
<br />
2010-01-25 12:23:02 ----D---- C:\rsit<br />
2010-01-25 11:49:50 ----D---- C:\Avenger<br />
2010-01-25 11:49:49 ----A---- C:\avenger.txt<br />
2010-01-25 11:40:26 ----HDC---- C:\WINDOWS\ie8<br />
2010-01-25 10:37:20 ----D---- C:\Programme\Malwarebytes' Anti-Malware<br />
2010-01-25 10:28:34 ----A---- C:\WINDOWS\SchedLgU.Txt<br />
2010-01-24 08:53:36 ----D---- C:\WINDOWS\Internet Logs<br />
2010-01-24 08:52:21 ----D---- C:\Programme\Gemeinsame Dateien\Deterministic Networks<br />
2010-01-24 08:52:18 ----D---- C:\Programme\Cisco Systems<br />
2010-01-24 05:59:25 ----SH---- C:\WINDOWS\system32\wutekawu.dll<br />
2010-01-24 05:13:32 ----SH---- C:\WINDOWS\system32\jisubufo.dll<br />
2010-01-24 05:13:11 ----SH---- C:\WINDOWS\system32\zagareme.dll<br />
2010-01-23 15:43:04 ----D---- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\TVU Networks<br />
2010-01-23 15:41:45 ----D---- C:\WINDOWS\system32\TVUAx<br />
2010-01-14 03:06:29 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$<br />
2010-01-14 03:06:14 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$<br />
2010-01-13 06:37:16 ----D---- C:\Programme\GIMP-2.0<br />
2010-01-11 23:26:56 ----D---- C:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\avidemux<br />
2010-01-09 17:41:51 ----D---- C:\Programme\Gemeinsame Dateien\Windows Live<br />
2010-01-09 01:20:06 ----D---- C:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\uTorrent<br />
2010-01-04 21:42:16 ----D---- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Last.fm<br />
2010-01-04 21:40:37 ----D---- C:\Programme\Last.fm<br />
2009-12-26 14:15:01 ----D---- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\iTunesFolderWatch<br />
2009-12-26 14:14:09 ----D---- C:\Programme\JezSoft<br />
<br />
======List of files/folders modified in the last 1 months======<br />
<br />
2010-01-25 19:53:59 ----D---- C:\WINDOWS\Temp<br />
2010-01-25 19:51:37 ----D---- C:\WINDOWS\Prefetch<br />
2010-01-25 19:23:05 ----ASH---- C:\hpqp.ini<br />
2010-01-25 12:56:50 ----D---- C:\WINDOWS\system32\drivers<br />
2010-01-25 12:46:12 ----D---- C:\WINDOWS<br />
2010-01-25 12:45:55 ----A---- C:\XP_TV.ini<br />
2010-01-25 12:45:44 ----SHD---- C:\System Volume Information<br />
2010-01-25 12:45:44 ----D---- C:\WINDOWS\system32\Restore<br />
2010-01-25 12:44:04 ----RASH---- C:\boot.ini<br />
2010-01-25 12:44:04 ----A---- C:\WINDOWS\win.ini<br />
2010-01-25 12:44:04 ----A---- C:\WINDOWS\system.ini<br />
2010-01-25 12:27:39 ----D---- C:\WINDOWS\pss<br />
2010-01-25 11:50:46 ----D---- C:\WINDOWS\system32<br />
2010-01-25 11:49:16 ----RSHD---- C:\WINDOWS\system32\dllcache<br />
2010-01-25 11:49:16 ----D---- C:\WINDOWS\system32\de-de<br />
2010-01-25 11:49:16 ----D---- C:\WINDOWS\Help<br />
2010-01-25 11:49:16 ----D---- C:\Programme\Internet Explorer<br />
2010-01-25 11:42:31 ----HD---- C:\WINDOWS\inf<br />
2010-01-25 11:42:18 ----D---- C:\WINDOWS\WBEM<br />
2010-01-25 11:42:07 ----D---- C:\WINDOWS\Media<br />
2010-01-25 11:40:15 ----D---- C:\WINDOWS\system32\CatRoot2<br />
2010-01-25 10:37:20 ----RD---- C:\Programme<br />
2010-01-25 10:33:27 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI<br />
2010-01-25 09:04:41 ----D---- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\avg8<br />
2010-01-25 03:18:20 ----HD---- C:\$AVG8.VAULT$<br />
2010-01-25 00:55:15 ----SD---- C:\WINDOWS\Tasks<br />
2010-01-24 21:50:14 ----D---- C:\WINDOWS\network diagnostic<br />
2010-01-24 21:10:57 ----D---- C:\WINDOWS\system32\CatRoot<br />
2010-01-24 21:07:50 ----D---- C:\WINDOWS\ie8updates<br />
2010-01-24 08:53:32 ----SHD---- C:\WINDOWS\Installer<br />
2010-01-24 08:53:31 ----HD---- C:\Config.Msi<br />
2010-01-24 08:52:21 ----D---- C:\Programme\Gemeinsame Dateien<br />
2010-01-23 03:00:23 ----HD---- C:\WINDOWS\$hf_mig$<br />
2010-01-22 14:25:55 ----D---- C:\Programme\Mozilla Firefox<br />
2010-01-14 08:25:51 ----D---- C:\WINDOWS\Debug<br />
2010-01-14 04:52:30 ----D---- C:\WINDOWS\AppPatch<br />
2010-01-13 06:52:12 ----D---- C:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\gtk-2.0<br />
2010-01-11 22:52:02 ----D---- C:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\Winamp<br />
2010-01-09 17:41:37 ----SD---- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Microsoft<br />
2010-01-04 21:42:07 ----D---- C:\Programme\iTunes<br />
2010-01-02 17:48:55 ----SD---- C:\Dokumente und Einstellungen\Besitzer\Anwendungsdaten\Microsoft<br />
<br />
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======<br />
<br />
R1 AmdK8;AMD-Prozessortreiber; C:\WINDOWS\system32\DRIVERS\AmdK8.sys &#91;2005-03-09 43008&#93;<br />
R1 AvgLdx86;AVG Free AVI Loader Driver x86; C:\WINDOWS\System32\Drivers\avgldx86.sys &#91;2009-08-19 335240&#93;<br />
R1 AvgMfx86;AVG Free On-access Scanner Minifilter Driver x86; C:\WINDOWS\System32\Drivers\avgmfx86.sys &#91;2009-08-19 27784&#93;<br />
R1 AvgTdiX;AVG Free8 Network Redirector; C:\WINDOWS\System32\Drivers\avgtdix.sys &#91;2009-07-26 108552&#93;<br />
R1 eabfiltr;EABFiltr; \??\C:\WINDOWS\system32\drivers\EABFiltr.sys &#91;&#93;<br />
R1 StarOpen;StarOpen; C:\WINDOWS\system32\drivers\StarOpen.sys &#91;2008-11-11 5632&#93;<br />
R1 Tcpip6;Microsoft IPv6-Protokolltreiber; C:\WINDOWS\system32\DRIVERS\tcpip6.sys &#91;2008-06-20 225856&#93;<br />
R1 WmiAcpi;Microsoft Windows-Verwaltungsschnittstelle für ACPI; C:\WINDOWS\system32\DRIVERS\wmiacpi.sys &#91;2008-04-13 8832&#93;<br />
R2 CVPNDRVA;Cisco Systems Inc. IPSec Driver; \??\C:\WINDOWS\system32\Drivers\CVPNDRVA.sys &#91;&#93;<br />
R2 mdmxsdk;mdmxsdk; C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys &#91;2004-03-17 13059&#93;<br />
R2 STEC3;STEC3; \??\C:\WINDOWS\system32\STEC3.sys &#91;&#93;<br />
R2 symlcbrd;symlcbrd; \??\C:\WINDOWS\system32\drivers\symlcbrd.sys &#91;&#93;<br />
R3 Arp1394;1394-ARP-Clientprotokoll; C:\WINDOWS\system32\DRIVERS\arp1394.sys &#91;2008-04-13 60800&#93;<br />
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys &#91;2005-11-10 1396224&#93;<br />
R3 BCM43XX;Treiber für Broadcom 802.11-Netzwerkadapter; C:\WINDOWS\system32\DRIVERS\bcmwl5.sys &#91;2008-07-24 822272&#93;<br />
R3 CAMCAUD;Conexant AMC Audio; C:\WINDOWS\system32\drivers\camc6aud.sys &#91;2005-08-02 38016&#93;<br />
R3 CAMCHALA;CAMCHALA; C:\WINDOWS\system32\drivers\camc6hal.sys &#91;2005-08-02 349312&#93;<br />
R3 CmBatt;Microsoft-Netzteiltreiber; C:\WINDOWS\system32\DRIVERS\CmBatt.sys &#91;2008-04-13 13952&#93;<br />
R3 DNE;Deterministic Network Enhancer Miniport; C:\WINDOWS\system32\DRIVERS\dne2000.sys &#91;2008-11-16 131984&#93;<br />
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys &#91;2009-05-18 26600&#93;<br />
R3 HSF_DP;HSF_DP; C:\WINDOWS\system32\DRIVERS\HSF_DP.sys &#91;2005-08-22 1035008&#93;<br />
R3 HSFHWATI;HSFHWATI; C:\WINDOWS\system32\DRIVERS\HSFHWATI.sys &#91;2005-08-22 231424&#93;<br />
R3 NIC1394;1394-Netzwerktreiber; C:\WINDOWS\system32\DRIVERS\nic1394.sys &#91;2008-04-13 61824&#93;<br />
R3 RTL8023xp;Realtek 10/100/1000 NIC Family all in one NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtnicxp.sys &#91;2005-09-30 78720&#93;<br />
R3 sdbus;sdbus; C:\WINDOWS\system32\DRIVERS\sdbus.sys &#91;2008-04-13 79232&#93;<br />
R3 SynTP;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys &#91;2005-06-19 190400&#93;<br />
R3 tifm21;tifm21; C:\WINDOWS\system32\drivers\tifm21.sys &#91;2005-09-20 162432&#93;<br />
R3 tunmp;Microsoft Tun-Miniportadaptertreiber; C:\WINDOWS\system32\DRIVERS\tunmp.sys &#91;2008-04-13 12288&#93;<br />
R3 usbehci;Miniporttreiber für erweiterten Microsoft USB 2.0-Hostcontroller; C:\WINDOWS\system32\DRIVERS\usbehci.sys &#91;2008-04-13 30208&#93;<br />
R3 usbhub;USB2-aktivierter Hub; C:\WINDOWS\system32\DRIVERS\usbhub.sys &#91;2008-04-13 59520&#93;<br />
R3 usbohci;Miniporttreiber für Microsoft USB Open Host-Controller; C:\WINDOWS\system32\DRIVERS\usbohci.sys &#91;2008-04-13 17152&#93;<br />
R3 USBSTOR;USB-Massenspeichertreiber; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS &#91;2008-04-13 26368&#93;<br />
R3 winachsf;winachsf; C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys &#91;2005-08-22 718464&#93;<br />
S3 BTWUSB;WIDCOMM USB Bluetooth Driver; C:\WINDOWS\System32\Drivers\btwusb.sys &#91;2005-08-18 56648&#93;<br />
S3 CVirtA;Cisco Systems VPN Adapter; C:\WINDOWS\system32\DRIVERS\CVirtA.sys &#91;2007-01-18 5275&#93;<br />
S3 eabusb;eabusb; \??\C:\WINDOWS\system32\drivers\eabusb.sys &#91;&#93;<br />
S3 ENUM1394;%1394\031887&amp;040892.DeviceDesc%; C:\WINDOWS\system32\DRIVERS\enum1394.sys &#91;2001-08-17 6400&#93;<br />
S3 MACNDIS5;MACNDIS5 NDIS Protocol Driver; \??\C:\PROGRA~1\GEMEIN~1\MARMIK~1\MACNDIS5.SYS &#91;&#93;<br />
S3 nm;Netzwerkmonitortreiber; C:\WINDOWS\system32\DRIVERS\NMnt.sys &#91;2008-04-13 40320&#93;<br />
S3 Rasirda;WAN-Miniport (IrDA); C:\WINDOWS\system32\DRIVERS\rasirda.sys &#91;2001-08-17 19584&#93;<br />
S3 SMCIRDA;SMC IrCC-Miniportgerätetreiber; C:\WINDOWS\system32\DRIVERS\smcirda.sys &#91;2001-08-18 35913&#93;<br />
S3 USBAAPL;Apple Mobile USB Driver; C:\WINDOWS\System32\Drivers\usbaapl.sys &#91;2009-08-28 40448&#93;<br />
S3 usbscan;USB-Scannertreiber; C:\WINDOWS\system32\DRIVERS\usbscan.sys &#91;2008-04-13 15104&#93;<br />
S3 usbuhci;Miniporttreiber für universellen Microsoft USB-Hostcontroller; C:\WINDOWS\system32\DRIVERS\usbuhci.sys &#91;2008-04-13 20608&#93;<br />
<br />
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======<br />
<br />
R2 6to4;IPv6-Hilfsdienst; C:\WINDOWS\system32\svchost.exe &#91;2008-04-14 14336&#93;<br />
R2 Apple Mobile Device;Apple Mobile Device; C:\Programme\Gemeinsame Dateien\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe &#91;2009-08-28 144672&#93;<br />
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe &#91;2005-11-10 389120&#93;<br />
R2 avg8wd;AVG Free8 WatchDog; C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe &#91;2009-08-19 297752&#93;<br />
R2 Bonjour Service;Bonjour-Dienst; C:\Programme\Bonjour\mDNSResponder.exe &#91;2008-12-12 238888&#93;<br />
R2 CVPND;Cisco Systems, Inc. VPN Service; C:\Programme\Cisco Systems\VPN Client\cvpnd.exe &#91;2009-08-23 1528624&#93;<br />
R2 hpqwmiex;hpqwmiex; C:\Programme\Hewlett-Packard\Shared\hpqwmiex.exe &#91;2005-12-21 98304&#93;<br />
R2 JavaQuickStarterService;Java Quick Starter; C:\Programme\Java\jre6\bin\jqs.exe &#91;2009-10-22 153376&#93;<br />
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Programme\Gemeinsame Dateien\LightScribe\LSSrvc.exe &#91;2005-11-15 73728&#93;<br />
R2 MZCCntrl;T-Online WLAN Adapter Steuerungsdienst; C:\Programme\Gemeinsame Dateien\Marmiko Shared\MZCCntrl.exe &#91;2007-01-09 61440&#93;<br />
R2 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe &#91;2004-08-10 38912&#93;<br />
R3 iPod Service;iPod-Dienst; C:\Programme\iPod\bin\iPodService.exe &#91;2009-11-12 545568&#93;<br />
S2 SSHNAS;SSHNAS; C:\WINDOWS\system32\svchost.exe &#91;2008-04-14 14336&#93;<br />
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe &#91;2008-07-25 34312&#93;<br />
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe &#91;2008-07-25 69632&#93;<br />
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe &#91;2008-07-29 46104&#93;<br />
S3 IDriverT;InstallDriver Table Manager; C:\Programme\Gemeinsame Dateien\InstallShield\Driver\1050\Intel 32\IDriverT.exe &#91;2004-10-22 73728&#93;<br />
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe &#91;2008-07-29 881664&#93;<br />
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe &#91;2008-07-29 132096&#93;<br />
<br />
-----------------EOF-----------------</code><hr />
</div> CCleaner nutze ich regelmäßig, auch für die Registry.<br />
<br />
GMER habe ich auch mal laufen lassen:<br />
<br />
<div class="bbcode_container">
	<div class="bbcode_description">HTML-Code:</div>
	<hr /><code class="bbcode_code">Logfile of Trend Micro HijackThis v2.0.2<br />
Scan saved at 23:03:06, on 25.01.2010<br />
Platform: Windows XP SP3 (WinNT 5.01.2600)<br />
MSIE: Internet Explorer v8.00 (8.00.6001.18702)<br />
Boot mode: Normal<br />
<br />
Running processes:<br />
C:\WINDOWS\System32\smss.exe<br />
C:\WINDOWS\system32\winlogon.exe<br />
C:\WINDOWS\system32\services.exe<br />
C:\WINDOWS\system32\lsass.exe<br />
C:\WINDOWS\system32\Ati2evxx.exe<br />
C:\WINDOWS\system32\svchost.exe<br />
C:\WINDOWS\System32\svchost.exe<br />
C:\WINDOWS\system32\spoolsv.exe<br />
C:\WINDOWS\system32\Ati2evxx.exe<br />
C:\Programme\Gemeinsame Dateien\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe<br />
C:\WINDOWS\Explorer.EXE<br />
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe<br />
C:\Programme\Bonjour\mDNSResponder.exe<br />
C:\Programme\Cisco Systems\VPN Client\cvpnd.exe<br />
C:\Programme\Java\jre6\bin\jqs.exe<br />
C:\Programme\Gemeinsame Dateien\LightScribe\LSSrvc.exe<br />
C:\Programme\Gemeinsame Dateien\Marmiko Shared\MZCCntrl.exe<br />
C:\WINDOWS\system32\svchost.exe<br />
C:\Programme\Hewlett-Packard\Shared\hpqwmiex.exe<br />
C:\PROGRA~1\AVG\AVG8\avgrsx.exe<br />
C:\PROGRA~1\AVG\AVG8\avgnsx.exe<br />
C:\Programme\Winamp\winampa.exe<br />
C:\Programme\Synaptics\SynTP\SynTPEnh.exe<br />
C:\Programme\Java\jre6\bin\jusched.exe<br />
C:\Programme\HP\QuickPlay\QPService.exe<br />
C:\Programme\iTunes\iTunesHelper.exe<br />
C:\Programme\hpq\HP Wireless Assistant\HP Wireless Assistant.exe<br />
C:\Programme\Hp\HP Software Update\HPWuSchd2.exe<br />
C:\Programme\HPQ\Quick Launch Buttons\EabServr.exe<br />
C:\Programme\ATI Technologies\ATI Control Panel\atiptaxx.exe<br />
C:\WINDOWS\system32\ctfmon.exe<br />
C:\WINDOWS\System32\svchost.exe<br />
C:\WINDOWS\system32\wbem\wmiapsrv.exe<br />
C:\Programme\HP\Digital Imaging\bin\hpqimzone.exe<br />
C:\PROGRA~1\hpq\Shared\HPQTOA~1.EXE<br />
C:\Programme\iPod\bin\iPodService.exe<br />
C:\Dokumente und Einstellungen\Besitzer\Eigene Dateien\Downloads\fj8zcy7p.exe<br />
C:\Programme\Microsoft Office\Office10\WINWORD.EXE<br />
C:\Programme\AVG\AVG8\avgcsrvx.exe<br />
C:\WINDOWS\system32\NOTEPAD.EXE<br />
C:\Programme\AVG\AVG8\avgtray.exe<br />
C:\Programme\Mozilla Firefox\firefox.exe<br />
C:\Programme\Trend Micro\HijackThis\HijackThis.exe<br />
<br />
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896<br />
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com<br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157<br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896<br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896<br />
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157<br />
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 127.0.0.1:9666<br />
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1<br />
R3 - URLSearchHook: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Programme\AVG\AVG8\Toolbar\IEToolbar.dll<br />
R3 - URLSearchHook: (no name) - *{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)<br />
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Programme\AVG\AVG8\avgssie.dll<br />
O2 - BHO: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Programme\AVG\AVG8\Toolbar\IEToolbar.dll<br />
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programme\Java\jre6\bin\jp2ssv.dll<br />
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Programme\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll<br />
O3 - Toolbar: Veoh Browser Plug-in - {D0943516-5076-4020-A3B5-AEFAF26AB263} - C:\Programme\Veoh Networks\Veoh\Plugins\reg\VeohToolbar.dll<br />
O3 - Toolbar: AVG Security Toolbar - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Programme\AVG\AVG8\Toolbar\IEToolbar.dll<br />
O4 - HKLM\..\Run: &#91;WinampAgent&#93; C:\Programme\Winamp\winampa.exe<br />
O4 - HKLM\..\Run: &#91;SynTPEnh&#93; C:\Programme\Synaptics\SynTP\SynTPEnh.exe<br />
O4 - HKLM\..\Run: &#91;SunJavaUpdateSched&#93; &quot;C:\Programme\Java\jre6\bin\jusched.exe&quot;<br />
O4 - HKLM\..\Run: &#91;RecGuard&#93; C:\Windows\SMINST\RecGuard.exe<br />
O4 - HKLM\..\Run: &#91;QuickTime Task&#93; &quot;C:\Programme\QuickTime\QTTask.exe&quot; -atboottime<br />
O4 - HKLM\..\Run: &#91;QPService&#93; &quot;C:\Programme\HP\QuickPlay\QPService.exe&quot;<br />
O4 - HKLM\..\Run: &#91;iTunesHelper&#93; &quot;C:\Programme\iTunes\iTunesHelper.exe&quot;<br />
O4 - HKLM\..\Run: &#91;hpWirelessAssistant&#93; C:\Programme\hpq\HP Wireless Assistant\HP Wireless Assistant.exe<br />
O4 - HKLM\..\Run: &#91;HP Software Update&#93; C:\Programme\Hp\HP Software Update\HPWuSchd2.exe<br />
O4 - HKLM\..\Run: &#91;eabconfg.cpl&#93; C:\Programme\HPQ\Quick Launch Buttons\EabServr.exe /Start<br />
O4 - HKLM\..\Run: &#91;Cpqset&#93; C:\Programme\HPQ\Default Settings\cpqset.exe<br />
O4 - HKLM\..\Run: &#91;AVG8_TRAY&#93; C:\PROGRA~1\AVG\AVG8\avgtray.exe<br />
O4 - HKLM\..\Run: &#91;ATIPTA&#93; &quot;C:\Programme\ATI Technologies\ATI Control Panel\atiptaxx.exe&quot;<br />
O4 - HKLM\..\Run: &#91;bugarobad&#93; Rundll32.exe &quot;c:\windows\system32\fizelugo.dll&quot;,a<br />
O4 - HKCU\..\Run: &#91;ctfmon.exe&#93; C:\WINDOWS\system32\ctfmon.exe<br />
O4 - HKUS\S-1-5-19\..\Run: &#91;CTFMON.EXE&#93; C:\WINDOWS\system32\CTFMON.EXE (User 'LOKALER DIENST')<br />
O4 - HKUS\S-1-5-20\..\Run: &#91;CTFMON.EXE&#93; C:\WINDOWS\system32\CTFMON.EXE (User 'NETZWERKDIENST')<br />
O4 - HKUS\S-1-5-18\..\Run: &#91;CTFMON.EXE&#93; C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')<br />
O4 - HKUS\.DEFAULT\..\Run: &#91;CTFMON.EXE&#93; C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')<br />
O4 - Global Startup: HP Photosmart Premier – Schnellstart.lnk = C:\Programme\HP\Digital Imaging\bin\hpqthb08.exe<br />
O4 - Global Startup: Microsoft Office.lnk = C:\Programme\Microsoft Office\Office10\OSA.EXE<br />
O4 - Global Startup: VPN Client.lnk = ?<br />
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe<br />
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe<br />
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe<br />
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe<br />
O14 - IERESET.INF: START_PAGE_URL=http://www.hp.com<br />
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Programme\AVG\AVG8\avgpp.dll<br />
O20 - AppInit_DLLs: pajosuri.dll c:\windows\system32\fizelugo.dll<br />
O20 - Winlogon Notify: avgrsstarter - C:\WINDOWS\SYSTEM32\avgrsstx.dll<br />
O21 - SSODL: nalofazug - {ef956721-b7a3-4a34-8201-15a14598f6b2} - c:\windows\system32\fizelugo.dll<br />
O22 - SharedTaskScheduler: tokatiluy - {ef956721-b7a3-4a34-8201-15a14598f6b2} - c:\windows\system32\fizelugo.dll<br />
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Programme\Gemeinsame Dateien\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe<br />
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe<br />
O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe<br />
O23 - Service: Bonjour-Dienst (Bonjour Service) - Apple Inc. - C:\Programme\Bonjour\mDNSResponder.exe<br />
O23 - Service: Cisco Systems, Inc. VPN Service (CVPND) - Cisco Systems, Inc. - C:\Programme\Cisco Systems\VPN Client\cvpnd.exe<br />
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Programme\Hewlett-Packard\Shared\hpqwmiex.exe<br />
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programme\Gemeinsame Dateien\InstallShield\Driver\1050\Intel 32\IDriverT.exe<br />
O23 - Service: iPod-Dienst (iPod Service) - Apple Inc. - C:\Programme\iPod\bin\iPodService.exe<br />
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Programme\Java\jre6\bin\jqs.exe<br />
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Programme\Gemeinsame Dateien\LightScribe\LSSrvc.exe<br />
O23 - Service: T-Online WLAN Adapter Steuerungsdienst (MZCCntrl) - Deutsche Telekom AG, Marmiko IT-Solutions GmbH - C:\Programme\Gemeinsame Dateien\Marmiko Shared\MZCCntrl.exe<br />
<br />
--<br />
End of file - 8118 bytes</code><hr />
</div> Bitte helft mir. Bin echt am verzweifeln:heulen:</div>

 ]]></content:encoded>
			<category domain="http://www.hijackthis-forum.de/archiv/">Archiv</category>
			<dc:creator>elisasaccaount</dc:creator>
			<guid isPermaLink="true">http://www.hijackthis-forum.de/archiv/42076-probleme-bei-auswertung-mbam-installation-und-ie-virus.html</guid>
		</item>
		<item>
			<title>Hartnäckige Malware - Umleitung von Webseiten</title>
			<link>http://www.hijackthis-forum.de/archiv/42065-hartnaeckige-malware-umleitung-von-webseiten.html</link>
			<pubDate>Mon, 25 Jan 2010 16:49:34 GMT</pubDate>
			<description>Hallo Petra, hallo HijackThis-Team, 
 
beide Daumen hoch und alle Achtung für eure tolle Arbeit und die vielen Mühen hier im Forum.  
 
Ich komme gleich zur Sache. XP mit SP3. Antivir/Firewall/Antispyware immer aktuell. Benutze Firefox 3.6. Und keine Ahnung, wie eingefangen. 
 
Bis jetzt bemerkte...</description>
			<content:encoded><![CDATA[<div>Hallo Petra, hallo HijackThis-Team,<br />
<br />
beide Daumen hoch und alle Achtung für eure tolle Arbeit und die vielen Mühen hier im Forum. <br />
<br />
Ich komme gleich zur Sache. XP mit SP3. Antivir/Firewall/Antispyware immer aktuell. Benutze Firefox 3.6. Und keine Ahnung, wie eingefangen.<br />
<br />
Bis jetzt bemerkte Symptome:<br />
- Weiterleiten von Googlesuchergebnissen auf diverse dubios aussehende Suchseiten<br />
- Sperrung bestimmter sicherheitsverwandter Seiten<br />
- Absturz des Browsers<br />
- RegEdit lässt sich nicht öffnen<br />
- CCleaner nicht installieren<br />
<br />
Habe die Threads zu diesem Thema hier im Forum durchsucht, aber keine direkt übertragbaren Aktionen gefunden.<br />
<br />
Ich poste im folgenden<b> Antivir </b>und <b>Malwarebytes</b> Funde und Aktionen von meinen einfachen Versuchen die Malware zu beseitigen. Die erste Antivir Aktion hat nichts gebracht, habe dann die gefundenen Objekte für einen weiteren Scan mit Malwarebytes wieder aus der Quarantäne entfernt. Nach der Malwarebytes Aktion habe ich erstmal ratlos nichts weiter unternommen.<br />
<br />
Im nächsten Post befinden sich dann <b>HJT Log</b> und <b>HJTscanlist</b>, sowie <b>GMER Log</b>. <b>RSIT</b> konnte ich nicht ausführen, da es angeblich &quot;keine zulässige Win32 Anwendung&quot; sei.<br />
<br />
Wäre für eure ehrenamtliche kompetente Hilfe sehr dankbar.<br />
<br />
Liebe Grüße,<br />
geistzeit<br />
<br />
<b>ANTIVIR</b><br />
<br />
<div class="bbcode_container">
	<div class="bbcode_description">Code:</div>
	<hr /><code class="bbcode_code">Exportierte Ereignisse:<br />
<br />
24.01.2010 20:25 [Scanner] Malware gefunden<br />
&nbsp; &nbsp; &nbsp; Die Datei 'C:\WINDOWS\system32\config\systemprofile\Lokale <br />
&nbsp; &nbsp; &nbsp; Einstellungen\Temporary Internet Files\Content.IE5\6V2LMN61\fozc[1].exe'<br />
&nbsp; &nbsp; &nbsp; enthielt einen Virus oder unerwünschtes Programm 'TR/Agent.57344' [trojan].<br />
&nbsp; &nbsp; &nbsp; Durchgeführte Aktion(en):<br />
&nbsp; &nbsp; &nbsp; Die Datei wurde ins Quarantäneverzeichnis unter dem Namen '4bd69f20.qua' <br />
&nbsp; &nbsp; &nbsp; verschoben!<br />
<br />
24.01.2010 20:25 [Scanner] Malware gefunden<br />
&nbsp; &nbsp; &nbsp; Die Datei 'C:\System Volume <br />
&nbsp; &nbsp; &nbsp; Information\_restore{53B5A9BD-3DC3-4310-9C29-9834222F967C}\RP216\A0044218.exe'<br />
&nbsp; &nbsp; &nbsp; enthielt einen Virus oder unerwünschtes Programm 'TR/Agent.57344' [trojan].<br />
&nbsp; &nbsp; &nbsp; Durchgeführte Aktion(en):<br />
&nbsp; &nbsp; &nbsp; Die Datei wurde ins Quarantäneverzeichnis unter dem Namen '4b8c9ee1.qua' <br />
&nbsp; &nbsp; &nbsp; verschoben!<br />
<br />
24.01.2010 20:25 [Scanner] Malware gefunden<br />
&nbsp; &nbsp; &nbsp; Die Datei 'C:\WINDOWS\system32\spool\prtprocs\w32x86\0000525d.tmp'<br />
&nbsp; &nbsp; &nbsp; enthielt einen Virus oder unerwünschtes Programm 'TR/Spy.120832.26' [trojan].<br />
&nbsp; &nbsp; &nbsp; Durchgeführte Aktion(en):<br />
&nbsp; &nbsp; &nbsp; Die Datei wurde ins Quarantäneverzeichnis unter dem Namen '4e3566d2.qua' <br />
&nbsp; &nbsp; &nbsp; verschoben!<br />
<br />
24.01.2010 17:46 [Guard] Malware gefunden<br />
&nbsp; &nbsp; &nbsp; In der Datei 'C:\WINDOWS\system32\mdwlhofqz.exe'<br />
&nbsp; &nbsp; &nbsp; wurde ein Virus oder unerwünschtes Programm 'TR/Agent.57344' [trojan] gefunden.<br />
&nbsp; &nbsp; &nbsp; Ausgeführte Aktion: Datei löschen</code><hr />
</div> <b>MALWAREBYTES</b><br />
<br />
<div class="bbcode_container">
	<div class="bbcode_description">Code:</div>
	<hr /><code class="bbcode_code">Malwarebytes' Anti-Malware 1.44<br />
Datenbank Version: 3510<br />
Windows 5.1.2600 Service Pack 3<br />
Internet Explorer 6.0.2900.5512<br />
<br />
24.01.2010 22:22:19<br />
mbam-log-2010-01-24 (22-22-19).txt<br />
<br />
Scan-Methode: Vollständiger Scan (C:\|D:\|)<br />
Durchsuchte Objekte: 208650<br />
Laufzeit: 52 minute(s), 42 second(s)<br />
<br />
Infizierte Speicherprozesse: 0<br />
Infizierte Speichermodule: 0<br />
Infizierte Registrierungsschlüssel: 5<br />
Infizierte Registrierungswerte: 0<br />
Infizierte Dateiobjekte der Registrierung: 3<br />
Infizierte Verzeichnisse: 0<br />
Infizierte Dateien: 1<br />
<br />
Infizierte Speicherprozesse:<br />
(Keine bösartigen Objekte gefunden)<br />
<br />
Infizierte Speichermodule:<br />
(Keine bösartigen Objekte gefunden)<br />
<br />
Infizierte Registrierungsschlüssel:<br />
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\chrome.exe (Security.Hijack) -&gt; Quarantined and deleted successfully.<br />
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\safari.exe (Security.Hijack) -&gt; Quarantined and deleted successfully.<br />
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\navigator.exe (Security.Hijack) -&gt; Quarantined and deleted successfully.<br />
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\opera.exe (Security.Hijack) -&gt; Quarantined and deleted successfully.<br />
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Userinit.exe (Security.Hijack) -&gt; Quarantined and deleted successfully.<br />
<br />
Infizierte Registrierungswerte:<br />
(Keine bösartigen Objekte gefunden)<br />
<br />
Infizierte Dateiobjekte der Registrierung:<br />
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -&gt; Bad: (1) Good: (0) -&gt; Quarantined and deleted successfully.<br />
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -&gt; Bad: (1) Good: (0) -&gt; Quarantined and deleted successfully.<br />
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (Disabled.SecurityCenter) -&gt; Bad: (1) Good: (0) -&gt; Quarantined and deleted successfully.<br />
<br />
Infizierte Verzeichnisse:<br />
(Keine bösartigen Objekte gefunden)<br />
<br />
Infizierte Dateien:<br />
D:\System Volume Information\_restore{53B5A9BD-3DC3-4310-9C29-9834222F967C}\RP216\A0044284.exe (Backdoor.Sdbot) -&gt; Quarantined and deleted successfully.</code><hr />
</div> </div>

 ]]></content:encoded>
			<category domain="http://www.hijackthis-forum.de/archiv/">Archiv</category>
			<dc:creator>geistzeit</dc:creator>
			<guid isPermaLink="true">http://www.hijackthis-forum.de/archiv/42065-hartnaeckige-malware-umleitung-von-webseiten.html</guid>
		</item>
		<item>
			<title>xml_inc.dll</title>
			<link>http://www.hijackthis-forum.de/archiv/42063-xml_inc-dll.html</link>
			<pubDate>Mon, 25 Jan 2010 16:02:54 GMT</pubDate>
			<description>Hallo zusammen! 
In letzter Zeit scheint dieser Trojaner vermehrt vorzukommen. Nun, bei mir hat der Agreifer den WoW Acc leergeräumt. Aber nun will ich das er mich endlich in Ruhe läßt denn er loggt sich jeden Abend gegen 9 uhr ein. 
Also, ich habe per Hijackthis die Datei (Name PWS) in die...</description>
			<content:encoded><![CDATA[<div>Hallo zusammen!<br />
In letzter Zeit scheint dieser Trojaner vermehrt vorzukommen. Nun, bei mir hat der Agreifer den WoW Acc leergeräumt. Aber nun will ich das er mich endlich in Ruhe läßt denn er loggt sich jeden Abend gegen 9 uhr ein.<br />
Also, ich habe per Hijackthis die Datei (Name PWS) in die Quarantäne verschoben. <br />
Können sie mir nun sagen was ich als nächstes zu tun habe?<br />
<br />
LG. Björn</div>

 ]]></content:encoded>
			<category domain="http://www.hijackthis-forum.de/archiv/">Archiv</category>
			<dc:creator>Safcon</dc:creator>
			<guid isPermaLink="true">http://www.hijackthis-forum.de/archiv/42063-xml_inc-dll.html</guid>
		</item>
		<item>
			<title>großes Problem</title>
			<link>http://www.hijackthis-forum.de/archiv/42057-grosses-problem.html</link>
			<pubDate>Mon, 25 Jan 2010 11:57:48 GMT</pubDate>
			<description>Hallo liebe Leute, 
 
zunächst einen großen Dank für die Möglichkeit euch kontaktieren zu können! 
 
Unser PC scheint etwas verseucht zu sein (Kaspersky hatte ein Rootkit gefunden) und nun ist auch noch plötzlich ein SecurityProgramm aufgetaucht welches wir nicht installiert haben. Dieses Programm...</description>
			<content:encoded><![CDATA[<div>Hallo liebe Leute,<br />
<br />
zunächst einen großen Dank für die Möglichkeit euch kontaktieren zu können!<br />
<br />
Unser PC scheint etwas verseucht zu sein (Kaspersky hatte ein Rootkit gefunden) und nun ist auch noch plötzlich ein SecurityProgramm aufgetaucht welches wir nicht installiert haben. Dieses Programm zeigt 38 Trojaner an und verhindert jegliche Aktivität wie zB Taskmanager, Benutzerneuerstellung etc. zusätzlich wird mir kein Desktop angezeigt.<br />
<br />
Ich habe den PC nun im abgesicherten Modus mit Netzwerktreiber hochgefahren um dieses Programm zu umgehen...<br />
<br />
Hier nun die Log_Files:<br />
<br />
<div class="bbcode_container">
	<div class="bbcode_description">Code:</div>
	<hr /><code class="bbcode_code">Logfile of Trend Micro HijackThis v2.0.2<br />
Scan saved at 12:41:11, on 25.01.2010<br />
Platform: Windows XP SP3 (WinNT 5.01.2600)<br />
MSIE: Internet Explorer v8.00 (8.00.6001.18702)<br />
Boot mode: Safe mode with network support<br />
<br />
Running processes:<br />
C:\WINDOWS\System32\smss.exe<br />
C:\WINDOWS\system32\winlogon.exe<br />
C:\WINDOWS\system32\services.exe<br />
C:\WINDOWS\system32\lsass.exe<br />
C:\WINDOWS\system32\svchost.exe<br />
C:\WINDOWS\system32\svchost.exe<br />
C:\WINDOWS\Explorer.EXE<br />
C:\Programme\Internet Explorer\iexplore.exe<br />
C:\Programme\Internet Explorer\iexplore.exe<br />
C:\WINDOWS\system32\ctfmon.exe<br />
C:\Programme\Internet Explorer\iexplore.exe<br />
C:\Programme\Trend Micro\HijackThis\HijackThis.exe<br />
<br />
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.fujitsu-siemens.de/<br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157<br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896<br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896<br />
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157<br />
O2 - BHO: Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Gemeinsame Dateien\Adobe\Acrobat\ActiveX\AcroIEHelper.dll<br />
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Programme\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll<br />
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Programme\Kaspersky Lab\Kaspersky Internet Security 2010\ievkbd.dll<br />
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)<br />
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Programme\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll<br />
O2 - BHO: Windows Live Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Windows Live\WindowsLiveLogin.dll<br />
O2 - BHO: Messenger Plus Live Toolbar - {9b339f6e-ddcd-401b-8764-230adbd01761} - C:\Programme\Messenger_Plus_Live\tbMes0.dll<br />
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programme\Java\jre6\bin\jp2ssv.dll<br />
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Programme\Windows Live\Toolbar\wltcore.dll<br />
O2 - BHO: link filter bho - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Programme\Kaspersky Lab\Kaspersky Internet Security 2010\klwtbbho.dll<br />
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Programme\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll<br />
O3 - Toolbar: &amp;Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Programme\Windows Live\Toolbar\wltcore.dll<br />
O3 - Toolbar: Gutscheinmieze - {DFEFCDEE-CF1A-4FC8-88AD-48514E463B27} - C:\Dokumente und Einstellungen\Gerald\Anwendungsdaten\Gutscheinmieze\toolbar.dll<br />
O3 - Toolbar: Messenger Plus Live Toolbar - {9b339f6e-ddcd-401b-8764-230adbd01761} - C:\Programme\Messenger_Plus_Live\tbMes0.dll<br />
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE<br />
O4 - HKLM\..\Run: [CTFMON] C:\WINDOWS\Temp\_ex-08.exe<br />
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup<br />
O4 - HKLM\..\Run: [AVP] &quot;C:\Programme\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe&quot;<br />
O4 - HKLM\..\Run: [sysgif32] C:\WINDOWS\TEMP\~TMC.tmp<br />
O4 - HKLM\..\Run: [24855731] C:\DOKUME~1\ALLUSE~1\ANWEND~1\24855731\24855731.exe<br />
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe<br />
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOKALER DIENST')<br />
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETZWERKDIENST')<br />
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')<br />
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')<br />
O8 - Extra context menu item: Add to Google Photos Screensa&amp;ver - res://C:\WINDOWS\system32\GPhotos.scr/200<br />
O9 - Extra button: In Blog veröffentlichen - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Programme\Windows Live\Writer\WriterBrowserExtension.dll<br />
O9 - Extra 'Tools' menuitem: In Windows Live Writer in Blog veröffentliche&amp;n - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Programme\Windows Live\Writer\WriterBrowserExtension.dll<br />
O9 - Extra button: An OneNote senden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll<br />
O9 - Extra 'Tools' menuitem: An OneNote s&amp;enden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll<br />
O9 - Extra button: &amp;Virtuelle Tastatur - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Programme\Kaspersky Lab\Kaspersky Internet Security 2010\klwtbbho.dll<br />
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Programme\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll<br />
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL<br />
O9 - Extra button: Li&amp;nks untersuchen - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Programme\Kaspersky Lab\Kaspersky Internet Security 2010\klwtbbho.dll<br />
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe<br />
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe<br />
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe<br />
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe<br />
O14 - IERESET.INF: START_PAGE_URL=http://www.fujitsu-siemens.de<br />
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/MessengerGamesContent/GameContent/de/uno1/GAME_UNO1.cab<br />
O16 - DPF: {9191F686-7F0A-441D-8A98-2FE3AC1BD913} (ActiveScan 2.0 Installer Class) - http://acs.pandasoftware.com/activescan/cabs/as2stubie.cab<br />
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab<br />
O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab<br />
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\GEMEIN~1\Skype\SKYPE4~1.DLL<br />
O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll,C:\PROGRA~1\KASPER~1\KASPER~1\kloehk.dll<br />
O23 - Service: a-squared Free Service (a2free) - Emsi Software GmbH - C:\Programme\a-squared Free\a2service.exe<br />
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Programme\Gemeinsame Dateien\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe<br />
O23 - Service: Kaspersky Internet Security (AVP) - Kaspersky Lab - C:\Programme\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe<br />
O23 - Service: Bonjour-Dienst (Bonjour Service) - Apple Inc. - C:\Programme\Bonjour\mDNSResponder.exe<br />
O23 - Service: Google Software Updater (gusvc) - Google - C:\Programme\Google\Common\Google Updater\GoogleUpdaterService.exe<br />
O23 - Service: iPod-Dienst (iPod Service) - Apple Inc. - C:\Programme\iPod\bin\iPodService.exe<br />
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Programme\Java\jre6\bin\jqs.exe<br />
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe<br />
O23 - Service: TeamViewer 5 (TeamViewer5) - TeamViewer GmbH - C:\Programme\TeamViewer\Version5\TeamViewer_Service.exe<br />
<br />
--<br />
End of file - 7682 bytes</code><hr />
</div>  <div class="bbcode_container">
	<div class="bbcode_description">Code:</div>
	<hr /><code class="bbcode_code"> <br />
&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; $$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$ <br />
&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; º&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; º <br />
&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; hjtscanlist v2.0&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; <br />
&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; º&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; º <br />
&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; $$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$ <br />
<br />
Microsoft Windows XP [Version 5.1.2600]<br />
&nbsp;<br />
&nbsp;<br />
C:<br />
<br />
&nbsp; 25.01.2010 12:41&nbsp; &nbsp; &nbsp; C:\Programme --------- 0 <br />
&nbsp; &nbsp; &nbsp; &nbsp; C:\pagefile.sys ---------&nbsp; <br />
&nbsp; 24.01.2010 22:47&nbsp; &nbsp; &nbsp; C:\WINDOWS --------- 0 <br />
&nbsp; 24.01.2010 22:35&nbsp; &nbsp; &nbsp; C:\Config.Msi --------- 0 <br />
&nbsp; 24.01.2010 21:56&nbsp; &nbsp; &nbsp; C:\RECYCLER --------- 0 <br />
&nbsp; 20.01.2010 10:47&nbsp; &nbsp; &nbsp; C:\hpfr5550.log --------- 264106 <br />
&nbsp; 25.11.2009 16:43&nbsp; &nbsp; &nbsp; C:\Games --------- 0 <br />
&nbsp; 29.07.2009 09:49&nbsp; &nbsp; &nbsp; C:\Eigene Dateien --------- 0 <br />
&nbsp; 28.07.2009 18:26&nbsp; &nbsp; &nbsp; C:\ProgramData --------- 0 <br />
&nbsp; 11.03.2009 19:08&nbsp; &nbsp; &nbsp; C:\sqmdata01.sqm --------- 268 <br />
&nbsp; 11.03.2009 19:08&nbsp; &nbsp; &nbsp; C:\sqmnoopt01.sqm --------- 244 <br />
&nbsp; 11.03.2009 16:57&nbsp; &nbsp; &nbsp; C:\sqmdata00.sqm --------- 268 <br />
&nbsp; 11.03.2009 16:57&nbsp; &nbsp; &nbsp; C:\sqmnoopt00.sqm --------- 244 <br />
&nbsp; 11.03.2009 08:58&nbsp; &nbsp; &nbsp; C:\sqmdata19.sqm --------- 268 <br />
&nbsp; 11.03.2009 08:58&nbsp; &nbsp; &nbsp; C:\sqmnoopt19.sqm --------- 244 <br />
&nbsp; 10.03.2009 22:50&nbsp; &nbsp; &nbsp; C:\sqmdata18.sqm --------- 268 <br />
&nbsp; 10.03.2009 22:50&nbsp; &nbsp; &nbsp; C:\sqmnoopt18.sqm --------- 244 <br />
&nbsp; 10.03.2009 16:00&nbsp; &nbsp; &nbsp; C:\sqmdata17.sqm --------- 268 <br />
&nbsp; 10.03.2009 16:00&nbsp; &nbsp; &nbsp; C:\sqmnoopt17.sqm --------- 244 <br />
&nbsp; 10.03.2009 13:45&nbsp; &nbsp; &nbsp; C:\sqmdata16.sqm --------- 268 <br />
&nbsp; 10.03.2009 13:45&nbsp; &nbsp; &nbsp; C:\sqmnoopt16.sqm --------- 244 <br />
&nbsp; 10.03.2009 08:55&nbsp; &nbsp; &nbsp; C:\sqmdata15.sqm --------- 268 <br />
&nbsp; 10.03.2009 08:55&nbsp; &nbsp; &nbsp; C:\sqmnoopt15.sqm --------- 244 <br />
&nbsp; 23.02.2009 18:52&nbsp; &nbsp; &nbsp; C:\sqmdata14.sqm --------- 268 <br />
&nbsp; 23.02.2009 18:52&nbsp; &nbsp; &nbsp; C:\sqmnoopt14.sqm --------- 244 <br />
&nbsp; 23.02.2009 17:27&nbsp; &nbsp; &nbsp; C:\sqmdata13.sqm --------- 268 <br />
&nbsp; 23.02.2009 17:27&nbsp; &nbsp; &nbsp; C:\sqmnoopt13.sqm --------- 244 <br />
&nbsp; 23.02.2009 16:33&nbsp; &nbsp; &nbsp; C:\ctapi_out_gr.txt --------- 0 <br />
&nbsp; 09.02.2009 13:32&nbsp; &nbsp; &nbsp; C:\sqmdata12.sqm --------- 268 <br />
&nbsp; 09.02.2009 13:32&nbsp; &nbsp; &nbsp; C:\sqmnoopt12.sqm --------- 244 <br />
&nbsp; 09.02.2009 07:57&nbsp; &nbsp; &nbsp; C:\sqmdata11.sqm --------- 268 <br />
&nbsp; 09.02.2009 07:57&nbsp; &nbsp; &nbsp; C:\sqmnoopt11.sqm --------- 244 <br />
&nbsp; 08.02.2009 21:26&nbsp; &nbsp; &nbsp; C:\sqmdata10.sqm --------- 268 <br />
&nbsp; 08.02.2009 21:26&nbsp; &nbsp; &nbsp; C:\sqmnoopt10.sqm --------- 244 <br />
&nbsp; 07.02.2009 13:10&nbsp; &nbsp; &nbsp; C:\sqmdata09.sqm --------- 268 <br />
&nbsp; 07.02.2009 13:10&nbsp; &nbsp; &nbsp; C:\sqmnoopt09.sqm --------- 244 <br />
&nbsp; 07.02.2009 09:14&nbsp; &nbsp; &nbsp; C:\sqmdata08.sqm --------- 268 <br />
&nbsp; 07.02.2009 09:14&nbsp; &nbsp; &nbsp; C:\sqmnoopt08.sqm --------- 244 <br />
&nbsp; 06.02.2009 23:01&nbsp; &nbsp; &nbsp; C:\sqmdata07.sqm --------- 268 <br />
&nbsp; 06.02.2009 23:01&nbsp; &nbsp; &nbsp; C:\sqmnoopt07.sqm --------- 244 <br />
&nbsp; 07.01.2009 18:00&nbsp; &nbsp; &nbsp; C:\sqmdata06.sqm --------- 268 <br />
&nbsp; 07.01.2009 18:00&nbsp; &nbsp; &nbsp; C:\sqmnoopt06.sqm --------- 244 <br />
&nbsp; 07.01.2009 13:06&nbsp; &nbsp; &nbsp; C:\sqmdata05.sqm --------- 268 <br />
&nbsp; 07.01.2009 13:06&nbsp; &nbsp; &nbsp; C:\sqmnoopt05.sqm --------- 244 <br />
&nbsp; 07.01.2009 11:11&nbsp; &nbsp; &nbsp; C:\sqmdata04.sqm --------- 268 <br />
&nbsp; 07.01.2009 11:11&nbsp; &nbsp; &nbsp; C:\sqmnoopt04.sqm --------- 244 <br />
&nbsp; 07.01.2009 01:13&nbsp; &nbsp; &nbsp; C:\sqmdata03.sqm --------- 268 <br />
&nbsp; 07.01.2009 01:13&nbsp; &nbsp; &nbsp; C:\sqmnoopt03.sqm --------- 244 <br />
&nbsp; 06.01.2009 19:42&nbsp; &nbsp; &nbsp; C:\sqmdata02.sqm --------- 268 <br />
&nbsp; 06.01.2009 19:42&nbsp; &nbsp; &nbsp; C:\sqmnoopt02.sqm --------- 244 <br />
&nbsp; 14.12.2008 15:23&nbsp; &nbsp; &nbsp; C:\hegames --------- 0 <br />
&nbsp; 29.09.2008 07:31&nbsp; &nbsp; &nbsp; C:\ntldr --------- 251712 <br />
&nbsp; 12.09.2008 13:55&nbsp; &nbsp; &nbsp; C:\INSTALL.LOG --------- 474 <br />
&nbsp; 04.08.2008 16:15&nbsp; &nbsp; &nbsp; C:\Terzio --------- 0 <br />
&nbsp; 17.01.2008 20:02&nbsp; &nbsp; &nbsp; C:\Program Files --------- 0 <br />
&nbsp; 17.01.2008 14:15&nbsp; &nbsp; &nbsp; C:\MSOCache --------- 0 <br />
&nbsp; 17.01.2008 13:58&nbsp; &nbsp; &nbsp; C:\Software --------- 0 <br />
&nbsp; 17.01.2008 13:58&nbsp; &nbsp; &nbsp; C:\boot.ini --------- 223 <br />
&nbsp; 17.01.2008 13:58&nbsp; &nbsp; &nbsp; C:\lang.txt --------- 8572 <br />
&nbsp; 17.01.2008 13:58&nbsp; &nbsp; &nbsp; C:\Dokumente und Einstellungen --------- 0 <br />
&nbsp; 17.01.2008 13:57&nbsp; &nbsp; &nbsp; C:\System Volume Information --------- 0 <br />
&nbsp; 17.01.2008 13:53&nbsp; &nbsp; &nbsp; C:\OEMDRV --------- 0 <br />
&nbsp; 20.08.2004 20:33&nbsp; &nbsp; &nbsp; C:\MSDOS.SYS --------- 0 <br />
&nbsp; 20.08.2004 20:33&nbsp; &nbsp; &nbsp; C:\IO.SYS --------- 0 <br />
&nbsp; 20.08.2004 20:33&nbsp; &nbsp; &nbsp; C:\CONFIG.SYS --------- 0 <br />
&nbsp; 20.08.2004 20:33&nbsp; &nbsp; &nbsp; C:\AUTOEXEC.BAT --------- 0 <br />
&nbsp; 04.08.2004 13:00&nbsp; &nbsp; &nbsp; C:\NTDETECT.COM --------- 47564 <br />
&nbsp; 04.08.2004 13:00&nbsp; &nbsp; &nbsp; C:\bootfont.bin --------- 4952 <br />
----------------------------------------<br />
<br />
&nbsp;<br />
C:\WINDOWS<br />
<br />
&nbsp; 25.01.2010 12:39&nbsp; &nbsp;  C:\WINDOWS\0.log --------- 0 <br />
&nbsp; 25.01.2010 12:39&nbsp; &nbsp;  C:\WINDOWS\ntbtlog.txt --------- 381910 <br />
&nbsp; 25.01.2010 12:39&nbsp; &nbsp;  C:\WINDOWS\bootstat.dat --------- 2048 <br />
&nbsp; 25.01.2010 12:38&nbsp; &nbsp;  C:\WINDOWS\WindowsUpdate.log --------- 1464117 <br />
&nbsp; 25.01.2010 12:38&nbsp; &nbsp;  C:\WINDOWS\SchedLgU.Txt --------- 32624 <br />
&nbsp; 25.01.2010 12:38&nbsp; &nbsp;  C:\WINDOWS\wiaservc.log --------- 50 <br />
&nbsp; 25.01.2010 12:38&nbsp; &nbsp;  C:\WINDOWS\wiadebug.log --------- 216 <br />
&nbsp; 25.01.2010 12:33&nbsp; &nbsp;  C:\WINDOWS\setupapi.log --------- 88846 <br />
&nbsp; 22.01.2010 22:56&nbsp; &nbsp;  C:\WINDOWS\tsoc.log --------- 477248 <br />
&nbsp; 22.01.2010 22:56&nbsp; &nbsp;  C:\WINDOWS\iis6.log --------- 1144048 <br />
&nbsp; 22.01.2010 22:56&nbsp; &nbsp;  C:\WINDOWS\imsins.log --------- 1374 <br />
&nbsp; 22.01.2010 22:56&nbsp; &nbsp;  C:\WINDOWS\tabletoc.log --------- 52765 <br />
&nbsp; 22.01.2010 22:56&nbsp; &nbsp;  C:\WINDOWS\comsetup.log --------- 327373 <br />
&nbsp; 22.01.2010 22:56&nbsp; &nbsp;  C:\WINDOWS\ntdtcsetup.log --------- 196304 <br />
&nbsp; 22.01.2010 22:56&nbsp; &nbsp;  C:\WINDOWS\ocmsn.log --------- 52688 <br />
&nbsp; 22.01.2010 22:56&nbsp; &nbsp;  C:\WINDOWS\KB978207-IE8.log --------- 14323 <br />
&nbsp; 22.01.2010 22:56&nbsp; &nbsp;  C:\WINDOWS\MedCtrOC.log --------- 72821 <br />
&nbsp; 22.01.2010 22:56&nbsp; &nbsp;  C:\WINDOWS\ocgen.log --------- 499781 <br />
&nbsp; 22.01.2010 22:56&nbsp; &nbsp;  C:\WINDOWS\netfxocm.log --------- 181159 <br />
&nbsp; 22.01.2010 22:56&nbsp; &nbsp;  C:\WINDOWS\msgsocm.log --------- 51700 <br />
&nbsp; 22.01.2010 22:56&nbsp; &nbsp;  C:\WINDOWS\FaxSetup.log --------- 1031727 <br />
&nbsp; 22.01.2010 22:56&nbsp; &nbsp;  C:\WINDOWS\msmqinst.log --------- 321206 <br />
&nbsp; 22.01.2010 22:56&nbsp; &nbsp;  C:\WINDOWS\updspapi.log --------- 198976 <br />
&nbsp; 20.01.2010 22:14&nbsp; &nbsp;  C:\WINDOWS\disney.ini --------- 805 <br />
&nbsp; 20.01.2010 17:19&nbsp; &nbsp;  C:\WINDOWS\NeroDigital.ini --------- 116 <br />
&nbsp; 19.01.2010 21:55&nbsp; &nbsp;  C:\WINDOWS\imsins.BAK --------- 1374 <br />
&nbsp; 19.01.2010 21:55&nbsp; &nbsp;  C:\WINDOWS\KB955759.log --------- 45861 <br />
&nbsp; 19.01.2010 21:54&nbsp; &nbsp;  C:\WINDOWS\KB972270.log --------- 14725 <br />
&nbsp; 15.01.2010 15:23&nbsp; &nbsp;  C:\WINDOWS\wmsetup.log --------- 58614 <br />
&nbsp; 09.12.2009 11:11&nbsp; &nbsp;  C:\WINDOWS\KB970430.log --------- 20139 <br />
&nbsp; 09.12.2009 11:10&nbsp; &nbsp;  C:\WINDOWS\KB974318.log --------- 18573 <br />
&nbsp; 09.12.2009 11:10&nbsp; &nbsp;  C:\WINDOWS\KB976325-IE8.log --------- 15234 <br />
&nbsp; 09.12.2009 11:10&nbsp; &nbsp;  C:\WINDOWS\KB973904.log --------- 9252 <br />
&nbsp; 09.12.2009 11:10&nbsp; &nbsp;  C:\WINDOWS\KB974392.log --------- 13762 <br />
&nbsp; 09.12.2009 11:10&nbsp; &nbsp;  C:\WINDOWS\KB971737.log --------- 13587 <br />
&nbsp; 03.12.2009 18:59&nbsp; &nbsp;  C:\WINDOWS\setupapi.log.0.old --------- 1031746 <br />
&nbsp; 25.11.2009 08:39&nbsp; &nbsp;  C:\WINDOWS\KB976098-v2.log --------- 4233 <br />
&nbsp; 25.11.2009 08:39&nbsp; &nbsp;  C:\WINDOWS\KB973687.log --------- 8413 <br />
&nbsp; 18.11.2009 13:58&nbsp; &nbsp;  C:\WINDOWS\Directx.log --------- 254324 <br />
&nbsp; 18.11.2009 13:58&nbsp; &nbsp;  C:\WINDOWS\KB954708.log --------- 1194 <br />
&nbsp; 11.11.2009 16:14&nbsp; &nbsp;  C:\WINDOWS\KB969947.log --------- 13064 <br />
&nbsp; 05.11.2009 21:52&nbsp; &nbsp;  C:\WINDOWS\Sobotta.ntz --------- 338 <br />
&nbsp; 04.11.2009 08:25&nbsp; &nbsp;  C:\WINDOWS\KB976749-IE8.log --------- 8584 <br />
&nbsp; 23.10.2009 15:27&nbsp; &nbsp;  C:\WINDOWS\hegames.ini --------- 642 <br />
&nbsp; 22.10.2009 21:20&nbsp; &nbsp;  C:\WINDOWS\KB974455-IE8.log --------- 15942 <br />
&nbsp; 16.10.2009 15:57&nbsp; &nbsp;  C:\WINDOWS\KB958869.log --------- 5784 <br />
&nbsp; 16.10.2009 15:55&nbsp; &nbsp;  C:\WINDOWS\KB969059.log --------- 13550 <br />
&nbsp; 16.10.2009 15:55&nbsp; &nbsp;  C:\WINDOWS\KB954155.log --------- 7216 <br />
&nbsp; 16.10.2009 15:55&nbsp; &nbsp;  C:\WINDOWS\KB974112.log --------- 13555 <br />
&nbsp; 16.10.2009 15:55&nbsp; &nbsp;  C:\WINDOWS\KB975025.log --------- 13488 <br />
&nbsp; 16.10.2009 15:55&nbsp; &nbsp;  C:\WINDOWS\KB974571.log --------- 13859 <br />
&nbsp; 16.10.2009 15:53&nbsp; &nbsp;  C:\WINDOWS\KB971486.log --------- 9400 <br />
&nbsp; 16.10.2009 15:53&nbsp; &nbsp;  C:\WINDOWS\KB973525.log --------- 7763 <br />
&nbsp; 16.10.2009 15:53&nbsp; &nbsp;  C:\WINDOWS\KB975467.log --------- 13680 <br />
&nbsp; 22.09.2009 08:33&nbsp; &nbsp;  C:\WINDOWS\KB971961-IE8.log --------- 7477 <br />
&nbsp; 21.09.2009 06:34&nbsp; &nbsp;  C:\WINDOWS\spupdsvc.log --------- 83898 <br />
&nbsp; 21.09.2009 06:30&nbsp; &nbsp;  C:\WINDOWS\ie8_main.log --------- 65183 <br />
&nbsp; 21.09.2009 06:30&nbsp; &nbsp;  C:\WINDOWS\KB973874-IE8.log --------- 32846 <br />
&nbsp; 21.09.2009 06:30&nbsp; &nbsp;  C:\WINDOWS\KB972260-IE8.log --------- 43548 <br />
&nbsp; 21.09.2009 06:29&nbsp; &nbsp;  C:\WINDOWS\ie8.log --------- 43729 <br />
&nbsp; 13.09.2009 18:40&nbsp; &nbsp;  C:\WINDOWS\BlendSettings.ini --------- 23 <br />
&nbsp; 12.09.2009 12:15&nbsp; &nbsp;  C:\WINDOWS\setupact.log --------- 212181 <br />
&nbsp; 10.09.2009 09:04&nbsp; &nbsp;  C:\WINDOWS\KB968816.log --------- 34495 <br />
&nbsp; 10.09.2009 09:04&nbsp; &nbsp;  C:\WINDOWS\KB956844.log --------- 35434 <br />
&nbsp; 10.09.2009 09:03&nbsp; &nbsp;  C:\WINDOWS\KB971961.log --------- 7463 <br />
&nbsp; 26.08.2009 10:51&nbsp; &nbsp;  C:\WINDOWS\KB970653-v3.log --------- 3804 <br />
&nbsp; 17.08.2009 08:23&nbsp; &nbsp;  C:\WINDOWS\KB961118.log --------- 5479 <br />
&nbsp; 16.08.2009 11:41&nbsp; &nbsp;  C:\WINDOWS\KB968389.log --------- 23901 <br />
&nbsp; 13.08.2009 11:07&nbsp; &nbsp;  C:\WINDOWS\KB960859.log --------- 13611 <br />
&nbsp; 13.08.2009 11:07&nbsp; &nbsp;  C:\WINDOWS\KB971657.log --------- 13554 <br />
&nbsp; 13.08.2009 11:07&nbsp; &nbsp;  C:\WINDOWS\KB971557.log --------- 13054 <br />
&nbsp; 13.08.2009 11:07&nbsp; &nbsp;  C:\WINDOWS\KB956744.log --------- 8309 <br />
&nbsp; 13.08.2009 11:07&nbsp; &nbsp;  C:\WINDOWS\KB973869.log --------- 7918 <br />
&nbsp; 13.08.2009 11:06&nbsp; &nbsp;  C:\WINDOWS\KB973507.log --------- 13643 <br />
&nbsp; 13.08.2009 11:06&nbsp; &nbsp;  C:\WINDOWS\KB973354.log --------- 7516 <br />
&nbsp; 13.08.2009 11:06&nbsp; &nbsp;  C:\WINDOWS\KB973540.log --------- 7000 <br />
&nbsp; 13.08.2009 11:05&nbsp; &nbsp;  C:\WINDOWS\KB973815.log --------- 12756 <br />
&nbsp; 30.07.2009 10:33&nbsp; &nbsp;  C:\WINDOWS\KB972260.log --------- 16140 <br />
&nbsp; 23.07.2009 20:21&nbsp; &nbsp;  C:\WINDOWS\game.ini --------- 281 <br />
&nbsp; 18.07.2009 17:57&nbsp; &nbsp;  C:\WINDOWS\KB973346.log --------- 6919 <br />
&nbsp; 18.07.2009 17:57&nbsp; &nbsp;  C:\WINDOWS\KB971633.log --------- 12296 <br />
&nbsp; 18.07.2009 17:56&nbsp; &nbsp;  C:\WINDOWS\KB961371.log --------- 12531 <br />
&nbsp; 10.07.2009 13:10&nbsp; &nbsp;  C:\WINDOWS\WLXPGSS.SCR --------- 307568 <br />
&nbsp; 11.06.2009 09:08&nbsp; &nbsp;  C:\WINDOWS\KB961501.log --------- 15919 <br />
&nbsp; 11.06.2009 09:08&nbsp; &nbsp;  C:\WINDOWS\KB969897.log --------- 16967 <br />
&nbsp; 11.06.2009 09:08&nbsp; &nbsp;  C:\WINDOWS\KB969898.log --------- 7983 <br />
&nbsp; 11.06.2009 09:07&nbsp; &nbsp;  C:\WINDOWS\KB970238.log --------- 13666 <br />
&nbsp; 11.06.2009 09:07&nbsp; &nbsp;  C:\WINDOWS\KB968537.log --------- 13324 <br />
&nbsp; 01.05.2009 03:42&nbsp; &nbsp;  C:\WINDOWS\spupdsvc.log.1.log --------- 352 <br />
&nbsp; 30.04.2009 22:47&nbsp; &nbsp;  C:\WINDOWS\WgaNotify.log --------- 16065 <br />
&nbsp; 29.04.2009 10:59&nbsp; &nbsp;  C:\WINDOWS\KB961503.log --------- 12304 <br />
&nbsp; 16.04.2009 22:22&nbsp; &nbsp;  C:\WINDOWS\KB959426.log --------- 21720 <br />
&nbsp; 16.04.2009 22:22&nbsp; &nbsp;  C:\WINDOWS\KB961373.log --------- 20395 <br />
&nbsp; 16.04.2009 22:21&nbsp; &nbsp;  C:\WINDOWS\KB956572.log --------- 18314 <br />
&nbsp; 16.04.2009 22:21&nbsp; &nbsp;  C:\WINDOWS\KB952004.log --------- 18040 <br />
&nbsp; 16.04.2009 22:20&nbsp; &nbsp;  C:\WINDOWS\KB960803.log --------- 16517 <br />
&nbsp; 16.04.2009 22:20&nbsp; &nbsp;  C:\WINDOWS\KB963027.log --------- 17219 <br />
&nbsp; 16.04.2009 22:20&nbsp; &nbsp;  C:\WINDOWS\KB923561.log --------- 9817 <br />
&nbsp; 11.03.2009 09:00&nbsp; &nbsp;  C:\WINDOWS\KB960225.log --------- 13145 <br />
&nbsp; 11.03.2009 08:59&nbsp; &nbsp;  C:\WINDOWS\KB938464-v2.log --------- 5317 <br />
&nbsp; 11.03.2009 08:59&nbsp; &nbsp;  C:\WINDOWS\KB958690.log --------- 13119 <br />
&nbsp; 11.03.2009 08:59&nbsp; &nbsp;  C:\WINDOWS\KB959772.log --------- 4606 <br />
&nbsp; 25.02.2009 08:56&nbsp; &nbsp;  C:\WINDOWS\KB967715.log --------- 13449 <br />
&nbsp; 12.02.2009 10:16&nbsp; &nbsp;  C:\WINDOWS\KB960715.log --------- 6958 <br />
&nbsp; 14.01.2009 08:26&nbsp; &nbsp;  C:\WINDOWS\KB958687.log --------- 7655 <br />
&nbsp; 30.12.2008 23:44&nbsp; &nbsp;  C:\WINDOWS\eReg.dat --------- 618 <br />
&nbsp; 18.12.2008 07:55&nbsp; &nbsp;  C:\WINDOWS\KB960714.log --------- 8452 <br />
&nbsp; 10.12.2008 23:05&nbsp; &nbsp;  C:\WINDOWS\KB955839.log --------- 28883 <br />
&nbsp; 10.12.2008 23:05&nbsp; &nbsp;  C:\WINDOWS\KB958215.log --------- 10592 <br />
&nbsp; 10.12.2008 23:05&nbsp; &nbsp;  C:\WINDOWS\KB952069.log --------- 10706 <br />
&nbsp; 10.12.2008 23:04&nbsp; &nbsp;  C:\WINDOWS\KB954600.log --------- 7719 <br />
&nbsp; 10.12.2008 23:04&nbsp; &nbsp;  C:\WINDOWS\KB956802.log --------- 13439 <br />
&nbsp; 12.11.2008 21:45&nbsp; &nbsp;  C:\WINDOWS\KB957097.log --------- 8010 <br />
&nbsp; 12.11.2008 21:45&nbsp; &nbsp;  C:\WINDOWS\KB954459.log --------- 12691 <br />
&nbsp; 12.11.2008 21:45&nbsp; &nbsp;  C:\WINDOWS\KB955069.log --------- 8349 <br />
&nbsp; 23.10.2008 19:47&nbsp; &nbsp;  C:\WINDOWS\KB958644.log --------- 8271 <br />
&nbsp; 15.10.2008 07:54&nbsp; &nbsp;  C:\WINDOWS\KB956803.log --------- 9847 <br />
&nbsp; 15.10.2008 07:54&nbsp; &nbsp;  C:\WINDOWS\KB956391.log --------- 9326 <br />
&nbsp; 15.10.2008 07:54&nbsp; &nbsp;  C:\WINDOWS\KB957095.log --------- 9845 <br />
&nbsp; 15.10.2008 07:54&nbsp; &nbsp;  C:\WINDOWS\KB954211.log --------- 9660 <br />
&nbsp; 15.10.2008 07:54&nbsp; &nbsp;  C:\WINDOWS\KB956841.log --------- 10601 <br />
&nbsp; 15.10.2008 07:53&nbsp; &nbsp;  C:\WINDOWS\KB956390.log --------- 15796 <br />
&nbsp; 29.09.2008 13:33&nbsp; &nbsp;  C:\WINDOWS\KB951978.log --------- 13694 <br />
&nbsp; 29.09.2008 07:41&nbsp; &nbsp;  C:\WINDOWS\DPINST.LOG --------- 19764 <br />
&nbsp; 29.09.2008 07:41&nbsp; &nbsp;  C:\WINDOWS\DtcInstall.log --------- 867 <br />
&nbsp; 29.09.2008 07:40&nbsp; &nbsp;  C:\WINDOWS\OEWABLog.txt --------- 1519 <br />
&nbsp; 29.09.2008 07:40&nbsp; &nbsp;  C:\WINDOWS\setuplog.txt --------- 852297 <br />
&nbsp; 29.09.2008 07:38&nbsp; &nbsp;  C:\WINDOWS\svcpack.log --------- 521339 <br />
&nbsp; 29.09.2008 07:38&nbsp; &nbsp;  C:\WINDOWS\KB953838.log --------- 234134 <br />
&nbsp; 29.09.2008 07:38&nbsp; &nbsp;  C:\WINDOWS\KB952954.log --------- 211724 <br />
&nbsp; 29.09.2008 07:38&nbsp; &nbsp;  C:\WINDOWS\KB952287.log --------- 204462 <br />
&nbsp; 29.09.2008 07:38&nbsp; &nbsp;  C:\WINDOWS\KB951748.log --------- 214267 <br />
&nbsp; 29.09.2008 07:38&nbsp; &nbsp;  C:\WINDOWS\KB951698.log --------- 209284 <br />
&nbsp; 29.09.2008 07:38&nbsp; &nbsp;  C:\WINDOWS\KB951376-v2.log --------- 202088 <br />
&nbsp; 29.09.2008 07:38&nbsp; &nbsp;  C:\WINDOWS\KB951376.log --------- 201746 <br />
&nbsp; 29.09.2008 07:37&nbsp; &nbsp;  C:\WINDOWS\KB951072-v2.log --------- 31502 <br />
&nbsp; 29.09.2008 07:37&nbsp; &nbsp;  C:\WINDOWS\KB951066.log --------- 205323 <br />
&nbsp; 29.09.2008 07:37&nbsp; &nbsp;  C:\WINDOWS\KB950974.log --------- 211167 <br />
&nbsp; 29.09.2008 07:37&nbsp; &nbsp;  C:\WINDOWS\KB950762.log --------- 204869 <br />
&nbsp; 29.09.2008 07:37&nbsp; &nbsp;  C:\WINDOWS\KB950759.log --------- 232131 <br />
&nbsp; 29.09.2008 07:37&nbsp; &nbsp;  C:\WINDOWS\KB946648.log --------- 205200 <br />
&nbsp; 29.09.2008 07:37&nbsp; &nbsp;  C:\WINDOWS\KB938464.log --------- 200813 <br />
&nbsp; 29.09.2008 07:35&nbsp; &nbsp;  C:\WINDOWS\cmsetacl.log --------- 373 <br />
&nbsp; 29.09.2008 07:35&nbsp; &nbsp;  C:\WINDOWS\sessmgr.setup.log --------- 3652 <br />
&nbsp; 11.09.2008 18:00&nbsp; &nbsp;  C:\WINDOWS\win.ini --------- 549 <br />
&nbsp; 10.09.2008 12:37&nbsp; &nbsp;  C:\WINDOWS\KB954154.log --------- 4170 <br />
&nbsp; 14.08.2008 08:16&nbsp; &nbsp;  C:\WINDOWS\KB953839.log --------- 10626 <br />
&nbsp; 30.06.2008 19:47&nbsp; &nbsp;  C:\WINDOWS\oscar2.txt --------- 33 <br />
&nbsp; 11.06.2008 06:22&nbsp; &nbsp;  C:\WINDOWS\KB950760.log --------- 7116 <br />
&nbsp; 13.05.2008 22:42&nbsp; &nbsp;  C:\WINDOWS\KB950749.log --------- 14956 <br />
&nbsp; 14.04.2008 03:23&nbsp; &nbsp;  C:\WINDOWS\winhlp32.exe --------- 288768 <br />
&nbsp; 14.04.2008 03:23&nbsp; &nbsp;  C:\WINDOWS\slrundll.exe --------- 32866 <br />
&nbsp; 14.04.2008 03:22&nbsp; &nbsp;  C:\WINDOWS\regedit.exe --------- 153600 <br />
&nbsp; 14.04.2008 03:22&nbsp; &nbsp;  C:\WINDOWS\notepad.exe --------- 70144 <br />
&nbsp; 14.04.2008 03:22&nbsp; &nbsp;  C:\WINDOWS\hh.exe --------- 10752 <br />
&nbsp; 14.04.2008 03:22&nbsp; &nbsp;  C:\WINDOWS\explorer.exe --------- 1036800 <br />
&nbsp; 14.04.2008 03:22&nbsp; &nbsp;  C:\WINDOWS\twain_32.dll --------- 50688 <br />
&nbsp; 09.04.2008 20:04&nbsp; &nbsp;  C:\WINDOWS\KB948881.log --------- 11677 <br />
&nbsp; 09.04.2008 20:03&nbsp; &nbsp;  C:\WINDOWS\KB947864.log --------- 35333 <br />
&nbsp; 09.04.2008 20:03&nbsp; &nbsp;  C:\WINDOWS\KB941693.log --------- 13865 <br />
&nbsp; 09.04.2008 20:03&nbsp; &nbsp;  C:\WINDOWS\KB948590.log --------- 13670 <br />
&nbsp; 09.04.2008 20:03&nbsp; &nbsp;  C:\WINDOWS\KB944338.log --------- 14355 <br />
&nbsp; 09.04.2008 20:03&nbsp; &nbsp;  C:\WINDOWS\KB945553.log --------- 13614 <br />
&nbsp; 26.03.2008 21:49&nbsp; &nbsp;  C:\WINDOWS\KB929399.log --------- 4896 <br />
&nbsp; 26.03.2008 21:49&nbsp; &nbsp;  C:\WINDOWS\KB939683.log --------- 4625 <br />
&nbsp; 26.03.2008 21:49&nbsp; &nbsp;  C:\WINDOWS\KB936782.log --------- 19272 <br />
&nbsp; 26.03.2008 12:57&nbsp; &nbsp;  C:\WINDOWS\KB941569.log --------- 25668 <br />
&nbsp; 26.03.2008 10:54&nbsp; &nbsp;  C:\WINDOWS\wmsetup10.log --------- 512 <br />
&nbsp; 26.03.2008 10:53&nbsp; &nbsp;  C:\WINDOWS\KB926239.log --------- 8057 <br />
&nbsp; 26.03.2008 10:52&nbsp; &nbsp;  C:\WINDOWS\MSCompPackV1.log --------- 4488 <br />
&nbsp; 26.03.2008 10:52&nbsp; &nbsp;  C:\WINDOWS\wmp11.log --------- 14470 <br />
&nbsp; 26.03.2008 10:52&nbsp; &nbsp;  C:\WINDOWS\WMFDist11.log --------- 22285 <br />
&nbsp; 26.03.2008 10:51&nbsp; &nbsp;  C:\WINDOWS\WMSysPr9.prx --------- 316640 <br />
&nbsp; 26.03.2008 10:51&nbsp; &nbsp;  C:\WINDOWS\Wudf01000Inst.log --------- 7307 <br />
&nbsp; 16.02.2008 20:58&nbsp; &nbsp;  C:\WINDOWS\KB946026.log --------- 15307 <br />
&nbsp; 16.02.2008 20:58&nbsp; &nbsp;  C:\WINDOWS\KB944533.log --------- 32997 <br />
&nbsp; 16.02.2008 20:58&nbsp; &nbsp;  C:\WINDOWS\KB943055.log --------- 12263 <br />
&nbsp; 17.01.2008 22:52&nbsp; &nbsp;  C:\WINDOWS\PE_LOG.TXT.BAK --------- 319320 <br />
&nbsp; 17.01.2008 21:33&nbsp; &nbsp;  C:\WINDOWS\KB923689.log --------- 56905 <br />
&nbsp; 17.01.2008 20:02&nbsp; &nbsp;  C:\WINDOWS\hpinfo.lnk --------- 778 <br />
&nbsp; 17.01.2008 17:31&nbsp; &nbsp;  C:\WINDOWS\KB946627.log --------- 7291 <br />
&nbsp; 17.01.2008 17:30&nbsp; &nbsp;  C:\WINDOWS\KB892130.log --------- 5367 <br />
&nbsp; 17.01.2008 16:16&nbsp; &nbsp;  C:\WINDOWS\ODBC.INI --------- 400 <br />
&nbsp; 17.01.2008 16:04&nbsp; &nbsp;  C:\WINDOWS\KB899587.log --------- 29512 <br />
&nbsp; 17.01.2008 16:04&nbsp; &nbsp;  C:\WINDOWS\KB943460.log --------- 20321 <br />
&nbsp; 17.01.2008 16:03&nbsp; &nbsp;  C:\WINDOWS\KB937894.log --------- 28693 <br />
&nbsp; 17.01.2008 16:03&nbsp; &nbsp;  C:\WINDOWS\KB942840.log --------- 28254 <br />
&nbsp; 17.01.2008 16:03&nbsp; &nbsp;  C:\WINDOWS\KB933729.log --------- 19749 <br />
&nbsp; 17.01.2008 16:03&nbsp; &nbsp;  C:\WINDOWS\KB923980.log --------- 26964 <br />
&nbsp; 17.01.2008 16:03&nbsp; &nbsp;  C:\WINDOWS\KB936021.log --------- 26367 <br />
&nbsp; 17.01.2008 16:03&nbsp; &nbsp;  C:\WINDOWS\KB938828.log --------- 25874 <br />
&nbsp; 17.01.2008 16:03&nbsp; &nbsp;  C:\WINDOWS\KB900485.log --------- 26194 <br />
&nbsp; 17.01.2008 16:03&nbsp; &nbsp;  C:\WINDOWS\KB924270.log --------- 25609 <br />
&nbsp; 17.01.2008 16:02&nbsp; &nbsp;  C:\WINDOWS\KB941644.log --------- 24539 <br />
&nbsp; 17.01.2008 16:02&nbsp; &nbsp;  C:\WINDOWS\KB921503.log --------- 24359 <br />
&nbsp; 17.01.2008 16:02&nbsp; &nbsp;  C:\WINDOWS\KB938829.log --------- 24154 <br />
&nbsp; 17.01.2008 16:02&nbsp; &nbsp;  C:\WINDOWS\KB925398.log --------- 14208 <br />
&nbsp; 17.01.2008 16:01&nbsp; &nbsp;  C:\WINDOWS\KB942763.log --------- 33975 <br />
&nbsp; 17.01.2008 16:01&nbsp; &nbsp;  C:\WINDOWS\KB905414.log --------- 22396 <br />
&nbsp; 17.01.2008 16:01&nbsp; &nbsp;  C:\WINDOWS\KB923191.log --------- 19131 <br />
&nbsp; 17.01.2008 16:01&nbsp; &nbsp;  C:\WINDOWS\KB941202.log --------- 20907 <br />
&nbsp; 17.01.2008 16:01&nbsp; &nbsp;  C:\WINDOWS\KB941568.log --------- 20903 <br />
&nbsp; 17.01.2008 16:01&nbsp; &nbsp;  C:\WINDOWS\KB938127.log --------- 21480 <br />
&nbsp; 17.01.2008 16:00&nbsp; &nbsp;  C:\WINDOWS\KB920213.log --------- 21379 <br />
&nbsp; 17.01.2008 16:00&nbsp; &nbsp;  C:\WINDOWS\KB943485.log --------- 21041 <br />
&nbsp; 17.01.2008 16:00&nbsp; &nbsp;  C:\WINDOWS\KB942615.log --------- 40280 <br />
&nbsp; 17.01.2008 16:00&nbsp; &nbsp;  C:\WINDOWS\KB913580.log --------- 18124 <br />
&nbsp; 17.01.2008 16:00&nbsp; &nbsp;  C:\WINDOWS\KB944653.log --------- 16959 <br />
&nbsp; 17.01.2008 15:50&nbsp; &nbsp;  C:\WINDOWS\KB898461.log --------- 9159 <br />
&nbsp; 17.01.2008 13:58&nbsp; &nbsp;  C:\WINDOWS\zcust.log --------- 1851 <br />
&nbsp; 17.01.2008 13:55&nbsp; &nbsp;  C:\WINDOWS\regopt.log --------- 4108 <br />
&nbsp; 17.01.2008 13:54&nbsp; &nbsp;  C:\WINDOWS\system.ini --------- 231 <br />
&nbsp; 17.01.2008 13:54&nbsp; &nbsp;  C:\WINDOWS\REGLOCS.OLD --------- 8192 <br />
&nbsp; 18.07.2007 12:30&nbsp; &nbsp;  C:\WINDOWS\COM+.log --------- 2908 <br />
&nbsp; 18.07.2007 12:30&nbsp; &nbsp;  C:\WINDOWS\smscfg.ini --------- 61 <br />
&nbsp; 18.07.2007 12:20&nbsp; &nbsp;  C:\WINDOWS\KB935840.log --------- 45334 <br />
&nbsp; 18.07.2007 12:20&nbsp; &nbsp;  C:\WINDOWS\KB935839.log --------- 45100 <br />
&nbsp; 18.07.2007 12:20&nbsp; &nbsp;  C:\WINDOWS\KB935448.log --------- 44910 <br />
&nbsp; 18.07.2007 12:19&nbsp; &nbsp;  C:\WINDOWS\KB933566.log --------- 48114 <br />
&nbsp; 18.07.2007 12:19&nbsp; &nbsp;  C:\WINDOWS\KB932168.log --------- 44036 <br />
&nbsp; 18.07.2007 12:19&nbsp; &nbsp;  C:\WINDOWS\KB931836.log --------- 50492 <br />
&nbsp; 18.07.2007 12:19&nbsp; &nbsp;  C:\WINDOWS\KB931784.log --------- 43676 <br />
&nbsp; 18.07.2007 12:19&nbsp; &nbsp;  C:\WINDOWS\KB931261.log --------- 41994 <br />
&nbsp; 18.07.2007 12:18&nbsp; &nbsp;  C:\WINDOWS\KB930916.log --------- 42318 <br />
&nbsp; 18.07.2007 12:18&nbsp; &nbsp;  C:\WINDOWS\KB930178.log --------- 42723 <br />
&nbsp; 18.07.2007 12:18&nbsp; &nbsp;  C:\WINDOWS\KB929969.log --------- 42170 <br />
&nbsp; 18.07.2007 12:18&nbsp; &nbsp;  C:\WINDOWS\KB929338.log --------- 42750 <br />
&nbsp; 18.07.2007 12:18&nbsp; &nbsp;  C:\WINDOWS\KB929123.log --------- 42555 <br />
&nbsp; 18.07.2007 12:18&nbsp; &nbsp;  C:\WINDOWS\KB928843.log --------- 41835 <br />
&nbsp; 18.07.2007 12:18&nbsp; &nbsp;  C:\WINDOWS\KB928388.log --------- 49615 <br />
&nbsp; 18.07.2007 12:17&nbsp; &nbsp;  C:\WINDOWS\KB928255.log --------- 42926 <br />
&nbsp; 18.07.2007 12:17&nbsp; &nbsp;  C:\WINDOWS\KB927891.log --------- 41659 <br />
&nbsp; 18.07.2007 12:17&nbsp; &nbsp;  C:\WINDOWS\KB927802.log --------- 41381 <br />
&nbsp; 18.07.2007 12:17&nbsp; &nbsp;  C:\WINDOWS\KB927779.log --------- 41830 <br />
&nbsp; 18.07.2007 12:17&nbsp; &nbsp;  C:\WINDOWS\KB926436.log --------- 38494 <br />
&nbsp; 18.07.2007 12:17&nbsp; &nbsp;  C:\WINDOWS\KB926255.log --------- 38646 <br />
&nbsp; 18.07.2007 12:17&nbsp; &nbsp;  C:\WINDOWS\KB925902.log --------- 40545 <br />
&nbsp; 18.07.2007 12:16&nbsp; &nbsp;  C:\WINDOWS\KB925720.log --------- 39258 <br />
&nbsp; 18.07.2007 12:16&nbsp; &nbsp;  C:\WINDOWS\KB924667.log --------- 36927 <br />
&nbsp; 18.07.2007 12:16&nbsp; &nbsp;  C:\WINDOWS\KB924191.log --------- 38368 <br />
&nbsp; 18.07.2007 12:16&nbsp; &nbsp;  C:\WINDOWS\KB923723.log --------- 36968 <br />
&nbsp; 18.07.2007 12:16&nbsp; &nbsp;  C:\WINDOWS\KB923414.log --------- 38804 <br />
&nbsp; 18.07.2007 12:16&nbsp; &nbsp;  C:\WINDOWS\KB922819.log --------- 38872 <br />
&nbsp; 18.07.2007 12:15&nbsp; &nbsp;  C:\WINDOWS\KB918118.log --------- 37013 <br />
&nbsp; 18.07.2007 12:15&nbsp; &nbsp;  C:\WINDOWS\KB893357.log --------- 35382 <br />
&nbsp; 18.07.2007 12:15&nbsp; &nbsp;  C:\WINDOWS\KB890046.log --------- 49542 <br />
&nbsp; 18.07.2007 12:15&nbsp; &nbsp;  C:\WINDOWS\KB921337.log --------- 31420 <br />
&nbsp; 18.07.2007 12:15&nbsp; &nbsp;  C:\WINDOWS\KB916595.log --------- 32381 <br />
&nbsp; 18.07.2007 12:14&nbsp; &nbsp;  C:\WINDOWS\KB914389.log --------- 33183 <br />
&nbsp; 18.07.2007 12:14&nbsp; &nbsp;  C:\WINDOWS\KB917953.log --------- 32852 <br />
&nbsp; 18.07.2007 12:14&nbsp; &nbsp;  C:\WINDOWS\KB919007.log --------- 32771 <br />
&nbsp; 18.07.2007 12:14&nbsp; &nbsp;  C:\WINDOWS\KB922582.log --------- 32963 <br />
&nbsp; 18.07.2007 12:14&nbsp; &nbsp;  C:\WINDOWS\KB920872.log --------- 30149 <br />
&nbsp; 18.07.2007 12:13&nbsp; &nbsp;  C:\WINDOWS\KB920685.log --------- 29863 <br />
&nbsp; 18.07.2007 12:13&nbsp; &nbsp;  C:\WINDOWS\KB921398.log --------- 30819 <br />
&nbsp; 18.07.2007 12:13&nbsp; &nbsp;  C:\WINDOWS\KB921883.log --------- 30102 <br />
&nbsp; 18.07.2007 12:13&nbsp; &nbsp;  C:\WINDOWS\KB922616.log --------- 29208 <br />
&nbsp; 18.07.2007 12:13&nbsp; &nbsp;  C:\WINDOWS\KB920670.log --------- 29119 <br />
&nbsp; 18.07.2007 12:13&nbsp; &nbsp;  C:\WINDOWS\KB920683.log --------- 30106 <br />
&nbsp; 18.07.2007 12:12&nbsp; &nbsp;  C:\WINDOWS\KB920214.log --------- 28605 <br />
&nbsp; 18.07.2007 12:12&nbsp; &nbsp;  C:\WINDOWS\KB917422.log --------- 28776 <br />
&nbsp; 18.07.2007 12:12&nbsp; &nbsp;  C:\WINDOWS\KB923232.log --------- 26742 <br />
&nbsp; 18.07.2007 12:12&nbsp; &nbsp;  C:\WINDOWS\KB917537.log --------- 28181 <br />
&nbsp; 18.07.2007 12:12&nbsp; &nbsp;  C:\WINDOWS\KB917159.log --------- 28649 <br />
&nbsp; 18.07.2007 12:12&nbsp; &nbsp;  C:\WINDOWS\KB914388.log --------- 28848 <br />
&nbsp; 18.07.2007 12:11&nbsp; &nbsp;  C:\WINDOWS\KB918439.log --------- 27178 <br />
&nbsp; 18.07.2007 12:11&nbsp; &nbsp;  C:\WINDOWS\KB917344.log --------- 27139 <br />
&nbsp; 18.07.2007 12:11&nbsp; &nbsp;  C:\WINDOWS\KB911280.log --------- 26842 <br />
&nbsp; 18.07.2007 12:11&nbsp; &nbsp;  C:\WINDOWS\KB911567.log --------- 27454 <br />
&nbsp; 18.07.2007 12:11&nbsp; &nbsp;  C:\WINDOWS\KB911562.log --------- 27076 <br />
&nbsp; 18.07.2007 12:11&nbsp; &nbsp;  C:\WINDOWS\KB908531.log --------- 27314 <br />
&nbsp; 18.07.2007 12:11&nbsp; &nbsp;  C:\WINDOWS\KB913446.log --------- 26444 <br />
&nbsp; 18.07.2007 12:10&nbsp; &nbsp;  C:\WINDOWS\KB911927.log --------- 26450 <br />
&nbsp; 18.07.2007 12:10&nbsp; &nbsp;  C:\WINDOWS\KB911565.log --------- 24411 <br />
&nbsp; 18.07.2007 12:10&nbsp; &nbsp;  C:\WINDOWS\KB911564.log --------- 24160 <br />
&nbsp; 18.07.2007 12:10&nbsp; &nbsp;  C:\WINDOWS\KB901190.log --------- 25640 <br />
&nbsp; 18.07.2007 12:10&nbsp; &nbsp;  C:\WINDOWS\KB908519.log --------- 25874 <br />
&nbsp; 18.07.2007 12:10&nbsp; &nbsp;  C:\WINDOWS\KB912919.log --------- 26538 <br />
&nbsp; 18.07.2007 12:10&nbsp; &nbsp;  C:\WINDOWS\KB896424.log --------- 26513 <br />
&nbsp; 18.07.2007 12:10&nbsp; &nbsp;  C:\WINDOWS\KB896256.log --------- 24076 <br />
&nbsp; 18.07.2007 12:09&nbsp; &nbsp;  C:\WINDOWS\KB910728.log --------- 23548 <br />
&nbsp; 18.07.2007 12:09&nbsp; &nbsp;  C:\WINDOWS\KB910437.log --------- 24979 <br />
&nbsp; 18.07.2007 12:09&nbsp; &nbsp;  C:\WINDOWS\KB901017.log --------- 24451 <br />
&nbsp; 18.07.2007 12:09&nbsp; &nbsp;  C:\WINDOWS\KB900725.log --------- 26353 <br />
&nbsp; 18.07.2007 12:09&nbsp; &nbsp;  C:\WINDOWS\KB905749.log --------- 24126 <br />
&nbsp; 18.07.2007 12:09&nbsp; &nbsp;  C:\WINDOWS\KB899589.log --------- 23244 <br />
&nbsp; 18.07.2007 12:08&nbsp; &nbsp;  C:\WINDOWS\KB902400.log --------- 28172 <br />
&nbsp; 18.07.2007 12:08&nbsp; &nbsp;  C:\WINDOWS\KB904706.log --------- 16111 <br />
&nbsp; 18.07.2007 12:08&nbsp; &nbsp;  C:\WINDOWS\KB903235.log --------- 14082 <br />
&nbsp; 18.07.2007 12:08&nbsp; &nbsp;  C:\WINDOWS\KB901214.log --------- 16265 <br />
&nbsp; 18.07.2007 12:08&nbsp; &nbsp;  C:\WINDOWS\KB899591.log --------- 16668 <br />
&nbsp; 18.07.2007 12:08&nbsp; &nbsp;  C:\WINDOWS\KB899588.log --------- 16555 <br />
&nbsp; 18.07.2007 12:07&nbsp; &nbsp;  C:\WINDOWS\KB898458.log --------- 14003 <br />
&nbsp; 18.07.2007 12:07&nbsp; &nbsp;  C:\WINDOWS\KB896428.log --------- 15468 <br />
&nbsp; 18.07.2007 12:07&nbsp; &nbsp;  C:\WINDOWS\KB896423.log --------- 16152 <br />
&nbsp; 18.07.2007 12:07&nbsp; &nbsp;  C:\WINDOWS\KB896422.log --------- 15190 <br />
&nbsp; 18.07.2007 12:07&nbsp; &nbsp;  C:\WINDOWS\KB896358.log --------- 15812 <br />
&nbsp; 18.07.2007 12:07&nbsp; &nbsp;  C:\WINDOWS\KB893803v2.log --------- 14699 <br />
&nbsp; 18.07.2007 12:07&nbsp; &nbsp;  C:\WINDOWS\KB893086.log --------- 15474 <br />
&nbsp; 18.07.2007 12:06&nbsp; &nbsp;  C:\WINDOWS\KB893756.log --------- 15199 <br />
&nbsp; 18.07.2007 12:06&nbsp; &nbsp;  C:\WINDOWS\KB893066.log --------- 15006 <br />
&nbsp; 18.07.2007 12:06&nbsp; &nbsp;  C:\WINDOWS\KB891781.log --------- 14161 <br />
&nbsp; 18.07.2007 12:06&nbsp; &nbsp;  C:\WINDOWS\KB890859.log --------- 16229 <br />
&nbsp; 18.07.2007 12:06&nbsp; &nbsp;  C:\WINDOWS\KB890175.log --------- 12124 <br />
&nbsp; 18.07.2007 12:06&nbsp; &nbsp;  C:\WINDOWS\KB890047.log --------- 12336 <br />
&nbsp; 18.07.2007 12:05&nbsp; &nbsp;  C:\WINDOWS\KB889673.log --------- 9328 <br />
&nbsp; 18.07.2007 12:05&nbsp; &nbsp;  C:\WINDOWS\KB888302.log --------- 10547 <br />
&nbsp; 18.07.2007 12:05&nbsp; &nbsp;  C:\WINDOWS\KB888113.log --------- 10228 <br />
&nbsp; 18.07.2007 12:05&nbsp; &nbsp;  C:\WINDOWS\KB887472.log --------- 10102 <br />
&nbsp; 18.07.2007 12:05&nbsp; &nbsp;  C:\WINDOWS\KB886185.log --------- 10450 <br />
&nbsp; 18.07.2007 12:05&nbsp; &nbsp;  C:\WINDOWS\KB885894.log --------- 10229 <br />
&nbsp; 18.07.2007 12:04&nbsp; &nbsp;  C:\WINDOWS\KB885836.log --------- 8098 <br />
&nbsp; 18.07.2007 12:04&nbsp; &nbsp;  C:\WINDOWS\KB885835.log --------- 8574 <br />
&nbsp; 18.07.2007 12:04&nbsp; &nbsp;  C:\WINDOWS\KB885250.log --------- 8067 <br />
&nbsp; 18.07.2007 12:04&nbsp; &nbsp;  C:\WINDOWS\KB873339.log --------- 7755 <br />
&nbsp; 18.07.2007 12:04&nbsp; &nbsp;  C:\WINDOWS\KB873333.log --------- 8327 <br />
&nbsp; 18.07.2007 12:02&nbsp; &nbsp;  C:\WINDOWS\KB883667.log --------- 3730 <br />
&nbsp; 18.07.2007 12:01&nbsp; &nbsp;  C:\WINDOWS\KB888111.log --------- 3677 <br />
&nbsp; 11.07.2007 15:09&nbsp; &nbsp;  C:\WINDOWS\FixCamera.exe --------- 20480 <br />
&nbsp; 13.06.2007 13:49&nbsp; &nbsp;  C:\WINDOWS\RTHDCPL.EXE --------- 16377344 <br />
&nbsp; 28.05.2007 19:39&nbsp; &nbsp;  C:\WINDOWS\SkyTel.exe --------- 1826816 <br />
&nbsp; 10.05.2007 12:18&nbsp; &nbsp;  C:\WINDOWS\vsnp325.exe --------- 835584 <br />
&nbsp; 25.04.2007 15:55&nbsp; &nbsp;  C:\WINDOWS\MicCal.exe --------- 2162688 <br />
&nbsp; 21.04.2007 08:36&nbsp; &nbsp;  C:\WINDOWS\tsnp325.exe --------- 270336 <br />
&nbsp; 23.03.2007 18:19&nbsp; &nbsp;  C:\WINDOWS\RTLCPL.EXE --------- 9715200 <br />
&nbsp; 16.01.2007 09:39&nbsp; &nbsp;  C:\WINDOWS\RtlUpd.exe --------- 1191936 <br />
&nbsp; 28.12.2006 20:01&nbsp; &nbsp;  C:\WINDOWS\002984_.tmp --------- 19569 <br />
&nbsp; 21.07.2006 15:14&nbsp; &nbsp;  C:\WINDOWS\SOUNDMAN.EXE --------- 86016 <br />
&nbsp; 14.07.2006 16:29&nbsp; &nbsp;  C:\WINDOWS\UNNeroVision.exe --------- 966656 <br />
&nbsp; 14.07.2006 16:29&nbsp; &nbsp;  C:\WINDOWS\UNNeroShowTime.exe --------- 966656 <br />
&nbsp; 14.07.2006 16:29&nbsp; &nbsp;  C:\WINDOWS\UNRecode.exe --------- 966656 <br />
&nbsp; 14.07.2006 16:29&nbsp; &nbsp;  C:\WINDOWS\UNNeroMediaHome.exe --------- 966656 <br />
&nbsp; 03.07.2006 09:31&nbsp; &nbsp;  C:\WINDOWS\amcap.exe --------- 94208 <br />
&nbsp; 04.05.2006 15:26&nbsp; &nbsp;  C:\WINDOWS\ALCWZRD.EXE --------- 2808832 <br />
&nbsp; 15.09.2005 13:35&nbsp; &nbsp;  C:\WINDOWS\UNNeroMediaHome.cfg --------- 50 <br />
&nbsp; 30.08.2005 20:37&nbsp; &nbsp;  C:\WINDOWS\UNNeroVision.cfg --------- 50 <br />
&nbsp; 30.08.2005 20:37&nbsp; &nbsp;  C:\WINDOWS\UNNeroShowTime.cfg --------- 50 <br />
&nbsp; 30.08.2005 20:36&nbsp; &nbsp;  C:\WINDOWS\UNRecode.cfg --------- 50 <br />
&nbsp; 03.05.2005 17:43&nbsp; &nbsp;  C:\WINDOWS\ALCMTR.EXE --------- 69632 <br />
&nbsp; 20.08.2004 21:25&nbsp; &nbsp;  C:\WINDOWS\Sti_Trace.log --------- 0 <br />
&nbsp; 20.08.2004 21:21&nbsp; &nbsp;  C:\WINDOWS\setuperr.log --------- 0 <br />
&nbsp; 20.08.2004 20:46&nbsp; &nbsp;  C:\WINDOWS\orun32.isu --------- 210415 <br />
&nbsp; 20.08.2004 20:46&nbsp; &nbsp;  C:\WINDOWS\orun32.ini --------- 849 <br />
&nbsp; 20.08.2004 20:33&nbsp; &nbsp;  C:\WINDOWS\control.ini --------- 0 <br />
&nbsp; 20.08.2004 20:32&nbsp; &nbsp;  C:\WINDOWS\ODBCINST.INI --------- 4161 <br />
&nbsp; 20.08.2004 20:30&nbsp; &nbsp;  C:\WINDOWS\WindowsShell.Manifest --------- 749 <br />
&nbsp; 20.08.2004 20:28&nbsp; &nbsp;  C:\WINDOWS\vbaddin.ini --------- 37 <br />
&nbsp; 20.08.2004 20:28&nbsp; &nbsp;  C:\WINDOWS\vb.ini --------- 36 <br />
&nbsp; 04.08.2004 13:00&nbsp; &nbsp;  C:\WINDOWS\F„cher.bmp --------- 26680 <br />
&nbsp; 04.08.2004 13:00&nbsp; &nbsp;  C:\WINDOWS\desktop.ini --------- 2 <br />
&nbsp; 04.08.2004 13:00&nbsp; &nbsp;  C:\WINDOWS\Granit.bmp --------- 26582 <br />
&nbsp; 04.08.2004 13:00&nbsp; &nbsp;  C:\WINDOWS\twain.dll --------- 94800 <br />
&nbsp; 04.08.2004 13:00&nbsp; &nbsp;  C:\WINDOWS\twunk_32.exe --------- 25600 <br />
&nbsp; 04.08.2004 13:00&nbsp; &nbsp;  C:\WINDOWS\Zapotek.bmp --------- 9522 <br />
&nbsp; 04.08.2004 13:00&nbsp; &nbsp;  C:\WINDOWS\Seifenblase.bmp --------- 65978 <br />
&nbsp; 04.08.2004 13:00&nbsp; &nbsp;  C:\WINDOWS\Kaffeetasse.bmp --------- 17062 <br />
&nbsp; 04.08.2004 13:00&nbsp; &nbsp;  C:\WINDOWS\TASKMAN.EXE --------- 15872 <br />
&nbsp; 04.08.2004 13:00&nbsp; &nbsp;  C:\WINDOWS\explorer.scf --------- 80 <br />
&nbsp; 04.08.2004 13:00&nbsp; &nbsp;  C:\WINDOWS\twunk_16.exe --------- 49680 <br />
&nbsp; 04.08.2004 13:00&nbsp; &nbsp;  C:\WINDOWS\vmmreg32.dll --------- 18944 <br />
&nbsp; 04.08.2004 13:00&nbsp; &nbsp;  C:\WINDOWS\Santa Fe-Stuck.bmp --------- 65832 <br />
&nbsp; 04.08.2004 13:00&nbsp; &nbsp;  C:\WINDOWS\wmprfDEU.prx --------- 34818 <br />
&nbsp; 04.08.2004 13:00&nbsp; &nbsp;  C:\WINDOWS\clock.avi --------- 82944 <br />
&nbsp; 04.08.2004 13:00&nbsp; &nbsp;  C:\WINDOWS\Blaue Spitzen 16.bmp --------- 1272 <br />
&nbsp; 04.08.2004 13:00&nbsp; &nbsp;  C:\WINDOWS\Angler.bmp --------- 17336 <br />
&nbsp; 04.08.2004 13:00&nbsp; &nbsp;  C:\WINDOWS\msdfmap.ini --------- 1405 <br />
&nbsp; 04.08.2004 13:00&nbsp; &nbsp;  C:\WINDOWS\Rhododendron.bmp --------- 17362 <br />
&nbsp; 04.08.2004 13:00&nbsp; &nbsp;  C:\WINDOWS\winhelp.exe --------- 257568 <br />
&nbsp; 04.08.2004 13:00&nbsp; &nbsp;  C:\WINDOWS\Feder.bmp --------- 16730 <br />
&nbsp; 04.08.2004 13:00&nbsp; &nbsp;  C:\WINDOWS\winnt.bmp --------- 48680 <br />
&nbsp; 04.08.2004 13:00&nbsp; &nbsp;  C:\WINDOWS\winnt256.bmp --------- 48680 <br />
&nbsp; 04.08.2004 13:00&nbsp; &nbsp;  C:\WINDOWS\Pr„riewind.bmp --------- 65954 <br />
&nbsp; 04.08.2004 13:00&nbsp; &nbsp;  C:\WINDOWS\_default.pif --------- 707 <br />
&nbsp; 27.02.2004 16:36&nbsp; &nbsp;  C:\WINDOWS\snp325.src --------- 13023 <br />
&nbsp; 27.02.2004 16:36&nbsp; &nbsp;  C:\WINDOWS\snp325.ini --------- 15498 <br />
&nbsp; 13.12.2001 16:45&nbsp; &nbsp;  C:\WINDOWS\FSC Message.exe --------- 665826 <br />
&nbsp; 13.12.2001 16:45&nbsp; &nbsp;  C:\WINDOWS\FSC Message.dll --------- 40960 <br />
&nbsp; 13.12.2001 16:45&nbsp; &nbsp;  C:\WINDOWS\FSC Message.scr --------- 348732 <br />
&nbsp; 13.12.2001 16:45&nbsp; &nbsp;  C:\WINDOWS\FSC Message.dat --------- 18192 <br />
&nbsp; 17.11.1998 12:44&nbsp; &nbsp;  C:\WINDOWS\IsUn0407.exe --------- 328704 <br />
&nbsp; 29.10.1998 16:45&nbsp; &nbsp;  C:\WINDOWS\IsUninst.exe --------- 306688 <br />
&nbsp; 16.04.1996 02:43&nbsp; &nbsp;  C:\WINDOWS\PI.EXE --------- 183040 <br />
----------------------------------------<br />
<br />
&nbsp;<br />
C:\WINDOWS\System<br />
<br />
&nbsp;14.04.2008 03:23&nbsp; &nbsp; C:\WINDOWS\System\winspool.drv --------- 146944 <br />
&nbsp;04.08.2004 13:00&nbsp; &nbsp; C:\WINDOWS\System\AVIFILE.DLL --------- 109504 <br />
&nbsp;04.08.2004 13:00&nbsp; &nbsp; C:\WINDOWS\System\COMMDLG.DLL --------- 33744 <br />
&nbsp;04.08.2004 13:00&nbsp; &nbsp; C:\WINDOWS\System\KEYBOARD.DRV --------- 2000 <br />
&nbsp;04.08.2004 13:00&nbsp; &nbsp; C:\WINDOWS\System\LZEXPAND.DLL --------- 9936 <br />
&nbsp;04.08.2004 13:00&nbsp; &nbsp; C:\WINDOWS\System\MCIAVI.DRV --------- 73760 <br />
&nbsp;04.08.2004 13:00&nbsp; &nbsp; C:\WINDOWS\System\MCISEQ.DRV --------- 25296 <br />
&nbsp;04.08.2004 13:00&nbsp; &nbsp; C:\WINDOWS\System\MCIWAVE.DRV --------- 28160 <br />
&nbsp;04.08.2004 13:00&nbsp; &nbsp; C:\WINDOWS\System\MMSYSTEM.DLL --------- 69632 <br />
&nbsp;04.08.2004 13:00&nbsp; &nbsp; C:\WINDOWS\System\MMTASK.TSK --------- 1152 <br />
&nbsp;04.08.2004 13:00&nbsp; &nbsp; C:\WINDOWS\System\MOUSE.DRV --------- 2032 <br />
&nbsp;04.08.2004 13:00&nbsp; &nbsp; C:\WINDOWS\System\AVICAP.DLL --------- 70368 <br />
&nbsp;04.08.2004 13:00&nbsp; &nbsp; C:\WINDOWS\System\OLECLI.DLL --------- 82944 <br />
&nbsp;04.08.2004 13:00&nbsp; &nbsp; C:\WINDOWS\System\OLESVR.DLL --------- 24064 <br />
&nbsp;04.08.2004 13:00&nbsp; &nbsp; C:\WINDOWS\System\setup.inf --------- 59167 <br />
&nbsp;04.08.2004 13:00&nbsp; &nbsp; C:\WINDOWS\System\SHELL.DLL --------- 5120 <br />
&nbsp;04.08.2004 13:00&nbsp; &nbsp; C:\WINDOWS\System\SOUND.DRV --------- 1744 <br />
&nbsp;04.08.2004 13:00&nbsp; &nbsp; C:\WINDOWS\System\stdole.tlb --------- 5532 <br />
&nbsp;04.08.2004 13:00&nbsp; &nbsp; C:\WINDOWS\System\SYSTEM.DRV --------- 3360 <br />
&nbsp;04.08.2004 13:00&nbsp; &nbsp; C:\WINDOWS\System\TAPI.DLL --------- 19200 <br />
&nbsp;04.08.2004 13:00&nbsp; &nbsp; C:\WINDOWS\System\TIMER.DRV --------- 4048 <br />
&nbsp;04.08.2004 13:00&nbsp; &nbsp; C:\WINDOWS\System\VER.DLL --------- 9200 <br />
&nbsp;04.08.2004 13:00&nbsp; &nbsp; C:\WINDOWS\System\VGA.DRV --------- 2176 <br />
&nbsp;04.08.2004 13:00&nbsp; &nbsp; C:\WINDOWS\System\WFWNET.DRV --------- 13600 <br />
&nbsp;04.08.2004 13:00&nbsp; &nbsp; C:\WINDOWS\System\MSVIDEO.DLL --------- 127104 <br />
----------------------------------------<br />
<br />
&nbsp;<br />
C:\WINDOWS\System32<br />
<br />
&nbsp;25.01.2010 12:39&nbsp; &nbsp;  C:\WINDOWS\system32\wpa.dbl --------- 1158 <br />
&nbsp;25.01.2010 12:33&nbsp; &nbsp;  C:\WINDOWS\system32\CatRoot2 --------- 0 <br />
&nbsp;25.01.2010 11:28&nbsp; &nbsp;  C:\WINDOWS\system32\drivers --------- 0 <br />
&nbsp;24.01.2010 22:47&nbsp; &nbsp;  C:\WINDOWS\system32\dllcache --------- 0 <br />
&nbsp;24.01.2010 22:23&nbsp; &nbsp;  C:\WINDOWS\system32\CONFIG.NT --------- 2953 <br />
&nbsp;20.01.2010 17:14&nbsp; &nbsp;  C:\WINDOWS\system32\javaws.exe --------- 149280 <br />
&nbsp;20.01.2010 17:14&nbsp; &nbsp;  C:\WINDOWS\system32\javaw.exe --------- 145184 <br />
&nbsp;20.01.2010 17:14&nbsp; &nbsp;  C:\WINDOWS\system32\javacpl.cpl --------- 73728 <br />
&nbsp;20.01.2010 17:14&nbsp; &nbsp;  C:\WINDOWS\system32\java.exe --------- 145184 <br />
&nbsp;20.01.2010 17:14&nbsp; &nbsp;  C:\WINDOWS\system32\deploytk.dll --------- 411368 <br />
&nbsp;19.01.2010 21:54&nbsp; &nbsp;  C:\WINDOWS\system32\CatRoot --------- 0 <br />
&nbsp;19.01.2010 21:25&nbsp; &nbsp;  C:\WINDOWS\system32\config --------- 0 <br />
&nbsp;19.01.2010 21:24&nbsp; &nbsp;  C:\WINDOWS\system32\wbem --------- 0 <br />
&nbsp;19.01.2010 21:22&nbsp; &nbsp;  C:\WINDOWS\system32\Restore --------- 0 <br />
&nbsp;05.01.2010 01:17&nbsp; &nbsp;  C:\WINDOWS\system32\MRT.exe --------- 29634504 <br />
&nbsp;21.12.2009 20:05&nbsp; &nbsp;  C:\WINDOWS\system32\wininet.dll --------- 916480 <br />
&nbsp;21.12.2009 20:05&nbsp; &nbsp;  C:\WINDOWS\system32\urlmon.dll --------- 1208832 <br />
&nbsp;21.12.2009 20:05&nbsp; &nbsp;  C:\WINDOWS\system32\occache.dll --------- 206848 <br />
&nbsp;21.12.2009 20:05&nbsp; &nbsp;  C:\WINDOWS\system32\mshtml.dll --------- 5942784 <br />
&nbsp;21.12.2009 20:04&nbsp; &nbsp;  C:\WINDOWS\system32\msfeedsbs.dll --------- 55296 <br />
&nbsp;21.12.2009 20:04&nbsp; &nbsp;  C:\WINDOWS\system32\msfeeds.dll --------- 594432 <br />
&nbsp;21.12.2009 20:04&nbsp; &nbsp;  C:\WINDOWS\system32\jsproxy.dll --------- 25600 <br />
&nbsp;21.12.2009 20:04&nbsp; &nbsp;  C:\WINDOWS\system32\inetcpl.cpl --------- 1469440 <br />
&nbsp;21.12.2009 20:04&nbsp; &nbsp;  C:\WINDOWS\system32\iertutil.dll --------- 1985536 <br />
&nbsp;21.12.2009 20:04&nbsp; &nbsp;  C:\WINDOWS\system32\iepeers.dll --------- 184320 <br />
&nbsp;21.12.2009 20:04&nbsp; &nbsp;  C:\WINDOWS\system32\ieframe.dll --------- 11070464 <br />
&nbsp;21.12.2009 20:04&nbsp; &nbsp;  C:\WINDOWS\system32\iedkcs32.dll --------- 387584 <br />
&nbsp;21.12.2009 14:18&nbsp; &nbsp;  C:\WINDOWS\system32\ie4uinit.exe --------- 173056 <br />
&nbsp;09.12.2009 12:31&nbsp; &nbsp;  C:\WINDOWS\system32\perfc009.dat --------- 72354 <br />
&nbsp;09.12.2009 12:31&nbsp; &nbsp;  C:\WINDOWS\system32\perfh009.dat --------- 444478 <br />
&nbsp;09.12.2009 12:31&nbsp; &nbsp;  C:\WINDOWS\system32\perfh007.dat --------- 462984 <br />
&nbsp;09.12.2009 12:31&nbsp; &nbsp;  C:\WINDOWS\system32\perfc007.dat --------- 85890 <br />
&nbsp;09.12.2009 12:31&nbsp; &nbsp;  C:\WINDOWS\system32\PerfStringBackup.INI --------- 1078502 <br />
&nbsp;25.11.2009 08:39&nbsp; &nbsp;  C:\WINDOWS\system32\TZLog.log --------- 819312 <br />
&nbsp;18.11.2009 17:06&nbsp; &nbsp;  C:\WINDOWS\system32\FNTCACHE.DAT --------- 306808 <br />
&nbsp;18.11.2009 14:00&nbsp; &nbsp;  C:\WINDOWS\system32\DRVSTORE --------- 0 <br />
&nbsp;18.11.2009 13:58&nbsp; &nbsp;  C:\WINDOWS\system32\DirectX --------- 0 <br />
&nbsp;28.10.2009 16:07&nbsp; &nbsp;  C:\WINDOWS\system32\tzchange.exe --------- 46080 <br />
&nbsp;21.10.2009 06:38&nbsp; &nbsp;  C:\WINDOWS\system32\strmfilt.dll --------- 75776 <br />
&nbsp;21.10.2009 06:38&nbsp; &nbsp;  C:\WINDOWS\system32\httpapi.dll --------- 25088 <br />
&nbsp;20.10.2009 19:34&nbsp; &nbsp;  C:\WINDOWS\system32\klogon.dll --------- 219664 <br />
&nbsp;15.10.2009 17:28&nbsp; &nbsp;  C:\WINDOWS\system32\t2embed.dll --------- 119808 <br />
&nbsp;15.10.2009 17:28&nbsp; &nbsp;  C:\WINDOWS\system32\fontsub.dll --------- 81920 <br />
&nbsp;13.10.2009 11:32&nbsp; &nbsp;  C:\WINDOWS\system32\oakley.dll --------- 271360 <br />
&nbsp;12.10.2009 14:38&nbsp; &nbsp;  C:\WINDOWS\system32\rastls.dll --------- 150528 <br />
&nbsp;12.10.2009 14:38&nbsp; &nbsp;  C:\WINDOWS\system32\raschap.dll --------- 79872 <br />
&nbsp;21.09.2009 06:33&nbsp; &nbsp;  C:\WINDOWS\system32\de-de --------- 0 <br />
&nbsp;11.09.2009 15:17&nbsp; &nbsp;  C:\WINDOWS\system32\msv1_0.dll --------- 136192 <br />
&nbsp;04.09.2009 22:03&nbsp; &nbsp;  C:\WINDOWS\system32\msasn1.dll --------- 58880 <br />
&nbsp;01.09.2009 15:46&nbsp; &nbsp;  C:\WINDOWS\system32\msaud32.acm --------- 282654 <br />
&nbsp;26.08.2009 09:00&nbsp; &nbsp;  C:\WINDOWS\system32\strmdll.dll --------- 247326 <br />
&nbsp;25.08.2009 10:17&nbsp; &nbsp;  C:\WINDOWS\system32\winhttp.dll --------- 354816 <br />
&nbsp;17.08.2009 22:33&nbsp; &nbsp;  C:\WINDOWS\system32\FM20.DLL --------- 1193832 <br />
&nbsp;16.08.2009 11:45&nbsp; &nbsp;  C:\WINDOWS\system32\XPSViewer --------- 0 <br />
&nbsp;16.08.2009 11:45&nbsp; &nbsp;  C:\WINDOWS\system32\en-US --------- 0 <br />
&nbsp;16.08.2009 11:45&nbsp; &nbsp;  C:\WINDOWS\system32\spool --------- 0 <br />
&nbsp;14.08.2009 16:10&nbsp; &nbsp;  C:\WINDOWS\system32\win32k.sys --------- 1850752 <br />
&nbsp;06.08.2009 18:24&nbsp; &nbsp;  C:\WINDOWS\system32\wuweb.dll --------- 209632 <br />
&nbsp;06.08.2009 18:24&nbsp; &nbsp;  C:\WINDOWS\system32\wucltui.dll --------- 327896 <br />
&nbsp;06.08.2009 18:24&nbsp; &nbsp;  C:\WINDOWS\system32\wuaueng.dll.mui --------- 18144 <br />
&nbsp;06.08.2009 18:24&nbsp; &nbsp;  C:\WINDOWS\system32\wups2.dll --------- 44768 <br />
&nbsp;06.08.2009 18:24&nbsp; &nbsp;  C:\WINDOWS\system32\wups.dll --------- 35552 <br />
&nbsp;06.08.2009 18:24&nbsp; &nbsp;  C:\WINDOWS\system32\wuaucpl.cpl --------- 217816 <br />
&nbsp;06.08.2009 18:24&nbsp; &nbsp;  C:\WINDOWS\system32\wuapi.dll.mui --------- 15584 <br />
&nbsp;06.08.2009 18:24&nbsp; &nbsp;  C:\WINDOWS\system32\wuauclt.exe --------- 53472 <br />
&nbsp;06.08.2009 18:24&nbsp; &nbsp;  C:\WINDOWS\system32\wuaucpl.cpl.mui --------- 15584 <br />
&nbsp;06.08.2009 18:24&nbsp; &nbsp;  C:\WINDOWS\system32\cdm.dll --------- 96480 <br />
&nbsp;06.08.2009 18:24&nbsp; &nbsp;  C:\WINDOWS\system32\wucltui.dll.mui --------- 23264 <br />
&nbsp;06.08.2009 18:23&nbsp; &nbsp;  C:\WINDOWS\system32\wuapi.dll --------- 575704 <br />
&nbsp;06.08.2009 18:23&nbsp; &nbsp;  C:\WINDOWS\system32\muweb.dll --------- 215920 <br />
&nbsp;06.08.2009 18:23&nbsp; &nbsp;  C:\WINDOWS\system32\mucltui.dll --------- 274288 <br />
&nbsp;06.08.2009 18:23&nbsp; &nbsp;  C:\WINDOWS\system32\mucltui.dll.mui --------- 17776 <br />
&nbsp;06.08.2009 18:23&nbsp; &nbsp;  C:\WINDOWS\system32\wuaueng.dll --------- 1929952 <br />
&nbsp;05.08.2009 09:59&nbsp; &nbsp;  C:\WINDOWS\system32\mswebdvd.dll --------- 206336 <br />
&nbsp;04.08.2009 18:26&nbsp; &nbsp;  C:\WINDOWS\system32\ntoskrnl.exe --------- 2147840 <br />
&nbsp;04.08.2009 18:25&nbsp; &nbsp;  C:\WINDOWS\system32\ntkrnlpa.exe --------- 2026496 <br />
&nbsp;31.07.2009 10:02&nbsp; &nbsp;  C:\WINDOWS\system32\msxml6.dll --------- 1372672 <br />
&nbsp;31.07.2009 05:32&nbsp; &nbsp;  C:\WINDOWS\system32\msxml3.dll --------- 1172480 <br />
&nbsp;26.07.2009 16:44&nbsp; &nbsp;  C:\WINDOWS\system32\sirenacm.dll --------- 48448 <br />
&nbsp;18.07.2009 17:03&nbsp; &nbsp;  C:\WINDOWS\system32\shdocvw.dll --------- 1509888 <br />
&nbsp;17.07.2009 20:01&nbsp; &nbsp;  C:\WINDOWS\system32\atl.dll --------- 58880 <br />
&nbsp;17.07.2009 17:15&nbsp; &nbsp;  C:\WINDOWS\system32\query.dll --------- 1441792 <br />
&nbsp;13.07.2009 22:43&nbsp; &nbsp;  C:\WINDOWS\system32\wmpdxm.dll --------- 286208 <br />
&nbsp;13.07.2009 22:43&nbsp; &nbsp;  C:\WINDOWS\system32\wmp.dll --------- 10841088 <br />
&nbsp;29.06.2009 09:40&nbsp; &nbsp;  C:\WINDOWS\system32\ieuinit.inf --------- 57667 <br />
&nbsp;25.06.2009 09:25&nbsp; &nbsp;  C:\WINDOWS\system32\kerberos.dll --------- 301568 <br />
&nbsp;25.06.2009 09:25&nbsp; &nbsp;  C:\WINDOWS\system32\lsasrv.dll --------- 737792 <br />
&nbsp;25.06.2009 09:25&nbsp; &nbsp;  C:\WINDOWS\system32\secur32.dll --------- 56832 <br />
&nbsp;25.06.2009 09:25&nbsp; &nbsp;  C:\WINDOWS\system32\schannel.dll --------- 147456 <br />
&nbsp;25.06.2009 09:25&nbsp; &nbsp;  C:\WINDOWS\system32\wdigest.dll --------- 54272 <br />
&nbsp;22.06.2009 07:45&nbsp; &nbsp;  C:\WINDOWS\system32\jscript.dll --------- 726528 <br />
&nbsp;15.06.2009 11:43&nbsp; &nbsp;  C:\WINDOWS\system32\telnet.exe --------- 78848 <br />
&nbsp;15.06.2009 11:43&nbsp; &nbsp;  C:\WINDOWS\system32\tlntsess.exe --------- 82944 <br />
&nbsp;10.06.2009 15:13&nbsp; &nbsp;  C:\WINDOWS\system32\avifil32.dll --------- 85504 <br />
&nbsp;10.06.2009 08:19&nbsp; &nbsp;  C:\WINDOWS\system32\mstscax.dll --------- 2066432 <br />
&nbsp;10.06.2009 07:14&nbsp; &nbsp;  C:\WINDOWS\system32\wkssvc.dll --------- 132096 <br />
&nbsp;03.06.2009 20:09&nbsp; &nbsp;  C:\WINDOWS\system32\quartz.dll --------- 1296896 <br />
&nbsp;20.05.2009 03:56&nbsp; &nbsp;  C:\WINDOWS\system32\WMVCore.dll --------- 2458112 <br />
&nbsp;07.05.2009 16:32&nbsp; &nbsp;  C:\WINDOWS\system32\localspl.dll --------- 348160 <br />
&nbsp;01.05.2009 19:30&nbsp; &nbsp;  C:\WINDOWS\system32\GPhotos.scr --------- 3366912 <br />
----------------------------------------<br />
<br />
&nbsp;<br />
C:\WINDOWS\Prefetch<br />
<br />
&nbsp;25.01.2010 12:38&nbsp; &nbsp;  C:\WINDOWS\Prefetch\VERCLSID.EXE-3667BD89.pf --------- 21602 <br />
&nbsp;25.01.2010 12:37&nbsp; &nbsp;  C:\WINDOWS\Prefetch\TASKMGR.EXE-20256C55.pf --------- 19494 <br />
&nbsp;25.01.2010 12:37&nbsp; &nbsp;  C:\WINDOWS\Prefetch\IEXPLORE.EXE-2CA9778D.pf --------- 98580 <br />
&nbsp;25.01.2010 12:37&nbsp; &nbsp;  C:\WINDOWS\Prefetch\KLWTBLFS.EXE-1589DB5D.pf --------- 16812 <br />
&nbsp;25.01.2010 12:37&nbsp; &nbsp;  C:\WINDOWS\Prefetch\SVCHOST.EXE-3530F672.pf --------- 20360 <br />
&nbsp;25.01.2010 12:37&nbsp; &nbsp;  C:\WINDOWS\Prefetch\WLTUSER.EXE-231BB668.pf --------- 32978 <br />
&nbsp;25.01.2010 12:37&nbsp; &nbsp;  C:\WINDOWS\Prefetch\NTOSBOOT-B00DFAAD.pf --------- 1638320 <br />
&nbsp;25.01.2010 12:11&nbsp; &nbsp;  C:\WINDOWS\Prefetch\AVP.EXE-1306C698.pf --------- 154710 <br />
&nbsp;25.01.2010 12:11&nbsp; &nbsp;  C:\WINDOWS\Prefetch\WMIPRVSE.EXE-28F301A9.pf --------- 68868 <br />
&nbsp;25.01.2010 12:11&nbsp; &nbsp;  C:\WINDOWS\Prefetch\WUAUCLT.EXE-399A8E72.pf --------- 70500 <br />
&nbsp;25.01.2010 11:59&nbsp; &nbsp;  C:\WINDOWS\Prefetch\MSHTA.EXE-331DF029.pf --------- 57306 <br />
&nbsp;25.01.2010 11:59&nbsp; &nbsp;  C:\WINDOWS\Prefetch\RUNDLL32.EXE-19F507BE.pf --------- 18206 <br />
&nbsp;25.01.2010 11:21&nbsp; &nbsp;  C:\WINDOWS\Prefetch\LOGON.SCR-151EFAEA.pf --------- 9506 <br />
&nbsp;25.01.2010 10:28&nbsp; &nbsp;  C:\WINDOWS\Prefetch\RUNDLL32.EXE-403830BF.pf --------- 45688 <br />
&nbsp;25.01.2010 09:59&nbsp; &nbsp;  C:\WINDOWS\Prefetch\HELPSVC.EXE-2878DDA2.pf --------- 61292 <br />
&nbsp;25.01.2010 09:58&nbsp; &nbsp;  C:\WINDOWS\Prefetch\Layout.ini --------- 650006 <br />
&nbsp;25.01.2010 07:38&nbsp; &nbsp;  C:\WINDOWS\Prefetch\WINWORD.EXE-0B995611.pf --------- 117804 <br />
&nbsp;25.01.2010 03:47&nbsp; &nbsp;  C:\WINDOWS\Prefetch\WSCNTFY.EXE-1B24F5EB.pf --------- 29872 <br />
&nbsp;24.01.2010 22:48&nbsp; &nbsp;  C:\WINDOWS\Prefetch\LOGONUI.EXE-0AF22957.pf --------- 61792 <br />
&nbsp;24.01.2010 22:47&nbsp; &nbsp;  C:\WINDOWS\Prefetch\ALG.EXE-0F138680.pf --------- 16624 <br />
&nbsp;24.01.2010 22:47&nbsp; &nbsp;  C:\WINDOWS\Prefetch\WMIAPSRV.EXE-1E2270A5.pf --------- 26260 <br />
&nbsp;24.01.2010 22:47&nbsp; &nbsp;  C:\WINDOWS\Prefetch\24855731.EXE-2746ED92.pf --------- 21876 <br />
&nbsp;24.01.2010 22:47&nbsp; &nbsp;  C:\WINDOWS\Prefetch\DRWTSN32.EXE-2B4B52AC.pf --------- 20354 <br />
&nbsp;24.01.2010 22:47&nbsp; &nbsp;  C:\WINDOWS\Prefetch\DWWIN.EXE-30875ADC.pf --------- 69122 <br />
&nbsp;24.01.2010 22:47&nbsp; &nbsp;  C:\WINDOWS\Prefetch\RUNDLL32.EXE-35A483DA.pf --------- 21048 <br />
&nbsp;24.01.2010 22:47&nbsp; &nbsp;  C:\WINDOWS\Prefetch\CMD.EXE-087B4001.pf --------- 18344 <br />
&nbsp;24.01.2010 22:39&nbsp; &nbsp;  C:\WINDOWS\Prefetch\WLSETUP-WEB[1].EXE-07AD63F2.pf --------- 41098 <br />
&nbsp;24.01.2010 22:37&nbsp; &nbsp;  C:\WINDOWS\Prefetch\REGSVR32.EXE-25EEFE2F.pf --------- 29138 <br />
&nbsp;24.01.2010 22:35&nbsp; &nbsp;  C:\WINDOWS\Prefetch\KLWTBWS.EXE-01D2A5B8.pf --------- 7838 <br />
&nbsp;24.01.2010 22:35&nbsp; &nbsp;  C:\WINDOWS\Prefetch\SEAPORT.EXE-2EBAF56A.pf --------- 17448 <br />
&nbsp;24.01.2010 22:35&nbsp; &nbsp;  C:\WINDOWS\Prefetch\DLLHOST.EXE-42807EE4.pf --------- 18838 <br />
&nbsp;24.01.2010 22:35&nbsp; &nbsp;  C:\WINDOWS\Prefetch\RUNONCE.EXE-2803F297.pf --------- 19698 <br />
&nbsp;24.01.2010 22:35&nbsp; &nbsp;  C:\WINDOWS\Prefetch\NETCFG.EXE-051A5168.pf --------- 60786 <br />
&nbsp;24.01.2010 22:35&nbsp; &nbsp;  C:\WINDOWS\Prefetch\DRVINS32.EXE-3045B705.pf --------- 53258 <br />
&nbsp;24.01.2010 22:35&nbsp; &nbsp;  C:\WINDOWS\Prefetch\GRPCONV.EXE-111CD845.pf --------- 12280 <br />
&nbsp;24.01.2010 22:34&nbsp; &nbsp;  C:\WINDOWS\Prefetch\DRVINS32.EXE-344382AC.pf --------- 60080 <br />
&nbsp;24.01.2010 22:33&nbsp; &nbsp;  C:\WINDOWS\Prefetch\MSIEXEC.EXE-2F8A8CAE.pf --------- 94232 <br />
&nbsp;24.01.2010 22:33&nbsp; &nbsp;  C:\WINDOWS\Prefetch\SETUP.EXE-315AD341.pf --------- 99616 <br />
&nbsp;24.01.2010 22:33&nbsp; &nbsp;  C:\WINDOWS\Prefetch\KIS9.0.0.736DE.EXE-08F6C011.pf --------- 52678 <br />
&nbsp;24.01.2010 22:25&nbsp; &nbsp;  C:\WINDOWS\Prefetch\XPNETDIAG.EXE-1275668B.pf --------- 26054 <br />
&nbsp;24.01.2010 22:24&nbsp; &nbsp;  C:\WINDOWS\Prefetch\RUNDLL32.EXE-1FFC673C.pf --------- 53862 <br />
&nbsp;24.01.2010 22:23&nbsp; &nbsp;  C:\WINDOWS\Prefetch\ASHPOPWZ.EXE-2606EB69.pf --------- 24458 <br />
&nbsp;24.01.2010 22:23&nbsp; &nbsp;  C:\WINDOWS\Prefetch\AVAST.SETUP-2B043760.pf --------- 195866 <br />
&nbsp;24.01.2010 22:23&nbsp; &nbsp;  C:\WINDOWS\Prefetch\ASHCNSNT.EXE-37A373CF.pf --------- 22512 <br />
&nbsp;24.01.2010 22:23&nbsp; &nbsp;  C:\WINDOWS\Prefetch\ASWRUNDLL.EXE-0E01E700.pf --------- 64168 <br />
&nbsp;24.01.2010 22:21&nbsp; &nbsp;  C:\WINDOWS\Prefetch\KIS9.0.0.736DE[1].EXE-17060D5B.pf --------- 18498 <br />
&nbsp;24.01.2010 22:17&nbsp; &nbsp;  C:\WINDOWS\Prefetch\ASHSIMPL.EXE-007287FE.pf --------- 64978 <br />
&nbsp;24.01.2010 22:12&nbsp; &nbsp;  C:\WINDOWS\Prefetch\ASHAVAST.EXE-0274A551.pf --------- 70316 <br />
&nbsp;24.01.2010 22:11&nbsp; &nbsp;  C:\WINDOWS\Prefetch\CCLEANER.EXE-065E2F3F.pf --------- 57180 <br />
&nbsp;24.01.2010 21:59&nbsp; &nbsp;  C:\WINDOWS\Prefetch\ASHWEBSV.EXE-091EF0CF.pf --------- 21754 <br />
&nbsp;24.01.2010 21:59&nbsp; &nbsp;  C:\WINDOWS\Prefetch\ASHMAISV.EXE-24E25810.pf --------- 23688 <br />
&nbsp;24.01.2010 21:59&nbsp; &nbsp;  C:\WINDOWS\Prefetch\IPODSERVICE.EXE-233792DA.pf --------- 62460 <br />
&nbsp;24.01.2010 21:29&nbsp; &nbsp;  C:\WINDOWS\Prefetch\TEAMVIEWER_.EXE-00E50453.pf --------- 24992 <br />
&nbsp;24.01.2010 21:29&nbsp; &nbsp;  C:\WINDOWS\Prefetch\TEAMVIEWER_SETUP.EXE-2A248353.pf --------- 26908 <br />
&nbsp;24.01.2010 21:25&nbsp; &nbsp;  C:\WINDOWS\Prefetch\TEAMVIEWER_SETUP[1].EXE-165F59AD.pf --------- 21214 <br />
&nbsp;24.01.2010 19:31&nbsp; &nbsp;  C:\WINDOWS\Prefetch\SHUTDOWN.EXE-12DAD820.pf --------- 11540 <br />
&nbsp;24.01.2010 18:54&nbsp; &nbsp;  C:\WINDOWS\Prefetch\61785128.EXE-219A6330.pf --------- 22064 <br />
&nbsp;24.01.2010 18:54&nbsp; &nbsp;  C:\WINDOWS\Prefetch\_EX-08.EXE-2630CB5F.pf --------- 65490 <br />
&nbsp;24.01.2010 18:54&nbsp; &nbsp;  C:\WINDOWS\Prefetch\TASKKILL.EXE-0A8306E3.pf --------- 19776 <br />
&nbsp;24.01.2010 18:54&nbsp; &nbsp;  C:\WINDOWS\Prefetch\~TM16.TMP-15D8B3B6.pf --------- 9012 <br />
&nbsp;24.01.2010 18:54&nbsp; &nbsp;  C:\WINDOWS\Prefetch\~TM15.TMP-392629FC.pf --------- 22176 <br />
&nbsp;24.01.2010 18:54&nbsp; &nbsp;  C:\WINDOWS\Prefetch\~TM14.TMP-00A56444.pf --------- 26552 <br />
&nbsp;24.01.2010 18:54&nbsp; &nbsp;  C:\WINDOWS\Prefetch\_EX-68.EXE-08054179.pf --------- 28478 <br />
&nbsp;24.01.2010 18:54&nbsp; &nbsp;  C:\WINDOWS\Prefetch\PDFUPD.EXE-1F4A9A73.pf --------- 43652 <br />
&nbsp;24.01.2010 18:54&nbsp; &nbsp;  C:\WINDOWS\Prefetch\JAVA.EXE-2167859B.pf --------- 65110 <br />
&nbsp;24.01.2010 18:54&nbsp; &nbsp;  C:\WINDOWS\Prefetch\ACRORD32.EXE-153330F0.pf --------- 65160 <br />
&nbsp;24.01.2010 18:53&nbsp; &nbsp;  C:\WINDOWS\Prefetch\OFFICELIVESIGNIN.EXE-1F9630FD.pf --------- 57190 <br />
&nbsp;24.01.2010 09:31&nbsp; &nbsp;  C:\WINDOWS\Prefetch\DFRGNTFS.EXE-269967DF.pf --------- 76364 <br />
&nbsp;24.01.2010 09:31&nbsp; &nbsp;  C:\WINDOWS\Prefetch\DEFRAG.EXE-273F131E.pf --------- 17468 <br />
&nbsp;24.01.2010 09:16&nbsp; &nbsp;  C:\WINDOWS\Prefetch\SNDVOL32.EXE-383480B7.pf --------- 17078 <br />
&nbsp;23.01.2010 17:21&nbsp; &nbsp;  C:\WINDOWS\Prefetch\WLOOBE.EXE-0D1C45BB.pf --------- 84214 <br />
&nbsp;23.01.2010 17:20&nbsp; &nbsp;  C:\WINDOWS\Prefetch\WLSETUP-WEB[1].EXE-12BFF576.pf --------- 42186 <br />
&nbsp;23.01.2010 17:06&nbsp; &nbsp;  C:\WINDOWS\Prefetch\MSIMN.EXE-0B61806C.pf --------- 76150 <br />
&nbsp;23.01.2010 16:42&nbsp; &nbsp;  C:\WINDOWS\Prefetch\WLLOGINPROXY.EXE-33926225.pf --------- 43814 <br />
&nbsp;23.01.2010 16:42&nbsp; &nbsp;  C:\WINDOWS\Prefetch\INFOCARD.EXE-14622E55.pf --------- 58762 <br />
&nbsp;23.01.2010 16:38&nbsp; &nbsp;  C:\WINDOWS\Prefetch\WLSETUP-CUSTOM[1].EXE-094785A0.pf --------- 42414 <br />
&nbsp;23.01.2010 16:31&nbsp; &nbsp;  C:\WINDOWS\Prefetch\FLVDIRECT.EXE-08305F68.pf --------- 37130 <br />
&nbsp;23.01.2010 16:29&nbsp; &nbsp;  C:\WINDOWS\Prefetch\WINMINE.EXE-0A3838A4.pf --------- 12574 <br />
&nbsp;22.01.2010 22:56&nbsp; &nbsp;  C:\WINDOWS\Prefetch\UPDATE.EXE-29CEC48E.pf --------- 72956 <br />
&nbsp;22.01.2010 22:12&nbsp; &nbsp;  C:\WINDOWS\Prefetch\MESSENGER_PLUS_LIVETOOLBARHEL-03113DE0.pf --------- 17506 <br />
&nbsp;22.01.2010 22:08&nbsp; &nbsp;  C:\WINDOWS\Prefetch\PICASAPHOTOVIEWER.EXE-0DED770D.pf --------- 116168 <br />
&nbsp;22.01.2010 22:05&nbsp; &nbsp;  C:\WINDOWS\Prefetch\PICASAUPDATER.EXE-215074A4.pf --------- 30824 <br />
&nbsp;22.01.2010 21:51&nbsp; &nbsp;  C:\WINDOWS\Prefetch\POWERPNT.EXE-35D9866D.pf --------- 72804 <br />
&nbsp;21.01.2010 21:34&nbsp; &nbsp;  C:\WINDOWS\Prefetch\MSMSGS.EXE-32066BA5.pf --------- 37748 <br />
&nbsp;21.01.2010 21:33&nbsp; &nbsp;  C:\WINDOWS\Prefetch\MESSEN~1.EXE-0039E2D3.pf --------- 11886 <br />
&nbsp;21.01.2010 21:33&nbsp; &nbsp;  C:\WINDOWS\Prefetch\GLB19.TMP-0AC93985.pf --------- 36904 <br />
&nbsp;21.01.2010 21:33&nbsp; &nbsp;  C:\WINDOWS\Prefetch\MESSENGERPLUSTB.EXE-29A76D57.pf --------- 29478 <br />
&nbsp;21.01.2010 21:32&nbsp; &nbsp;  C:\WINDOWS\Prefetch\MSGPLUSLIVE-483[1].EXE-3B597952.pf --------- 41940 <br />
&nbsp;21.01.2010 21:27&nbsp; &nbsp;  C:\WINDOWS\Prefetch\GLBD.TMP-1304B797.pf --------- 30558 <br />
&nbsp;21.01.2010 21:27&nbsp; &nbsp;  C:\WINDOWS\Prefetch\MESSENGERPLUSTB.EXE-310E30DE.pf --------- 28266 <br />
&nbsp;21.01.2010 21:27&nbsp; &nbsp;  C:\WINDOWS\Prefetch\MSGPLUSLIVE-483[1].EXE-370A866A.pf --------- 42044 <br />
&nbsp;21.01.2010 21:21&nbsp; &nbsp;  C:\WINDOWS\Prefetch\WLSETUP-CUSTOM[1].EXE-2101D634.pf --------- 46620 <br />
&nbsp;21.01.2010 21:14&nbsp; &nbsp;  C:\WINDOWS\Prefetch\WLSETUP-CUSTOM[2].EXE-35856CC3.pf --------- 41972 <br />
&nbsp;21.01.2010 21:11&nbsp; &nbsp;  C:\WINDOWS\Prefetch\WLSETUP-CUSTOM[2].EXE-266A66B1.pf --------- 41972 <br />
&nbsp;21.01.2010 21:06&nbsp; &nbsp;  C:\WINDOWS\Prefetch\FILTERHOST.EXE-2997A900.pf --------- 24232 <br />
&nbsp;21.01.2010 21:05&nbsp; &nbsp;  C:\WINDOWS\Prefetch\SETUPP2.EXE-04CC2051.pf --------- 47456 <br />
&nbsp;21.01.2010 21:04&nbsp; &nbsp;  C:\WINDOWS\Prefetch\MESSENGERSETUP2009[1].EXE-0F9950B4.pf --------- 28458 <br />
&nbsp;21.01.2010 21:04&nbsp; &nbsp;  C:\WINDOWS\Prefetch\SETUP.EXE-15FF38BD.pf --------- 70496 <br />
&nbsp;21.01.2010 20:59&nbsp; &nbsp;  C:\WINDOWS\Prefetch\SETUPP2.EXE-147C0AFF.pf --------- 41830 <br />
&nbsp;21.01.2010 20:59&nbsp; &nbsp;  C:\WINDOWS\Prefetch\SETUP.EXE-15A46A25.pf --------- 67606 <br />
&nbsp;21.01.2010 20:40&nbsp; &nbsp;  C:\WINDOWS\Prefetch\ADOBEUPDATER.EXE-370FC314.pf --------- 41676 <br />
&nbsp;21.01.2010 12:25&nbsp; &nbsp;  C:\WINDOWS\Prefetch\QTTASK.EXE-2D7EEF34.pf --------- 11584 <br />
&nbsp;21.01.2010 11:49&nbsp; &nbsp;  C:\WINDOWS\Prefetch\NOTEPAD.EXE-336351A9.pf --------- 18352 <br />
&nbsp;21.01.2010 09:00&nbsp; &nbsp;  C:\WINDOWS\Prefetch\A2FREE.EXE-0775134C.pf --------- 40172 <br />
&nbsp;21.01.2010 09:00&nbsp; &nbsp;  C:\WINDOWS\Prefetch\A2SERVICE.EXE-26DBA97F.pf --------- 32358 <br />
&nbsp;21.01.2010 08:58&nbsp; &nbsp;  C:\WINDOWS\Prefetch\A2FREESETUP45024.TMP-3B2E75BB.pf --------- 24912 <br />
&nbsp;21.01.2010 08:58&nbsp; &nbsp;  C:\WINDOWS\Prefetch\A2FREESETUP45024.EXE-28017347.pf --------- 19762 <br />
&nbsp;21.01.2010 08:44&nbsp; &nbsp;  C:\WINDOWS\Prefetch\LIVESEARCH NOTIFICATION.EXE-1D64CF8C.pf --------- 15728 <br />
&nbsp;21.01.2010 08:44&nbsp; &nbsp;  C:\WINDOWS\Prefetch\GOOGLETOOLBARMANAGER_0E996B06-08C2C2D2.pf --------- 43866 <br />
&nbsp;21.01.2010 08:44&nbsp; &nbsp;  C:\WINDOWS\Prefetch\GOOGLEUPDATERSERVICE.EXE-19F5FCF4.pf --------- 18874 <br />
&nbsp;21.01.2010 08:44&nbsp; &nbsp;  C:\WINDOWS\Prefetch\MSIBF.TMP-030EEC3A.pf --------- 14246 <br />
&nbsp;21.01.2010 08:44&nbsp; &nbsp;  C:\WINDOWS\Prefetch\MSIB9.TMP-04B86745.pf --------- 3680 <br />
&nbsp;21.01.2010 08:43&nbsp; &nbsp;  C:\WINDOWS\Prefetch\GOOGLETOOLBARNOTIFIER.EXE-09E6E9C6.pf --------- 36560 <br />
&nbsp;21.01.2010 08:01&nbsp; &nbsp;  C:\WINDOWS\Prefetch\UPDATETASK.EXE-074282C7.pf --------- 16602 <br />
&nbsp;20.01.2010 22:07&nbsp; &nbsp;  C:\WINDOWS\Prefetch\RUNDLL32.EXE-451FC2C0.pf --------- 15646 <br />
&nbsp;20.01.2010 17:30&nbsp; &nbsp;  C:\WINDOWS\Prefetch\WLANCFG4.EXE-00DEC94B.pf --------- 16700 <br />
&nbsp;20.01.2010 17:30&nbsp; &nbsp;  C:\WINDOWS\Prefetch\ONENOTEM.EXE-1B134824.pf --------- 14416 <br />
&nbsp;20.01.2010 17:13&nbsp; &nbsp;  C:\WINDOWS\Prefetch\JUCHECK.EXE-0645AA51.pf --------- 48540 <br />
&nbsp;20.01.2010 17:13&nbsp; &nbsp;  C:\WINDOWS\Prefetch\JAVA.EXE-0967259C.pf --------- 8134 <br />
&nbsp;20.01.2010 10:47&nbsp; &nbsp;  C:\WINDOWS\Prefetch\HPZSTC06.EXE-25352EBF.pf --------- 16764 <br />
&nbsp;20.01.2010 10:47&nbsp; &nbsp;  C:\WINDOWS\Prefetch\HPZSTW06.EXE-0B092BEC.pf --------- 8868 <br />
&nbsp;20.01.2010 10:47&nbsp; &nbsp;  C:\WINDOWS\Prefetch\HPZENG06.EXE-0298DF7F.pf --------- 14202 <br />
&nbsp;16.01.2010 11:38&nbsp; &nbsp;  C:\WINDOWS\Prefetch\RUNDLL32.EXE-2A94BB85.pf --------- 19352 <br />
&nbsp;22.12.2009 15:04&nbsp; &nbsp;  C:\WINDOWS\Prefetch\SKYPEPM.EXE-03F1BFBD.pf --------- 65422 <br />
----------------------------------------<br />
<br />
&nbsp;<br />
C:\WINDOWS\Tasks<br />
<br />
&nbsp;25.01.2010 12:38&nbsp; &nbsp;  C:\WINDOWS\Tasks\SA.DAT --------- 6 <br />
&nbsp;11.01.2010 16:36&nbsp; &nbsp;  C:\WINDOWS\Tasks\AppleSoftwareUpdate.job --------- 276 <br />
&nbsp;04.08.2004 13:00&nbsp; &nbsp;  C:\WINDOWS\Tasks\desktop.ini --------- 65 <br />
----------------------------------------<br />
<br />
&nbsp;<br />
C:\WINDOWS\Temp<br />
<br />
&nbsp;25.01.2010 12:39&nbsp; &nbsp;  C:\WINDOWS\Temp\WGAErrLog.txt --------- 483 <br />
&nbsp;25.01.2010 11:41&nbsp; &nbsp;  C:\WINDOWS\Temp\SEP3.tmp --------- 0 <br />
&nbsp;24.01.2010 22:48&nbsp; &nbsp;  C:\WINDOWS\Temp\SEP11.tmp --------- 0 <br />
&nbsp;24.01.2010 22:46&nbsp; &nbsp;  C:\WINDOWS\Temp\~TME.tmp --------- 23552 <br />
&nbsp;24.01.2010 22:46&nbsp; &nbsp;  C:\WINDOWS\Temp\~TMC.tmp --------- 15360 <br />
&nbsp;24.01.2010 22:24&nbsp; &nbsp;  C:\WINDOWS\Temp\_avast4_ --------- 0 <br />
&nbsp;24.01.2010 22:00&nbsp; &nbsp;  C:\WINDOWS\Temp\SEPD.tmp --------- 0 <br />
&nbsp;24.01.2010 21:19&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_124.dat --------- 16384 <br />
&nbsp;24.01.2010 19:33&nbsp; &nbsp;  C:\WINDOWS\Temp\58eeee52f20e00b5c46f8193.tmp --------- 131072 <br />
&nbsp;24.01.2010 19:33&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_4cc.dat --------- 16384 <br />
&nbsp;24.01.2010 19:33&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_88.dat --------- 16384 <br />
&nbsp;24.01.2010 19:04&nbsp; &nbsp;  C:\WINDOWS\Temp\6C786E.dmp --------- 67668 <br />
&nbsp;24.01.2010 19:04&nbsp; &nbsp;  C:\WINDOWS\Temp\6277_appcompat.txt --------- 5612 <br />
&nbsp;24.01.2010 19:04&nbsp; &nbsp;  C:\WINDOWS\Temp\TMP19.tmp --------- 0 <br />
&nbsp;24.01.2010 18:54&nbsp; &nbsp;  C:\WINDOWS\Temp\_ex-08.exe --------- 414720 <br />
&nbsp;24.01.2010 18:54&nbsp; &nbsp;  C:\WINDOWS\Temp\~TM16.tmp --------- 23040 <br />
&nbsp;24.01.2010 18:54&nbsp; &nbsp;  C:\WINDOWS\Temp\~TM15.tmp --------- 12288 <br />
&nbsp;24.01.2010 18:54&nbsp; &nbsp;  C:\WINDOWS\Temp\~TM14.tmp --------- 15360 <br />
&nbsp;22.01.2010 20:58&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_f4.dat --------- 16384 <br />
&nbsp;21.01.2010 21:17&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_f8.dat --------- 16384 <br />
&nbsp;20.01.2010 14:41&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_7a8.dat --------- 16384 <br />
&nbsp;19.01.2010 21:54&nbsp; &nbsp;  C:\WINDOWS\Temp\Silverlight0.log --------- 1648 <br />
&nbsp;19.01.2010 21:54&nbsp; &nbsp;  C:\WINDOWS\Temp\SilverlightMSI.log --------- 759246 <br />
&nbsp;19.01.2010 16:33&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_100.dat --------- 16384 <br />
&nbsp;18.01.2010 10:33&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_740.dat --------- 16384 <br />
&nbsp;18.01.2010 10:29&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_8c.dat --------- 16384 <br />
&nbsp;17.01.2010 19:44&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_ec.dat --------- 16384 <br />
&nbsp;16.01.2010 20:40&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_770.dat --------- 16384 <br />
&nbsp;16.01.2010 19:08&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_84.dat --------- 16384 <br />
&nbsp;16.01.2010 11:05&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_77c.dat --------- 16384 <br />
&nbsp;15.01.2010 18:41&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_e8.dat --------- 16384 <br />
&nbsp;13.01.2010 19:04&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_d8.dat --------- 16384 <br />
&nbsp;13.01.2010 17:25&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_a88.dat --------- 16384 <br />
&nbsp;12.01.2010 16:28&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_cc.dat --------- 16384 <br />
&nbsp;11.01.2010 20:09&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_79c.dat --------- 16384 <br />
&nbsp;11.01.2010 09:46&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_e0.dat --------- 16384 <br />
&nbsp;09.01.2010 10:05&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_840.dat --------- 16384 <br />
&nbsp;08.01.2010 09:28&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_aa8.dat --------- 16384 <br />
&nbsp;07.01.2010 19:54&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_7b4.dat --------- 16384 <br />
&nbsp;04.01.2010 08:48&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_750.dat --------- 16384 <br />
&nbsp;01.01.2010 20:07&nbsp; &nbsp;  C:\WINDOWS\Temp\SEP5.tmp --------- 0 <br />
&nbsp;01.01.2010 20:05&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_5fc.dat --------- 16384 <br />
&nbsp;30.12.2009 09:36&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_754.dat --------- 16384 <br />
&nbsp;27.12.2009 13:34&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_768.dat --------- 16384 <br />
&nbsp;27.12.2009 13:32&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_ba0.dat --------- 16384 <br />
&nbsp;23.12.2009 18:12&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_7cc.dat --------- 16384 <br />
&nbsp;23.12.2009 08:26&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_fc.dat --------- 16384 <br />
&nbsp;22.12.2009 15:03&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_bcc.dat --------- 16384 <br />
&nbsp;21.12.2009 17:41&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_c9c.dat --------- 16384 <br />
&nbsp;20.12.2009 17:46&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_7b8.dat --------- 16384 <br />
&nbsp;08.12.2009 15:27&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_6b8.dat --------- 16384 <br />
&nbsp;07.12.2009 07:02&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_4e0.dat --------- 16384 <br />
&nbsp;06.12.2009 15:51&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_7ac.dat --------- 16384 <br />
&nbsp;02.12.2009 16:53&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_73c.dat --------- 16384 <br />
&nbsp;02.12.2009 16:02&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_75c.dat --------- 16384 <br />
&nbsp;02.12.2009 13:41&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_74c.dat --------- 16384 <br />
&nbsp;01.12.2009 18:44&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_618.dat --------- 16384 <br />
&nbsp;25.11.2009 14:42&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_778.dat --------- 16384 <br />
&nbsp;24.11.2009 17:32&nbsp; &nbsp;  C:\WINDOWS\Temp\GoogleToolbarInstaller1.log --------- 20584 <br />
&nbsp;24.11.2009 17:20&nbsp; &nbsp;  C:\WINDOWS\Temp\Google Toolbar --------- 0 <br />
&nbsp;24.11.2009 17:20&nbsp; &nbsp;  C:\WINDOWS\Temp\GoogleToolbarInstaller2.log --------- 15000 <br />
&nbsp;20.11.2009 16:08&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_104.dat --------- 16384 <br />
&nbsp;18.11.2009 08:42&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_d1c.dat --------- 16384 <br />
&nbsp;17.11.2009 16:55&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_7e4.dat --------- 16384 <br />
&nbsp;17.11.2009 14:46&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_110.dat --------- 16384 <br />
&nbsp;10.11.2009 17:28&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_7f0.dat --------- 16384 <br />
&nbsp;09.11.2009 16:08&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_114.dat --------- 16384 <br />
&nbsp;07.11.2009 12:10&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_76c.dat --------- 16384 <br />
&nbsp;04.11.2009 07:57&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_120.dat --------- 16384 <br />
&nbsp;29.10.2009 15:34&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_6c0.dat --------- 16384 <br />
&nbsp;28.10.2009 16:05&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_d50.dat --------- 16384 <br />
&nbsp;16.10.2009 15:59&nbsp; &nbsp;  C:\WINDOWS\Temp\ASPNETSetup_00002.log --------- 5158 <br />
&nbsp;16.10.2009 15:55&nbsp; &nbsp;  C:\WINDOWS\Temp\History --------- 0 <br />
&nbsp;16.10.2009 15:55&nbsp; &nbsp;  C:\WINDOWS\Temp\RtSigs --------- 0 <br />
&nbsp;16.10.2009 15:55&nbsp; &nbsp;  C:\WINDOWS\Temp\NetFxUpdate_v1.1.4322.log --------- 21444 <br />
&nbsp;16.10.2009 15:54&nbsp; &nbsp;  C:\WINDOWS\Temp\NDP1.1sp1-KB953297-X86 --------- 0 <br />
&nbsp;05.10.2009 14:27&nbsp; &nbsp;  C:\WINDOWS\Temp\HP005003.PDL --------- 19160 <br />
&nbsp;05.10.2009 14:27&nbsp; &nbsp;  C:\WINDOWS\Temp\HP005002.PDL --------- 90343 <br />
&nbsp;05.10.2009 14:26&nbsp; &nbsp;  C:\WINDOWS\Temp\HP005001.PDL --------- 88664 <br />
&nbsp;05.10.2009 14:26&nbsp; &nbsp;  C:\WINDOWS\Temp\HP005000.IDX --------- 78459 <br />
&nbsp;05.10.2009 13:47&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_774.dat --------- 16384 <br />
&nbsp;01.10.2009 12:54&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_c0.dat --------- 16384 <br />
&nbsp;01.10.2009 12:48&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_bc.dat --------- 16384 <br />
&nbsp;30.09.2009 09:48&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_7f4.dat --------- 16384 <br />
&nbsp;24.09.2009 14:31&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_5e8.dat --------- 16384 <br />
&nbsp;22.09.2009 16:34&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_7c.dat --------- 16384 <br />
&nbsp;21.09.2009 11:26&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_c4.dat --------- 16384 <br />
&nbsp;21.09.2009 06:34&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_6b4.dat --------- 16384 <br />
&nbsp;21.09.2009 06:18&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_108.dat --------- 16384 <br />
&nbsp;20.09.2009 09:45&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_118.dat --------- 16384 <br />
&nbsp;18.09.2009 17:09&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_7e8.dat --------- 16384 <br />
&nbsp;17.09.2009 06:33&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_7f8.dat --------- 16384 <br />
&nbsp;16.09.2009 15:54&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_90.dat --------- 16384 <br />
&nbsp;06.09.2009 19:09&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_72c.dat --------- 16384 <br />
&nbsp;31.08.2009 07:50&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_718.dat --------- 16384 <br />
&nbsp;30.08.2009 08:50&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_78c.dat --------- 16384 <br />
&nbsp;16.08.2009 11:48&nbsp; &nbsp;  C:\WINDOWS\Temp\dd_wcf_retCA16A5.txt --------- 4276 <br />
&nbsp;16.08.2009 11:48&nbsp; &nbsp;  C:\WINDOWS\Temp\ASPNETSetup_00001.log --------- 5158 <br />
&nbsp;16.08.2009 11:46&nbsp; &nbsp;  C:\WINDOWS\Temp\dd_dotnetfx35install.txt --------- 265530 <br />
&nbsp;16.08.2009 11:46&nbsp; &nbsp;  C:\WINDOWS\Temp\uxeventlog.txt --------- 28066 <br />
&nbsp;16.08.2009 11:46&nbsp; &nbsp;  C:\WINDOWS\Temp\dd_NET_Framework35_MSI631E.txt --------- 1435590 <br />
&nbsp;16.08.2009 11:45&nbsp; &nbsp;  C:\WINDOWS\Temp\dd_NET_Framework30_Setup6284.txt --------- 3210080 <br />
&nbsp;16.08.2009 11:45&nbsp; &nbsp;  C:\WINDOWS\Temp\dd_wcf_retCA5E52.txt --------- 4377 <br />
&nbsp;16.08.2009 11:45&nbsp; &nbsp;  C:\WINDOWS\Temp\dd_depcheck_NETFX_EXP_35.txt --------- 204972 <br />
&nbsp;16.08.2009 11:45&nbsp; &nbsp;  C:\WINDOWS\Temp\dd_XPS.txt --------- 10546 <br />
&nbsp;16.08.2009 11:44&nbsp; &nbsp;  C:\WINDOWS\Temp\hpzcoi17.log --------- 596 <br />
&nbsp;16.08.2009 11:44&nbsp; &nbsp;  C:\WINDOWS\Temp\hpzcoi16.log --------- 596 <br />
&nbsp;16.08.2009 11:44&nbsp; &nbsp;  C:\WINDOWS\Temp\dd_NET_Framework20_Setup6060.txt --------- 14504766 <br />
&nbsp;16.08.2009 11:44&nbsp; &nbsp;  C:\WINDOWS\Temp\ASPNETSetup_00000.log --------- 5158 <br />
&nbsp;16.08.2009 11:42&nbsp; &nbsp;  C:\WINDOWS\Temp\dd_RGB9RAST_x86.msi6056.txt --------- 134702 <br />
&nbsp;16.08.2009 11:42&nbsp; &nbsp;  C:\WINDOWS\Temp\dd_clwireg.txt --------- 7944 <br />
&nbsp;16.08.2009 11:41&nbsp; &nbsp;  C:\WINDOWS\Temp\dd_dotnetfx35error.txt --------- 2 <br />
&nbsp;09.08.2009 12:54&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_7d0.dat --------- 16384 <br />
&nbsp;30.07.2009 18:29&nbsp; &nbsp;  C:\WINDOWS\Temp\HP004001.PDL --------- 32768 <br />
&nbsp;30.07.2009 17:09&nbsp; &nbsp;  C:\WINDOWS\Temp\HP004000.IDX --------- 73034 <br />
&nbsp;30.07.2009 10:59&nbsp; &nbsp;  C:\WINDOWS\Temp\HP003001.PDL --------- 32768 <br />
&nbsp;30.07.2009 10:54&nbsp; &nbsp;  C:\WINDOWS\Temp\HP003000.IDX --------- 73034 <br />
&nbsp;30.07.2009 10:33&nbsp; &nbsp;  C:\WINDOWS\Temp\dd_ATL80SP1_KB973923UI7B1C.txt --------- 11668 <br />
&nbsp;30.07.2009 10:33&nbsp; &nbsp;  C:\WINDOWS\Temp\dd_ATL80SP1_KB973923MSI7B1C.txt --------- 800416 <br />
&nbsp;30.07.2009 10:27&nbsp; &nbsp;  C:\WINDOWS\Temp\HP002001.PDL --------- 44999 <br />
&nbsp;30.07.2009 10:27&nbsp; &nbsp;  C:\WINDOWS\Temp\HP002000.IDX --------- 73034 <br />
&nbsp;24.06.2009 14:27&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_8e0.dat --------- 16384 <br />
&nbsp;24.06.2009 14:27&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_51c.dat --------- 16384 <br />
&nbsp;11.06.2009 09:15&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_714.dat --------- 16384 <br />
&nbsp;06.06.2009 19:07&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_6d8.dat --------- 16384 <br />
&nbsp;11.05.2009 20:35&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_69c.dat --------- 16384 <br />
&nbsp;09.05.2009 16:01&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_8a0.dat --------- 16384 <br />
&nbsp;09.05.2009 16:01&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_528.dat --------- 16384 <br />
&nbsp;05.05.2009 17:03&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_900.dat --------- 16384 <br />
&nbsp;03.05.2009 08:21&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_550.dat --------- 16384 <br />
&nbsp;02.05.2009 10:27&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_8ec.dat --------- 16384 <br />
&nbsp;02.05.2009 10:27&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_4b4.dat --------- 16384 <br />
&nbsp;30.04.2009 22:47&nbsp; &nbsp;  C:\WINDOWS\Temp\hpzcoi15.log --------- 596 <br />
&nbsp;30.04.2009 22:47&nbsp; &nbsp;  C:\WINDOWS\Temp\hpzcoi14.log --------- 596 <br />
&nbsp;03.04.2009 18:37&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_6dc.dat --------- 16384 <br />
&nbsp;31.03.2009 07:13&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_6f0.dat --------- 16384 <br />
&nbsp;30.03.2009 20:50&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_7c8.dat --------- 16384 <br />
&nbsp;22.03.2009 18:13&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_664.dat --------- 16384 <br />
&nbsp;17.03.2009 13:35&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_71c.dat --------- 16384 <br />
&nbsp;13.03.2009 07:25&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_70c.dat --------- 16384 <br />
&nbsp;06.03.2009 00:44&nbsp; &nbsp;  C:\WINDOWS\Temp\MSIae779.LOG --------- 436 <br />
&nbsp;29.01.2009 12:47&nbsp; &nbsp;  C:\WINDOWS\Temp\nst165.tmp --------- 0 <br />
&nbsp;03.01.2009 21:12&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_730.dat --------- 16384 <br />
&nbsp;02.01.2009 13:07&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_734.dat --------- 16384 <br />
&nbsp;01.01.2009 18:21&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_708.dat --------- 16384 <br />
&nbsp;23.12.2008 15:27&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_680.dat --------- 16384 <br />
&nbsp;22.12.2008 15:16&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_694.dat --------- 16384 <br />
&nbsp;19.12.2008 21:20&nbsp; &nbsp;  C:\WINDOWS\Temp\nss3.tmp --------- 0 <br />
&nbsp;18.12.2008 10:38&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_710.dat --------- 16384 <br />
&nbsp;12.12.2008 18:42&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_4b8.dat --------- 16384 <br />
&nbsp;05.12.2008 07:34&nbsp; &nbsp;  C:\WINDOWS\Temp\HP001001.PDL --------- 192671 <br />
&nbsp;05.12.2008 07:32&nbsp; &nbsp;  C:\WINDOWS\Temp\HP001000.IDX --------- 747638 <br />
&nbsp;05.12.2008 07:29&nbsp; &nbsp;  C:\WINDOWS\Temp\HP000001.PDL --------- 163840 <br />
&nbsp;05.12.2008 07:28&nbsp; &nbsp;  C:\WINDOWS\Temp\HP000000.IDX --------- 747638 <br />
&nbsp;09.09.2008 07:49&nbsp; &nbsp;  C:\WINDOWS\Temp\hpzcoi13.log --------- 596 <br />
&nbsp;09.09.2008 07:49&nbsp; &nbsp;  C:\WINDOWS\Temp\hpzcoi12.log --------- 596 <br />
&nbsp;07.08.2008 09:22&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_91c.dat --------- 16384 <br />
&nbsp;26.03.2008 21:49&nbsp; &nbsp;  C:\WINDOWS\Temp\hpzcoi10.log --------- 596 <br />
&nbsp;26.03.2008 21:49&nbsp; &nbsp;  C:\WINDOWS\Temp\hpzcoi11.log --------- 596 <br />
&nbsp;26.03.2008 21:49&nbsp; &nbsp;  C:\WINDOWS\Temp\hpzcoi08.log --------- 596 <br />
&nbsp;26.03.2008 21:49&nbsp; &nbsp;  C:\WINDOWS\Temp\hpzcoi09.log --------- 596 <br />
&nbsp;26.03.2008 21:49&nbsp; &nbsp;  C:\WINDOWS\Temp\hpzcoi07.log --------- 596 <br />
&nbsp;26.03.2008 21:49&nbsp; &nbsp;  C:\WINDOWS\Temp\hpzcoi06.log --------- 596 <br />
&nbsp;26.03.2008 12:57&nbsp; &nbsp;  C:\WINDOWS\Temp\hpzcoi05.log --------- 596 <br />
&nbsp;26.03.2008 12:57&nbsp; &nbsp;  C:\WINDOWS\Temp\hpzcoi04.log --------- 596 <br />
&nbsp;18.01.2008 14:18&nbsp; &nbsp;  C:\WINDOWS\Temp\hpzcoi03.log --------- 596 <br />
&nbsp;18.01.2008 14:18&nbsp; &nbsp;  C:\WINDOWS\Temp\hpzcoi02.log --------- 596 <br />
&nbsp;17.01.2008 21:33&nbsp; &nbsp;  C:\WINDOWS\Temp\hpzcoi01.log --------- 596 <br />
&nbsp;17.01.2008 21:33&nbsp; &nbsp;  C:\WINDOWS\Temp\hpzcoi00.log --------- 596 <br />
&nbsp;17.01.2008 13:58&nbsp; &nbsp;  C:\WINDOWS\Temp\cleansw.cmd --------- 28 <br />
&nbsp;17.01.2008 13:58&nbsp; &nbsp;  C:\WINDOWS\Temp\SMonitor.log --------- 488 <br />
&nbsp;17.01.2008 13:58&nbsp; &nbsp;  C:\WINDOWS\Temp\AMD_CPU_setup_x32.log --------- 330 <br />
&nbsp;17.01.2008 13:56&nbsp; &nbsp;  C:\WINDOWS\Temp\Cookies --------- 0 <br />
&nbsp;17.01.2008 13:56&nbsp; &nbsp;  C:\WINDOWS\Temp\Verlauf --------- 0 <br />
&nbsp;17.01.2008 13:56&nbsp; &nbsp;  C:\WINDOWS\Temp\Temporary Internet Files --------- 0 <br />
&nbsp;10.07.2001 10:01&nbsp; &nbsp;  C:\WINDOWS\Temp\pistart.exe --------- 45056 <br />
----------------------------------------<br />
<br />
&nbsp;<br />
C:\DOKUME~1\ADMINI~1\LOKALE~1\Temp<br />
<br />
&nbsp;25.01.2010 12:45&nbsp; &nbsp; &nbsp; C:\DOKUME~1\ADMINI~1\LOKALE~1\Temp\~DF7289.tmp --------- 20480 <br />
&nbsp;25.01.2010 12:43&nbsp; &nbsp; &nbsp; C:\DOKUME~1\ADMINI~1\LOKALE~1\Temp\~DFC20B.tmp --------- 16384 <br />
&nbsp;25.01.2010 12:42&nbsp; &nbsp; &nbsp; C:\DOKUME~1\ADMINI~1\LOKALE~1\Temp\~DF1407.tmp --------- 20480 <br />
&nbsp;25.01.2010 12:42&nbsp; &nbsp; &nbsp; C:\DOKUME~1\ADMINI~1\LOKALE~1\Temp\~DFBD22.tmp --------- 20480 <br />
&nbsp;25.01.2010 12:40&nbsp; &nbsp; &nbsp; C:\DOKUME~1\ADMINI~1\LOKALE~1\Temp\~DF3059.tmp --------- 16384 <br />
&nbsp;25.01.2010 12:40&nbsp; &nbsp; &nbsp; C:\DOKUME~1\ADMINI~1\LOKALE~1\Temp\~DF2A95.tmp --------- 16384 <br />
&nbsp;25.01.2010 12:40&nbsp; &nbsp; &nbsp; C:\DOKUME~1\ADMINI~1\LOKALE~1\Temp\~DF2AA2.tmp --------- 512 <br />
&nbsp;25.01.2010 12:40&nbsp; &nbsp; &nbsp; C:\DOKUME~1\ADMINI~1\LOKALE~1\Temp\~DF2A2E.tmp --------- 32768 <br />
&nbsp;25.01.2010 12:40&nbsp; &nbsp; &nbsp; C:\DOKUME~1\ADMINI~1\LOKALE~1\Temp\~DF2A3B.tmp --------- 512 <br />
&nbsp;25.01.2010 12:39&nbsp; &nbsp; &nbsp; C:\DOKUME~1\ADMINI~1\LOKALE~1\Temp\~DFE555.tmp --------- 16384 <br />
&nbsp;24.01.2010 21:54&nbsp; &nbsp; &nbsp; C:\DOKUME~1\ADMINI~1\LOKALE~1\Temp\nsfA.tmp --------- 0 <br />
&nbsp;24.01.2010 21:54&nbsp; &nbsp; &nbsp; C:\DOKUME~1\ADMINI~1\LOKALE~1\Temp\TeamViewer --------- 0 <br />
----------------------------------------<br />
<br />
&nbsp;<br />
C:\Programme<br />
<br />
&nbsp;25.01.2010 12:41&nbsp; &nbsp;  C:\Programme\Trend Micro --------- 0 <br />
&nbsp;24.01.2010 22:47&nbsp; &nbsp;  C:\Programme\Internet Explorer --------- 0 <br />
&nbsp;24.01.2010 22:34&nbsp; &nbsp;  C:\Programme\Kaspersky Lab --------- 0 <br />
&nbsp;24.01.2010 21:54&nbsp; &nbsp;  C:\Programme\TeamViewer --------- 0 <br />
&nbsp;21.01.2010 21:33&nbsp; &nbsp;  C:\Programme\Messenger_Plus_Live --------- 0 <br />
&nbsp;21.01.2010 21:33&nbsp; &nbsp;  C:\Programme\Messenger Plus Live --------- 0 <br />
&nbsp;21.01.2010 21:27&nbsp; &nbsp;  C:\Programme\Conduit --------- 0 <br />
&nbsp;21.01.2010 11:03&nbsp; &nbsp;  C:\Programme\a-squared Free --------- 0 <br />
&nbsp;21.01.2010 08:44&nbsp; &nbsp;  C:\Programme\Google --------- 0 <br />
&nbsp;20.01.2010 22:15&nbsp; &nbsp;  C:\Programme\InstallShield Installation Information --------- 0 <br />
&nbsp;20.01.2010 22:13&nbsp; &nbsp;  C:\Programme\Electronic Arts --------- 0 <br />
&nbsp;20.01.2010 22:09&nbsp; &nbsp;  C:\Programme\BrainGame --------- 0 <br />
&nbsp;20.01.2010 22:09&nbsp; &nbsp;  C:\Programme\CCleaner --------- 0 <br />
&nbsp;20.01.2010 17:37&nbsp; &nbsp;  C:\Programme\Panda Security --------- 0 <br />
&nbsp;20.01.2010 17:14&nbsp; &nbsp;  C:\Programme\Java --------- 0 <br />
&nbsp;20.01.2010 07:40&nbsp; &nbsp;  C:\Programme\Microsoft Silverlight --------- 0 <br />
&nbsp;19.01.2010 21:23&nbsp; &nbsp;  C:\Programme\myphotobook --------- 0 <br />
&nbsp;19.01.2010 21:23&nbsp; &nbsp;  C:\Programme\World of Warcraft Trial --------- 0 <br />
&nbsp;19.01.2010 21:23&nbsp; &nbsp;  C:\Programme\THQ --------- 0 <br />
&nbsp;16.01.2010 11:08&nbsp; &nbsp;  C:\Programme\Ubisoft --------- 0 <br />
&nbsp;22.12.2009 13:41&nbsp; &nbsp;  C:\Programme\Disney Interactive --------- 0 <br />
&nbsp;18.11.2009 16:17&nbsp; &nbsp;  C:\Programme\Microsoft Works --------- 0 <br />
&nbsp;18.11.2009 13:59&nbsp; &nbsp;  C:\Programme\Windows Live --------- 0 <br />
&nbsp;11.09.2009 14:36&nbsp; &nbsp;  C:\Programme\Bethesda Softworks --------- 0 <br />
&nbsp;08.09.2009 11:47&nbsp; &nbsp;  C:\Programme\Gemeinsame Dateien --------- 0 <br />
&nbsp;08.09.2009 11:47&nbsp; &nbsp;  C:\Programme\DVDVideoSoft --------- 0 <br />
&nbsp;23.08.2009 09:17&nbsp; &nbsp;  C:\Programme\BIPA --------- 0 <br />
&nbsp;16.08.2009 11:45&nbsp; &nbsp;  C:\Programme\MSBuild --------- 0 <br />
&nbsp;16.08.2009 11:45&nbsp; &nbsp;  C:\Programme\Reference Assemblies --------- 0 <br />
&nbsp;13.08.2009 11:06&nbsp; &nbsp;  C:\Programme\Outlook Express --------- 0 <br />
&nbsp;28.07.2009 18:19&nbsp; &nbsp;  C:\Programme\Microsoft WSE --------- 0 <br />
&nbsp;24.07.2009 18:29&nbsp; &nbsp;  C:\Programme\DAEMON Tools Lite --------- 0 <br />
&nbsp;23.07.2009 20:11&nbsp; &nbsp;  C:\Programme\WinRAR --------- 0 <br />
&nbsp;23.07.2009 19:33&nbsp; &nbsp;  C:\Programme\DAEMON Tools Toolbar --------- 0 <br />
&nbsp;23.07.2009 19:29&nbsp; &nbsp;  C:\Programme\DAEMON Tools Pro --------- 0 <br />
&nbsp;21.03.2009 22:13&nbsp; &nbsp;  C:\Programme\Windows Live Toolbar --------- 0 <br />
&nbsp;21.03.2009 22:07&nbsp; &nbsp;  C:\Programme\Microsoft Sync Framework --------- 0 <br />
&nbsp;21.03.2009 22:06&nbsp; &nbsp;  C:\Programme\Microsoft SQL Server Compact Edition --------- 0 <br />
&nbsp;21.03.2009 22:04&nbsp; &nbsp;  C:\Programme\Microsoft --------- 0 <br />
&nbsp;21.03.2009 22:04&nbsp; &nbsp;  C:\Programme\Windows Live SkyDrive --------- 0 <br />
&nbsp;27.02.2009 18:11&nbsp; &nbsp;  C:\Programme\NATIONAL_GEOGRAPHIC --------- 0 <br />
&nbsp;29.01.2009 17:22&nbsp; &nbsp;  C:\Programme\heureka --------- 0 <br />
&nbsp;26.12.2008 17:10&nbsp; &nbsp;  C:\Programme\Firefly Studios --------- 0 <br />
&nbsp;10.12.2008 15:31&nbsp; &nbsp;  C:\Programme\LimeWire --------- 0 <br />
&nbsp;13.10.2008 17:57&nbsp; &nbsp;  C:\Programme\Helbling --------- 0 <br />
&nbsp;29.09.2008 07:37&nbsp; &nbsp;  C:\Programme\Messenger --------- 0 <br />
&nbsp;29.09.2008 07:34&nbsp; &nbsp;  C:\Programme\Movie Maker --------- 0 <br />
&nbsp;29.09.2008 07:33&nbsp; &nbsp;  C:\Programme\NetMeeting --------- 0 <br />
&nbsp;29.09.2008 07:33&nbsp; &nbsp;  C:\Programme\Windows Media Player --------- 0 <br />
&nbsp;29.09.2008 07:33&nbsp; &nbsp;  C:\Programme\Windows NT --------- 0 <br />
&nbsp;19.09.2008 17:29&nbsp; &nbsp;  C:\Programme\Apple Software Update --------- 0 <br />
&nbsp;19.09.2008 17:27&nbsp; &nbsp;  C:\Programme\iTunes --------- 0 <br />
&nbsp;19.09.2008 17:27&nbsp; &nbsp;  C:\Programme\iPod --------- 0 <br />
&nbsp;19.09.2008 17:26&nbsp; &nbsp;  C:\Programme\QuickTime --------- 0 <br />
&nbsp;19.09.2008 17:16&nbsp; &nbsp;  C:\Programme\Safari --------- 0 <br />
&nbsp;19.09.2008 17:14&nbsp; &nbsp;  C:\Programme\Bonjour --------- 0 <br />
&nbsp;24.08.2008 08:42&nbsp; &nbsp;  C:\Programme\Disc2Phone --------- 0 <br />
&nbsp;05.08.2008 09:37&nbsp; &nbsp;  C:\Programme\WfK --------- 0 <br />
&nbsp;05.08.2008 09:13&nbsp; &nbsp;  C:\Programme\directx --------- 0 <br />
&nbsp;05.08.2008 09:13&nbsp; &nbsp;  C:\Programme\JoWooD --------- 0 <br />
&nbsp;27.07.2008 19:33&nbsp; &nbsp;  C:\Programme\Skype --------- 0 <br />
&nbsp;23.07.2008 21:55&nbsp; &nbsp;  C:\Programme\fotobuch.de AG --------- 0 <br />
&nbsp;04.07.2008 08:10&nbsp; &nbsp;  C:\Programme\Adobe --------- 0 <br />
&nbsp;17.06.2008 12:22&nbsp; &nbsp;  C:\Programme\Avery --------- 0 <br />
&nbsp;02.04.2008 12:24&nbsp; &nbsp;  C:\Programme\Langenscheidt ELT --------- 0 <br />
&nbsp;26.03.2008 10:52&nbsp; &nbsp;  C:\Programme\Windows Media Connect 2 --------- 0 <br />
&nbsp;06.02.2008 18:12&nbsp; &nbsp;  C:\Programme\Windows Live Favorites --------- 0 <br />
&nbsp;06.02.2008 17:56&nbsp; &nbsp;  C:\Programme\MSN --------- 0 <br />
&nbsp;17.01.2008 20:16&nbsp; &nbsp;  C:\Programme\NETGEAR --------- 0 <br />
&nbsp;17.01.2008 20:05&nbsp; &nbsp;  C:\Programme\Hewlett-Packard --------- 0 <br />
&nbsp;17.01.2008 20:02&nbsp; &nbsp;  C:\Programme\hp deskjet 5550 series --------- 0 <br />
&nbsp;17.01.2008 18:25&nbsp; &nbsp;  C:\Programme\Nero --------- 0 <br />
&nbsp;17.01.2008 16:43&nbsp; &nbsp;  C:\Programme\Microsoft Office --------- 0 <br />
&nbsp;17.01.2008 14:17&nbsp; &nbsp;  C:\Programme\Microsoft.NET --------- 0 <br />
&nbsp;17.01.2008 14:05&nbsp; &nbsp;  C:\Programme\Alwil Software --------- 0 <br />
&nbsp;17.01.2008 13:58&nbsp; &nbsp;  C:\Programme\DIFX --------- 0 <br />
&nbsp;18.07.2007 23:26&nbsp; &nbsp;  C:\Programme\xerox --------- 0 <br />
&nbsp;18.07.2007 23:26&nbsp; &nbsp;  C:\Programme\WindowsUpdate --------- 0 <br />
&nbsp;18.07.2007 23:26&nbsp; &nbsp;  C:\Programme\Uninstall Information --------- 0 <br />
&nbsp;18.07.2007 23:26&nbsp; &nbsp;  C:\Programme\Online-Dienste --------- 0 <br />
&nbsp;18.07.2007 23:26&nbsp; &nbsp;  C:\Programme\Online Services --------- 0 <br />
&nbsp;18.07.2007 23:24&nbsp; &nbsp;  C:\Programme\MSN Gaming Zone --------- 0 <br />
&nbsp;18.07.2007 23:24&nbsp; &nbsp;  C:\Programme\microsoft frontpage --------- 0 <br />
&nbsp;18.07.2007 23:23&nbsp; &nbsp;  C:\Programme\ComPlus Applications --------- 0 <br />
&nbsp;18.07.2007 23:22&nbsp; &nbsp;  C:\Programme\Activation Assistant for the 2007 Microsoft Office suites --------- 0 <br />
----------------------------------------<br />
<br />
&nbsp;<br />
C:\Dokumente und Einstellungen\All Users\.. <br />
<br />
Administrator&nbsp; &nbsp; <br />
xxxxxx&nbsp; <br />
NetworkService&nbsp; &nbsp; <br />
LocalService&nbsp; &nbsp; <br />
Default User&nbsp; &nbsp; <br />
All Users&nbsp; &nbsp; <br />
----------------------------------------<br />
<br />
&nbsp;<br />
C:\WINDOWS\system32\drivers\etc\hosts<br />
<br />
127.0.0.1&nbsp; &nbsp; &nbsp;  localhost<br />
<br />
----------------------------------------<br />
<br />
&nbsp;<br />
<br />
Abbildname&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; PID Sitzungsname&nbsp; &nbsp; &nbsp; Sitz.-Nr. Speichernutzung<br />
========================= ===== ================ ========== ===============<br />
System Idle Process&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 16 K<br />
System&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 4 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  220 K<br />
smss.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 776 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  400 K<br />
csrss.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 1156 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  3.892 K<br />
winlogon.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  1180 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  2.744 K<br />
services.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  1252 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  3.344 K<br />
lsass.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 1264 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  1.696 K<br />
svchost.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 1448 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  4.888 K<br />
svchost.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 1500 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  4.416 K<br />
svchost.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 1824 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp; 13.656 K<br />
svchost.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 1844 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  3.536 K<br />
svchost.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 1952 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  3.004 K<br />
explorer.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  1016 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp; 22.020 K<br />
iexplore.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 636 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  4.548 K<br />
ctfmon.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 916 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  3.116 K<br />
iexplore.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 604 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  9.144 K<br />
notepad.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 1812 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  688 K<br />
TeamViewer.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 192 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  2.284 K<br />
iexplore.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 428 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp; 41.276 K<br />
iexplore.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  1200 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp; 48.600 K<br />
cmd.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  816 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  2.300 K<br />
tasklist.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 304 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  4.540 K<br />
wmiprvse.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  1024 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  5.924 K<br />
<br />
&nbsp;<br />
***** Ende des Scans 25.01.2010 um 12:47:45,00 ***</code><hr />
</div> Vielen Dank für eure rasche Hilfe!<br />
<br />
lg</div>

 ]]></content:encoded>
			<category domain="http://www.hijackthis-forum.de/archiv/">Archiv</category>
			<dc:creator>dundg</dc:creator>
			<guid isPermaLink="true">http://www.hijackthis-forum.de/archiv/42057-grosses-problem.html</guid>
		</item>
		<item>
			<title>Alles ok ?</title>
			<link>http://www.hijackthis-forum.de/archiv/42056-alles-ok.html</link>
			<pubDate>Mon, 25 Jan 2010 11:26:21 GMT</pubDate>
			<description><![CDATA[Hallo, 
wäre super nett, wenn jemand mal mein log anschauen könnte. Möchte nur wissen ob alles ok ist, und was die beiden Einträge: 
 
 
Code: 
--------- 
 O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe 
O9 - Extra 'Tools' menuitem: Windows...]]></description>
			<content:encoded><![CDATA[<div>Hallo,<br />
wäre super nett, wenn jemand mal mein log anschauen könnte. Möchte nur wissen ob alles ok ist, und was die beiden Einträge:<br />
<br />
<div class="bbcode_container">
	<div class="bbcode_description">Code:</div>
	<hr /><code class="bbcode_code"> O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe<br />
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe</code><hr />
</div> bedeuten? Kann ich die beheben, also wenn das mit dem messenger von win zu tun hat, den hab ich gar nicht mitinstalliert. Hatte nämlich mit nlite ne eigene installcd gebastelt und den messenger nicht mit dazugepackt. Deshalb wundert mich, was das sein soll?<br />
<br />
So hier mein logfile:<br />
<div class="bbcode_container">
	<div class="bbcode_description">Code:</div>
	<hr /><code class="bbcode_code"> Logfile of Trend Micro HijackThis v2.0.2<br />
Scan saved at 12:20:27, on 25.01.2010<br />
Platform: Windows XP SP3 (WinNT 5.01.2600)<br />
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)<br />
Boot mode: Normal<br />
<br />
Running processes:<br />
C:\WINDOWS\System32\smss.exe<br />
C:\WINDOWS\system32\winlogon.exe<br />
C:\WINDOWS\system32\services.exe<br />
C:\WINDOWS\system32\lsass.exe<br />
C:\WINDOWS\system32\nvsvc32.exe<br />
C:\WINDOWS\system32\svchost.exe<br />
C:\WINDOWS\System32\svchost.exe<br />
C:\WINDOWS\system32\spoolsv.exe<br />
C:\WINDOWS\Explorer.EXE<br />
C:\Programme\Western Digital Technologies\Spindown\ExSpinDn.exe<br />
C:\WINDOWS\system32\CTsvcCDA.EXE<br />
C:\WINDOWS\system32\FsUsbExService.Exe<br />
C:\Programme\Java\jre6\bin\jqs.exe<br />
C:\Programme\Maxtor\Sync\SyncServices.exe<br />
C:\Programme\Microsoft LifeCam\MSCamS32.exe<br />
C:\Programme\Gemeinsame Dateien\Nero\Nero BackItUp 4\NBService.exe<br />
C:\Programme\Norton Ghost\Agent\VProSvc.exe<br />
C:\Programme\Gemeinsame Dateien\SafeNet Sentinel\Sentinel Protection Server\WinNT\spnsrvnt.exe<br />
C:\WINDOWS\system32\svchost.exe<br />
C:\Programme\Norton Ghost\Shared\Drivers\SymSnapService.exe<br />
C:\Programme\Microsoft Office\Office12\OUTLOOK.EXE<br />
C:\Programme\Mozilla Firefox\firefox.exe<br />
C:\Programme\Trend Micro\HijackThis\HijackThis.exe<br />
<br />
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Programme\Gemeinsame Dateien\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll<br />
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Programme\Kaspersky Lab\Kaspersky Internet Security 2009\ievkbd.dll<br />
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Programme\Microsoft Office\Office12\GrooveShellExtensions.dll<br />
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programme\Java\jre6\bin\jp2ssv.dll<br />
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Programme\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll<br />
O4 - HKLM\..\Run: [AVP] &quot;C:\Programme\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe&quot;<br />
O4 - HKLM\..\Run: [WD Spindown Utility] &quot;C:\Programme\Western Digital Technologies\Spindown\ExSpinDn.exe&quot;<br />
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k<br />
O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet<br />
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup<br />
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] &quot;C:\Programme\Adobe\Reader 9.0\Reader\Reader_sl.exe&quot;<br />
O4 - HKLM\..\Run: [Adobe ARM] &quot;C:\Programme\Gemeinsame Dateien\Adobe\ARM\1.0\AdobeARM.exe&quot;<br />
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOKALER DIENST')<br />
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETZWERKDIENST')<br />
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')<br />
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')<br />
O4 - S-1-5-18 Startup: T-Online.lnk = ? (User 'SYSTEM')<br />
O4 - .DEFAULT Startup: T-Online.lnk = ? (User 'Default user')<br />
O4 - Startup: T-Online.lnk = ?<br />
O8 - Extra context menu item: Hinzufügen zu Anti-Banner - C:\Programme\Kaspersky Lab\Kaspersky Internet Security 2009\ie_banner_deny.htm<br />
O8 - Extra context menu item: Nach Microsoft E&amp;xel exportieren - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000<br />
O9 - Extra button: Statistik für den Schutz des Web-Datenverkehrs - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Programme\Kaspersky Lab\Kaspersky Internet Security 2009\SCIEPlgn.dll<br />
O9 - Extra button: An OneNote senden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll<br />
O9 - Extra 'Tools' menuitem: An OneNote s&amp;enden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll<br />
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL<br />
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe<br />
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe<br />
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe<br />
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe<br />
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1255630558671<br />
O17 - HKLM\System\CCS\Services\Tcpip\..\{2FFD6CDB-3C71-4AF6-95D6-25B0ED394AE4}: NameServer = 217.0.43.17 217.0.43.49<br />
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Programme\Microsoft Office\Office12\GrooveSystemServices.dll<br />
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\GEMEIN~1\Skype\SKYPE4~1.DLL<br />
O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll,C:\PROGRA~1\KASPER~1\KASPER~1\adialhk.dll,C:\PROGRA~1\KASPER~1\KASPER~1\kloehk.dll<br />
O23 - Service: Kaspersky Internet Security (AVP) - Kaspersky Lab - C:\Programme\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe<br />
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.EXE<br />
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Programme\Gemeinsame Dateien\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe<br />
O23 - Service: FsUsbExService - Teruten - C:\WINDOWS\system32\FsUsbExService.Exe<br />
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Programme\Google\Update\GoogleUpdate.exe<br />
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Programme\Java\jre6\bin\jqs.exe<br />
O23 - Service: Maxtor Service (Maxtor Sync Service) - Seagate Technology LLC - C:\Programme\Maxtor\Sync\SyncServices.exe<br />
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Programme\Gemeinsame Dateien\Nero\Nero BackItUp 4\NBService.exe<br />
O23 - Service: Norton Ghost - Symantec Corporation - C:\Programme\Norton Ghost\Agent\VProSvc.exe<br />
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe<br />
O23 - Service: Sentinel Protection Server (SentinelProtectionServer) - SafeNet, Inc - C:\Programme\Gemeinsame Dateien\SafeNet Sentinel\Sentinel Protection Server\WinNT\spnsrvnt.exe<br />
O23 - Service: ServiceLayer - Nokia. - C:\Programme\PC Connectivity Solution\ServiceLayer.exe<br />
O23 - Service: Steganos VPN Starter Service (SVPNStarter) - Unknown owner - C:\Programme\Steganos Internet Anonym VPN\SVPNStarter.exe (file missing)<br />
O23 - Service: SymSnapService - Symantec - C:\Programme\Norton Ghost\Shared\Drivers\SymSnapService.exe<br />
<br />
--<br />
End of file - 6761 bytes</code><hr />
</div> Vielen Dank im Voraus!!!</div>

 ]]></content:encoded>
			<category domain="http://www.hijackthis-forum.de/archiv/">Archiv</category>
			<dc:creator>fatalis</dc:creator>
			<guid isPermaLink="true">http://www.hijackthis-forum.de/archiv/42056-alles-ok.html</guid>
		</item>
		<item>
			<title>Sauber?</title>
			<link>http://www.hijackthis-forum.de/archiv/42046-sauber.html</link>
			<pubDate>Sun, 24 Jan 2010 20:47:43 GMT</pubDate>
			<description>Hallo, 
 
nachdem mir mein Laptop langsam echt auf den Geist geht... Er ist recht langsam, Hijack konnte ich nur starten, nachdem ich die exe in .com umbenannt hab und ich hab ziemliche Probleme mit Firefox (langsam, Google-Ergebnisse hüpfen auf Yahoo, Facebook funktioniert teilweise nicht richtig,...</description>
			<content:encoded><![CDATA[<div>Hallo,<br />
<br />
nachdem mir mein Laptop langsam echt auf den Geist geht... Er ist recht langsam, Hijack konnte ich nur starten, nachdem ich die exe in .com umbenannt hab und ich hab ziemliche Probleme mit Firefox (langsam, Google-Ergebnisse hüpfen auf Yahoo, Facebook funktioniert teilweise nicht richtig, hängt sich oft auf...).<br />
Ich hoffe, dass Ihr mir helfen könnt. <br />
Vielen herzlichen Dank im Vorraus!<br />
LG<br />
<br />
<br />
<br />
<div class="bbcode_container">
	<div class="bbcode_description">Code:</div>
	<hr /><code class="bbcode_code">Logfile of Trend Micro HijackThis v2.0.3 (BETA)<br />
Scan saved at 21:21:59, on 24.01.2010<br />
Platform: Windows XP SP3 (WinNT 5.01.2600)<br />
MSIE: Internet Explorer v8.00 (8.00.6001.18702)<br />
Boot mode: Normal<br />
<br />
Running processes:<br />
C:\WINDOWS\System32\smss.exe<br />
C:\WINDOWS\system32\winlogon.exe<br />
C:\WINDOWS\system32\services.exe<br />
C:\WINDOWS\system32\lsass.exe<br />
C:\WINDOWS\system32\Ati2evxx.exe<br />
C:\WINDOWS\system32\svchost.exe<br />
C:\WINDOWS\System32\svchost.exe<br />
C:\WINDOWS\system32\svchost.exe<br />
C:\WINDOWS\system32\Ati2evxx.exe<br />
C:\Programme\Intel\Wireless\Bin\EvtEng.exe<br />
C:\Programme\Intel\Wireless\Bin\S24EvMon.exe<br />
C:\WINDOWS\system32\spoolsv.exe<br />
C:\Programme\Avira\AntiVir Desktop\sched.exe<br />
C:\Programme\Avira\AntiVir Desktop\avguard.exe<br />
C:\Programme\TOSHIBA\ConfigFree\CFSvcs.exe<br />
c:\Programme\LRZ VPN Client\cvpnd.exe<br />
C:\WINDOWS\system32\DVDRAMSV.exe<br />
C:\Programme\Java\jre6\bin\jqs.exe<br />
C:\Programme\Gemeinsame Dateien\Microsoft Shared\VS7DEBUG\MDM.EXE<br />
C:\Programme\Intel\Wireless\Bin\RegSrvc.exe<br />
C:\WINDOWS\system32\svchost.exe<br />
C:\Programme\Toshiba\TOSHIBA Applet\TAPPSRV.exe<br />
C:\Programme\Stardock\Object Desktop\WindowBlinds\wbload.exe<br />
C:\WINDOWS\system32\ctfmon.exe<br />
C:\WINDOWS\Explorer.EXE<br />
C:\WINDOWS\system32\wbem\wmiapsrv.exe<br />
C:\Programme\Gemeinsame Dateien\Teleca Shared\Generic.exe<br />
C:\Programme\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe<br />
C:\Programme\Synaptics\SynTP\SynTPEnh.exe<br />
C:\WINDOWS\RTHDCPL.EXE<br />
C:\WINDOWS\AGRSMMSG.exe<br />
C:\Programme\Toshiba\Toshiba Applet\thotkey.exe<br />
C:\WINDOWS\system32\TPSMain.exe<br />
C:\Programme\Synaptics\SynTP\Toshiba.exe<br />
C:\Programme\TOSHIBA\ConfigFree\NDSTray.exe<br />
C:\Programme\TOSHIBA\TOSHIBA Zoom-Dienstprogramm\SmoothView.exe<br />
C:\Programme\TOSHIBA\TOSHIBA Controls\TFncKy.exe<br />
C:\WINDOWS\system32\TDispVol.exe<br />
C:\Programme\TOSHIBA\Tvs\TvsTray.exe<br />
C:\WINDOWS\system32\TPSBattM.exe<br />
C:\WINDOWS\System32\svchost.exe<br />
C:\Programme\Intel\Wireless\bin\ZCfgSvc.exe<br />
C:\Programme\Intel\Wireless\Bin\ifrmewrk.exe<br />
C:\Programme\TOSHIBA\ConfigFree\CFSServ.exe<br />
C:\Programme\Avira\AntiVir Desktop\avgnt.exe<br />
C:\Programme\ATI Technologies\ATI.ACE\CLI.EXE<br />
C:\WINDOWS\system32\dla\tfswctrl.exe<br />
C:\PROGRA~1\Intel\Wireless\Bin\Dot1XCfg.exe<br />
C:\Programme\Java\jre6\bin\jusched.exe<br />
C:\Programme\TOSHIBA\TOSCDSPD\toscdspd.exe<br />
C:\Programme\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe<br />
C:\Dokumente und Einstellungen\Clarissa Thalmaier\Anwendungsdaten\SanDisk\Sansa Updater\SansaDispatch.exe<br />
C:\Programme\DNA\btdna.exe<br />
C:\Programme\ATI Technologies\ATI.ACE\cli.exe<br />
C:\Programme\ATI Technologies\ATI.ACE\cli.exe<br />
C:\Programme\Internet Explorer\iexplore.exe<br />
C:\Programme\Internet Explorer\iexplore.exe<br />
C:\Programme\Internet Explorer\iexplore.exe<br />
C:\WINDOWS\system32\msiexec.exe<br />
C:\Programme\HijackThis\TrendMicro\HiJackThis\HiJackThis.com.exe<br />
<br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157<br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896<br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896<br />
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157<br />
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = <br />
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=localhost:7171<br />
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local<br />
R3 - URLSearchHook: (no name) -&nbsp; - (no file)<br />
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Programme\Gemeinsame Dateien\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll<br />
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Programme\Google\Google Toolbar\GoogleToolbar_32.dll<br />
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Programme\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll<br />
O2 - BHO: C:\WINDOWS\system32\gsf83iujid.dll - {B2C7B2A1-00F3-42BD-F434-00AABA2C8952} - C:\WINDOWS\system32\gsf83iujid.dll (file missing)<br />
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programme\Java\jre6\bin\jp2ssv.dll<br />
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Programme\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll<br />
O3 - Toolbar: (no name) - {CD292324-974F-4224-D074-CACA427AA030} - (no file)<br />
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Programme\Google\Google Toolbar\GoogleToolbar_32.dll<br />
O4 - HKLM\..\Run: [SynTPEnh] C:\Programme\Synaptics\SynTP\SynTPEnh.exe<br />
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE<br />
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE<br />
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe<br />
O4 - HKLM\..\Run: [THotkey] C:\Programme\Toshiba\Toshiba Applet\thotkey.exe<br />
O4 - HKLM\..\Run: [TPSMain] TPSMain.exe<br />
O4 - HKLM\..\Run: [NDSTray.exe] NDSTray.exe<br />
O4 - HKLM\..\Run: [SmoothView] C:\Programme\TOSHIBA\TOSHIBA Zoom-Dienstprogramm\SmoothView.exe<br />
O4 - HKLM\..\Run: [TFncKy] TFncKy.exe<br />
O4 - HKLM\..\Run: [TDispVol] TDispVol.exe<br />
O4 - HKLM\..\Run: [Tvs] C:\Programme\TOSHIBA\Tvs\TvsTray.exe<br />
O4 - HKLM\..\Run: [IntelZeroConfig] &quot;C:\Programme\Intel\Wireless\bin\ZCfgSvc.exe&quot;<br />
O4 - HKLM\..\Run: [IntelWireless] &quot;C:\Programme\Intel\Wireless\Bin\ifrmewrk.exe&quot; /tf Intel PROSet/Wireless<br />
O4 - HKLM\..\Run: [CFSServ.exe] CFSServ.exe -NoClient<br />
O4 - HKLM\..\Run: [DAEMON Tools] &quot;C:\Programme\DAEMON Tools\daemon.exe&quot; -lang 1033<br />
O4 - HKLM\..\Run: [ATICCC] &quot;C:\Programme\ATI Technologies\ATI.ACE\CLIStart.exe&quot;<br />
O4 - HKLM\..\Run: [avgnt] &quot;C:\Programme\Avira\AntiVir Desktop\avgnt.exe&quot; /min<br />
O4 - HKLM\..\Run: [oiptlx] C:\WINDOWS\system32\winsysrv.exe<br />
O4 - HKLM\..\Run: [sysldtray] C:\windows\ld08.exe<br />
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe<br />
O4 - HKLM\..\Run: [SunJavaUpdateSched] &quot;C:\Programme\Java\jre6\bin\jusched.exe&quot;<br />
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] &quot;C:\Programme\Adobe\Reader 9.0\Reader\Reader_sl.exe&quot;<br />
O4 - HKLM\..\Run: [Adobe ARM] &quot;C:\Programme\Gemeinsame Dateien\Adobe\ARM\1.0\AdobeARM.exe&quot;<br />
O4 - HKLM\..\Run: [QuickTime Task] &quot;C:\Programme\QuickTime\QTTask.exe&quot; -atboottime<br />
O4 - HKCU\..\Run: [TOSCDSPD] C:\Programme\TOSHIBA\TOSCDSPD\toscdspd.exe<br />
O4 - HKCU\..\Run: [swg] &quot;C:\Programme\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe&quot;<br />
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe<br />
O4 - HKCU\..\Run: [SansaDispatch] C:\Dokumente und Einstellungen\Clarissa Thalmaier\Anwendungsdaten\SanDisk\Sansa Updater\SansaDispatch.exe<br />
O4 - HKCU\..\Run: [BitTorrent DNA] &quot;C:\Programme\DNA\btdna.exe&quot;<br />
O4 - HKCU\..\Run: [] C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\d3erm20u.exe<br />
O4 - HKCU\..\Run: [hsf7husjnfg98gi498aejhiugjkdg4] C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\d3erm20u.exe<br />
O4 - HKCU\..\Run: [SYSDLL] SYSDLL<br />
O4 - HKCU\..\Run: [EA Core] &quot;C:\Programme\Electronic Arts\EADM\Core.exe&quot; -silent<br />
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOKALER DIENST')<br />
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETZWERKDIENST')<br />
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')<br />
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')<br />
O4 - Startup: Adobe Gamma.lnk = C:\Programme\Gemeinsame Dateien\Adobe\Calibration\Adobe Gamma Loader.exe<br />
O8 - Extra context menu item: &amp;ICQ Toolbar Search - res://C:\Programme\ICQToolbar\toolbaru.dll/SEARCH.HTML<br />
O8 - Extra context menu item: Google Sidewiki... - res://C:\Programme\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll/cmsidewiki.html<br />
O8 - Extra context menu item: Nach Microsoft &amp;Excel exportieren - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000<br />
O9 - Extra button: Recherchieren - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL<br />
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Programme\ICQLite\ICQLite.exe (file missing)<br />
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Programme\ICQLite\ICQLite.exe (file missing)<br />
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe<br />
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe<br />
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe<br />
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe<br />
O9 - Extra button: eBay - {2D941D56-1B19-44AE-8CF5-08331A3B4CCF} - C:\Programme\Internet Explorer\Signup\ToshibaGotoEbay.exe (HKCU)<br />
O16 - DPF: {149E45D8-163E-4189-86FC-45022AB2B6C9} (SpinTop DRM Control) - file:///C:/Programme/Monopoly/Images/stg_drm.ocx<br />
O16 - DPF: {CC450D71-CC90-424C-8638-1F2DBAC87A54} (ArmHelper Control) - file:///C:/Programme/Monopoly/Images/armhelper.ocx<br />
O17 - HKLM\System\CCS\Services\Tcpip\..\{6E21C50D-3DD4-4600-8EBA-B1D8BA261EFF}: NameServer = 85.255.112.198,85.255.112.70<br />
O17 - HKLM\System\CCS\Services\Tcpip\..\{AE143B58-67EE-4F6D-8DB9-4C2FD1C4521D}: NameServer = 85.255.112.198,85.255.112.70<br />
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 85.255.112.198,85.255.112.70<br />
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: NameServer = 85.255.112.198,85.255.112.70<br />
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 85.255.112.198,85.255.112.70<br />
O20 - Winlogon Notify: nnnkJYqQ - nnnkJYqQ.dll (file missing)<br />
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll<br />
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll<br />
O22 - SharedTaskScheduler: hs837hiudjgfo9s8gjio4gfd - {B2C7B2A1-00F3-42BD-F434-00AABA2C8952} - C:\WINDOWS\system32\gsf83iujid.dll (file missing)<br />
O23 - Service: Adobe LM Service - Adobe Systems - C:\Programme\Gemeinsame Dateien\Adobe Systems Shared\Service\Adobelmsvc.exe<br />
O23 - Service: Avira AntiVir Planer (AntiVirSchedulerService) - Avira GmbH - C:\Programme\Avira\AntiVir Desktop\sched.exe<br />
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Programme\Avira\AntiVir Desktop\avguard.exe<br />
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe<br />
O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Programme\TOSHIBA\ConfigFree\CFSvcs.exe<br />
O23 - Service: Cisco Systems, Inc. VPN Service (CVPND) - Cisco Systems, Inc. - c:\Programme\LRZ VPN Client\cvpnd.exe<br />
O23 - Service: DVD-RAM_Service - Matsu****a Electric Industrial Co., Ltd. - C:\WINDOWS\system32\DVDRAMSV.exe<br />
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Programme\Intel\Wireless\Bin\EvtEng.exe<br />
O23 - Service: Google Software Updater (gusvc) - Google - C:\Programme\Google\Common\Google Updater\GoogleUpdaterService.exe<br />
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programme\Gemeinsame Dateien\InstallShield\Driver\11\Intel 32\IDriverT.exe<br />
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Programme\Java\jre6\bin\jqs.exe<br />
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Programme\Intel\Wireless\Bin\RegSrvc.exe<br />
O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation&nbsp; - C:\Programme\Intel\Wireless\Bin\S24EvMon.exe<br />
O23 - Service: TOSHIBA Application Service (TAPPSRV) - TOSHIBA Corp. - C:\Programme\Toshiba\TOSHIBA Applet\TAPPSRV.exe<br />
<br />
--<br />
End of file - 11820 bytes</code><hr />
</div>  <div class="bbcode_container">
	<div class="bbcode_description">Code:</div>
	<hr /><code class="bbcode_code"> <br />
&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; $$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$ <br />
&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; º&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; º <br />
&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; hjtscanlist v2.0&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; <br />
&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; º&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; º <br />
&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; $$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$ <br />
<br />
Microsoft Windows XP [Version 5.1.2600]<br />
&nbsp;<br />
&nbsp;<br />
C:<br />
<br />
&nbsp; 24.01.2010 21:16&nbsp; &nbsp; &nbsp; C:\Programme --------- 0 <br />
&nbsp; 24.01.2010 21:13&nbsp; &nbsp; &nbsp; C:\Program Files --------- 0 <br />
&nbsp; 24.01.2010 21:10&nbsp; &nbsp; &nbsp; C:\WINDOWS --------- 0 <br />
&nbsp; &nbsp; &nbsp; &nbsp; C:\hiberfil.sys ---------&nbsp; <br />
&nbsp; &nbsp; &nbsp; &nbsp; C:\pagefile.sys ---------&nbsp; <br />
&nbsp; 26.10.2009 10:06&nbsp; &nbsp; &nbsp; C:\Dokumente und Einstellungen --------- 0 <br />
&nbsp; 15.09.2009 14:03&nbsp; &nbsp; &nbsp; C:\drmHeader.bin --------- 3532 <br />
&nbsp; 27.08.2009 14:20&nbsp; &nbsp; &nbsp; C:\debugInstaller.txt --------- 554 <br />
&nbsp; 23.08.2009 15:59&nbsp; &nbsp; &nbsp; C:\10fa170e98a13b2eb2 --------- 0 <br />
&nbsp; 18.08.2009 10:10&nbsp; &nbsp; &nbsp; C:\sqmdata08.sqm --------- 268 <br />
&nbsp; 18.08.2009 10:10&nbsp; &nbsp; &nbsp; C:\sqmnoopt08.sqm --------- 244 <br />
&nbsp; 15.06.2009 09:53&nbsp; &nbsp; &nbsp; C:\drivers32.txt --------- 3186 <br />
&nbsp; 13.06.2009 15:57&nbsp; &nbsp; &nbsp; C:\boot.ini --------- 211 <br />
&nbsp; 09.06.2009 18:41&nbsp; &nbsp; &nbsp; C:\612939029 --------- 2 <br />
&nbsp; 06.01.2009 17:10&nbsp; &nbsp; &nbsp; C:\Brother --------- 0 <br />
&nbsp; 25.12.2008 20:52&nbsp; &nbsp; &nbsp; C:\RECYCLER --------- 0 <br />
&nbsp; 03.12.2008 18:43&nbsp; &nbsp; &nbsp; C:\Temp --------- 0 <br />
&nbsp; 25.10.2008 10:42&nbsp; &nbsp; &nbsp; C:\System Volume Information --------- 0 <br />
&nbsp; 18.10.2008 08:42&nbsp; &nbsp; &nbsp; C:\ntldr --------- 251712 <br />
&nbsp; 22.06.2008 10:21&nbsp; &nbsp; &nbsp; C:\sqmdata07.sqm --------- 268 <br />
&nbsp; 22.06.2008 10:21&nbsp; &nbsp; &nbsp; C:\sqmnoopt07.sqm --------- 244 <br />
&nbsp; 16.06.2008 15:48&nbsp; &nbsp; &nbsp; C:\DTSHDSpOut.txt --------- 0 <br />
&nbsp; 07.04.2008 16:11&nbsp; &nbsp; &nbsp; C:\divx --------- 0 <br />
&nbsp; 26.03.2008 09:23&nbsp; &nbsp; &nbsp; C:\Logs --------- 0 <br />
&nbsp; 19.03.2008 10:47&nbsp; &nbsp; &nbsp; C:\italian.dll --------- 24576 <br />
&nbsp; 19.03.2008 10:47&nbsp; &nbsp; &nbsp; C:\spanish.dll --------- 24064 <br />
&nbsp; 19.03.2008 10:47&nbsp; &nbsp; &nbsp; C:\german.dll --------- 24064 <br />
&nbsp; 19.03.2008 10:47&nbsp; &nbsp; &nbsp; C:\common.dll --------- 18432 <br />
&nbsp; 19.03.2008 10:47&nbsp; &nbsp; &nbsp; C:\french.dll --------- 23552 <br />
&nbsp; 19.03.2008 10:47&nbsp; &nbsp; &nbsp; C:\japanese.dll --------- 18432 <br />
&nbsp; 19.03.2008 10:47&nbsp; &nbsp; &nbsp; C:\english.dll --------- 22016 <br />
&nbsp; 20.01.2008 15:16&nbsp; &nbsp; &nbsp; C:\wiederhergestelltes Dokument.txt --------- 45639 <br />
&nbsp; 07.12.2007 17:27&nbsp; &nbsp; &nbsp; C:\sqmdata06.sqm --------- 268 <br />
&nbsp; 07.12.2007 17:27&nbsp; &nbsp; &nbsp; C:\sqmnoopt06.sqm --------- 244 <br />
&nbsp; 04.10.2007 18:07&nbsp; &nbsp; &nbsp; C:\CloneDVDTemp --------- 0 <br />
&nbsp; 29.08.2007 12:41&nbsp; &nbsp; &nbsp; C:\~MSSETUP.T --------- 0 <br />
&nbsp; 26.11.2006 22:11&nbsp; &nbsp; &nbsp; C:\Sierra --------- 0 <br />
&nbsp; 17.11.2006 15:05&nbsp; &nbsp; &nbsp; C:\9268efc99ebe0e1e4d4f8d --------- 0 <br />
&nbsp; 26.09.2006 14:58&nbsp; &nbsp; &nbsp; C:\VALUEADD --------- 0 <br />
&nbsp; 16.09.2006 18:01&nbsp; &nbsp; &nbsp; C:\GF_Excpt.txt --------- 26781 <br />
&nbsp; 02.09.2006 12:10&nbsp; &nbsp; &nbsp; C:\sqmdata05.sqm --------- 268 <br />
&nbsp; 02.09.2006 12:10&nbsp; &nbsp; &nbsp; C:\sqmnoopt05.sqm --------- 244 <br />
&nbsp; 02.09.2006 11:26&nbsp; &nbsp; &nbsp; C:\sqmdata04.sqm --------- 268 <br />
&nbsp; 02.09.2006 11:26&nbsp; &nbsp; &nbsp; C:\sqmnoopt04.sqm --------- 244 <br />
&nbsp; 02.09.2006 10:41&nbsp; &nbsp; &nbsp; C:\sqmdata03.sqm --------- 268 <br />
&nbsp; 02.09.2006 10:41&nbsp; &nbsp; &nbsp; C:\sqmnoopt03.sqm --------- 244 <br />
&nbsp; 02.09.2006 10:26&nbsp; &nbsp; &nbsp; C:\sqmdata02.sqm --------- 268 <br />
&nbsp; 02.09.2006 10:26&nbsp; &nbsp; &nbsp; C:\sqmnoopt02.sqm --------- 244 <br />
&nbsp; 01.09.2006 12:56&nbsp; &nbsp; &nbsp; C:\sqmdata01.sqm --------- 268 <br />
&nbsp; 01.09.2006 12:56&nbsp; &nbsp; &nbsp; C:\sqmnoopt01.sqm --------- 244 <br />
&nbsp; 30.08.2006 21:13&nbsp; &nbsp; &nbsp; C:\sqmdata00.sqm --------- 268 <br />
&nbsp; 30.08.2006 21:13&nbsp; &nbsp; &nbsp; C:\sqmnoopt00.sqm --------- 244 <br />
&nbsp; 30.08.2006 19:29&nbsp; &nbsp; &nbsp; C:\sqmdata19.sqm --------- 268 <br />
&nbsp; 30.08.2006 19:29&nbsp; &nbsp; &nbsp; C:\sqmnoopt19.sqm --------- 244 <br />
&nbsp; 29.08.2006 22:11&nbsp; &nbsp; &nbsp; C:\sqmdata18.sqm --------- 268 <br />
&nbsp; 29.08.2006 22:11&nbsp; &nbsp; &nbsp; C:\sqmnoopt18.sqm --------- 244 <br />
&nbsp; 29.08.2006 15:58&nbsp; &nbsp; &nbsp; C:\sqmdata17.sqm --------- 268 <br />
&nbsp; 29.08.2006 15:58&nbsp; &nbsp; &nbsp; C:\sqmnoopt17.sqm --------- 244 <br />
&nbsp; 28.08.2006 20:29&nbsp; &nbsp; &nbsp; C:\sqmdata16.sqm --------- 268 <br />
&nbsp; 28.08.2006 20:29&nbsp; &nbsp; &nbsp; C:\sqmnoopt16.sqm --------- 244 <br />
&nbsp; 28.08.2006 14:09&nbsp; &nbsp; &nbsp; C:\sqmdata15.sqm --------- 268 <br />
&nbsp; 28.08.2006 14:09&nbsp; &nbsp; &nbsp; C:\sqmnoopt15.sqm --------- 244 <br />
&nbsp; 28.08.2006 10:23&nbsp; &nbsp; &nbsp; C:\sqmdata14.sqm --------- 268 <br />
&nbsp; 28.08.2006 10:23&nbsp; &nbsp; &nbsp; C:\sqmnoopt14.sqm --------- 244 <br />
&nbsp; 27.08.2006 19:33&nbsp; &nbsp; &nbsp; C:\sqmdata13.sqm --------- 268 <br />
&nbsp; 27.08.2006 19:33&nbsp; &nbsp; &nbsp; C:\sqmnoopt13.sqm --------- 244 <br />
&nbsp; 27.08.2006 11:56&nbsp; &nbsp; &nbsp; C:\sqmdata12.sqm --------- 268 <br />
&nbsp; 27.08.2006 11:56&nbsp; &nbsp; &nbsp; C:\sqmnoopt12.sqm --------- 244 <br />
&nbsp; 27.08.2006 11:36&nbsp; &nbsp; &nbsp; C:\sqmdata11.sqm --------- 268 <br />
&nbsp; 27.08.2006 11:36&nbsp; &nbsp; &nbsp; C:\sqmnoopt11.sqm --------- 244 <br />
&nbsp; 27.08.2006 11:15&nbsp; &nbsp; &nbsp; C:\sqmdata10.sqm --------- 268 <br />
&nbsp; 27.08.2006 11:15&nbsp; &nbsp; &nbsp; C:\sqmnoopt10.sqm --------- 244 <br />
&nbsp; 26.08.2006 20:43&nbsp; &nbsp; &nbsp; C:\sqmnoopt09.sqm --------- 244 <br />
&nbsp; 26.08.2006 20:43&nbsp; &nbsp; &nbsp; C:\sqmdata09.sqm --------- 268 <br />
&nbsp; 13.06.2006 16:39&nbsp; &nbsp; &nbsp; C:\6ed4efa3cfe4e869d996460a99b78b --------- 0 <br />
&nbsp; 13.06.2006 16:38&nbsp; &nbsp; &nbsp; C:\e49263bd97a640eba47c55572d --------- 0 <br />
&nbsp; 11.06.2006 15:54&nbsp; &nbsp; &nbsp; C:\MEGLO --------- 0 <br />
&nbsp; 08.06.2006 21:39&nbsp; &nbsp; &nbsp; C:\TOOLSCD --------- 0 <br />
&nbsp; 07.02.2006 12:36&nbsp; &nbsp; &nbsp; C:\SUPPORT --------- 0 <br />
&nbsp; 07.02.2006 12:26&nbsp; &nbsp; &nbsp; C:\I386 --------- 0 <br />
&nbsp; 07.02.2006 12:26&nbsp; &nbsp; &nbsp; C:\MSOCache --------- 0 <br />
&nbsp; 19.01.2006 17:43&nbsp; &nbsp; &nbsp; C:\SWSTAMP.TXT --------- 229 <br />
&nbsp; 16.01.2006 12:53&nbsp; &nbsp; &nbsp; C:\CONFIG.SYS --------- 0 <br />
&nbsp; 16.01.2006 12:53&nbsp; &nbsp; &nbsp; C:\MSDOS.SYS --------- 0 <br />
&nbsp; 16.01.2006 12:53&nbsp; &nbsp; &nbsp; C:\IO.SYS --------- 0 <br />
&nbsp; 16.01.2006 12:53&nbsp; &nbsp; &nbsp; C:\AUTOEXEC.BAT --------- 0 <br />
&nbsp; 04.08.2004 14:00&nbsp; &nbsp; &nbsp; C:\NTDETECT.COM --------- 47564 <br />
&nbsp; 04.08.2004 14:00&nbsp; &nbsp; &nbsp; C:\bootfont.bin --------- 4952 <br />
----------------------------------------<br />
<br />
&nbsp;<br />
C:\WINDOWS<br />
<br />
&nbsp; 24.01.2010 21:11&nbsp; &nbsp;  C:\WINDOWS\WindowsUpdate.log --------- 1183163 <br />
&nbsp; 24.01.2010 21:08&nbsp; &nbsp;  C:\WINDOWS\0.log --------- 0 <br />
&nbsp; 24.01.2010 21:08&nbsp; &nbsp;  C:\WINDOWS\ModemLog_TOSHIBA Software Modem.txt --------- 4252 <br />
&nbsp; 24.01.2010 21:08&nbsp; &nbsp;  C:\WINDOWS\wiadebug.log --------- 159 <br />
&nbsp; 24.01.2010 21:08&nbsp; &nbsp;  C:\WINDOWS\wiaservc.log --------- 50 <br />
&nbsp; 24.01.2010 21:07&nbsp; &nbsp;  C:\WINDOWS\bootstat.dat --------- 2048 <br />
&nbsp; 24.01.2010 17:59&nbsp; &nbsp;  C:\WINDOWS\SchedLgU.Txt --------- 32206 <br />
&nbsp; 17.01.2010 21:26&nbsp; &nbsp;  C:\WINDOWS\setupapi.log --------- 614243 <br />
&nbsp; 28.12.2009 15:27&nbsp; &nbsp;  C:\WINDOWS\wmsetup.log --------- 24850 <br />
&nbsp; 28.12.2009 11:30&nbsp; &nbsp;  C:\WINDOWS\comsetup.log --------- 156305 <br />
&nbsp; 28.12.2009 11:30&nbsp; &nbsp;  C:\WINDOWS\iis6.log --------- 75086 <br />
&nbsp; 28.12.2009 11:30&nbsp; &nbsp;  C:\WINDOWS\imsins.log --------- 1393 <br />
&nbsp; 28.12.2009 11:30&nbsp; &nbsp;  C:\WINDOWS\ocmsn.log --------- 26119 <br />
&nbsp; 28.12.2009 11:30&nbsp; &nbsp;  C:\WINDOWS\tsoc.log --------- 180849 <br />
&nbsp; 28.12.2009 11:30&nbsp; &nbsp;  C:\WINDOWS\ntdtcsetup.log --------- 94967 <br />
&nbsp; 28.12.2009 11:30&nbsp; &nbsp;  C:\WINDOWS\KB970430.log --------- 23206 <br />
&nbsp; 28.12.2009 11:30&nbsp; &nbsp;  C:\WINDOWS\ocgen.log --------- 227469 <br />
&nbsp; 28.12.2009 11:30&nbsp; &nbsp;  C:\WINDOWS\msgsocm.log --------- 23654 <br />
&nbsp; 28.12.2009 11:30&nbsp; &nbsp;  C:\WINDOWS\FaxSetup.log --------- 469619 <br />
&nbsp; 28.12.2009 11:30&nbsp; &nbsp;  C:\WINDOWS\updspapi.log --------- 79024 <br />
&nbsp; 28.12.2009 11:30&nbsp; &nbsp;  C:\WINDOWS\imsins.BAK --------- 1393 <br />
&nbsp; 28.12.2009 11:30&nbsp; &nbsp;  C:\WINDOWS\KB955759.log --------- 15776 <br />
&nbsp; 28.12.2009 11:30&nbsp; &nbsp;  C:\WINDOWS\KB974318.log --------- 20703 <br />
&nbsp; 28.12.2009 11:30&nbsp; &nbsp;  C:\WINDOWS\KB976325-IE8.log --------- 16482 <br />
&nbsp; 28.12.2009 11:29&nbsp; &nbsp;  C:\WINDOWS\KB973904.log --------- 10104 <br />
&nbsp; 28.12.2009 11:29&nbsp; &nbsp;  C:\WINDOWS\KB974392.log --------- 15421 <br />
&nbsp; 28.12.2009 11:28&nbsp; &nbsp;  C:\WINDOWS\KB971737.log --------- 15286 <br />
&nbsp; 27.12.2009 18:17&nbsp; &nbsp;  C:\WINDOWS\wininit.ini --------- 405 <br />
&nbsp; 27.12.2009 18:17&nbsp; &nbsp;  C:\WINDOWS\SIERRA.INI --------- 86 <br />
&nbsp; 27.12.2009 13:12&nbsp; &nbsp;  C:\WINDOWS\ntbtlog.txt --------- 492002 <br />
&nbsp; 27.12.2009 12:50&nbsp; &nbsp;  C:\WINDOWS\avmsysnet.log --------- 107 <br />
&nbsp; 27.12.2009 12:50&nbsp; &nbsp;  C:\WINDOWS\avmadd32.log --------- 2971 <br />
&nbsp; 27.12.2009 12:50&nbsp; &nbsp;  C:\WINDOWS\avmadd321.log --------- 2593 <br />
&nbsp; 24.12.2009 22:35&nbsp; &nbsp;  C:\WINDOWS\NeroDigital.ini --------- 116 <br />
&nbsp; 07.12.2009 15:14&nbsp; &nbsp;  C:\WINDOWS\KB976098-v2.log --------- 6621 <br />
&nbsp; 07.12.2009 15:14&nbsp; &nbsp;  C:\WINDOWS\KB973687.log --------- 11247 <br />
&nbsp; 07.12.2009 15:13&nbsp; &nbsp;  C:\WINDOWS\KB976749-IE8.log --------- 10942 <br />
&nbsp; 07.12.2009 15:13&nbsp; &nbsp;  C:\WINDOWS\msxml4-KB973688-enu.LOG --------- 319436 <br />
&nbsp; 07.12.2009 15:12&nbsp; &nbsp;  C:\WINDOWS\KB969947.log --------- 17217 <br />
&nbsp; 04.12.2009 22:18&nbsp; &nbsp;  C:\WINDOWS\win.ini --------- 646 <br />
&nbsp; 04.12.2009 22:16&nbsp; &nbsp;  C:\WINDOWS\DPINST.LOG --------- 290364 <br />
&nbsp; 15.10.2009 14:24&nbsp; &nbsp;  C:\WINDOWS\KB974455-IE8.log --------- 17952 <br />
&nbsp; 15.10.2009 14:23&nbsp; &nbsp;  C:\WINDOWS\KB958869.log --------- 8620 <br />
&nbsp; 15.10.2009 14:23&nbsp; &nbsp;  C:\WINDOWS\KB969059.log --------- 17555 <br />
&nbsp; 15.10.2009 14:22&nbsp; &nbsp;  C:\WINDOWS\KB954155.log --------- 8813 <br />
&nbsp; 15.10.2009 14:22&nbsp; &nbsp;  C:\WINDOWS\KB974112.log --------- 16680 <br />
&nbsp; 15.10.2009 14:22&nbsp; &nbsp;  C:\WINDOWS\KB975025.log --------- 16611 <br />
&nbsp; 15.10.2009 14:22&nbsp; &nbsp;  C:\WINDOWS\KB974571.log --------- 17145 <br />
&nbsp; 15.10.2009 14:19&nbsp; &nbsp;  C:\WINDOWS\KB971486.log --------- 10289 <br />
&nbsp; 15.10.2009 14:18&nbsp; &nbsp;  C:\WINDOWS\KB973525.log --------- 8580 <br />
&nbsp; 15.10.2009 14:18&nbsp; &nbsp;  C:\WINDOWS\KB975467.log --------- 15390 <br />
&nbsp; 11.10.2009 20:28&nbsp; &nbsp;  C:\WINDOWS\Uninstall Jade Empire.exe --------- 81034 <br />
&nbsp; 16.09.2009 09:15&nbsp; &nbsp;  C:\WINDOWS\KB954156.log --------- 4675 <br />
&nbsp; 14.09.2009 16:23&nbsp; &nbsp;  C:\WINDOWS\KB968816.log --------- 7276 <br />
&nbsp; 14.09.2009 16:23&nbsp; &nbsp;  C:\WINDOWS\KB956844.log --------- 7891 <br />
&nbsp; 14.09.2009 16:22&nbsp; &nbsp;  C:\WINDOWS\KB971961-IE8.log --------- 8314 <br />
&nbsp; 14.09.2009 16:10&nbsp; &nbsp;  C:\WINDOWS\DirectX.log --------- 100186 <br />
&nbsp; 09.09.2009 10:38&nbsp; &nbsp;  C:\WINDOWS\KB968389.log --------- 20112 <br />
&nbsp; 01.09.2009 10:13&nbsp; &nbsp;  C:\WINDOWS\KB961118.log --------- 6242 <br />
&nbsp; 01.09.2009 10:12&nbsp; &nbsp;  C:\WINDOWS\KB970653-v3.log --------- 3717 <br />
&nbsp; 23.08.2009 16:58&nbsp; &nbsp;  C:\WINDOWS\spupdsvc.log --------- 12003 <br />
&nbsp; 23.08.2009 16:21&nbsp; &nbsp;  C:\WINDOWS\KB960859.log --------- 38516 <br />
&nbsp; 23.08.2009 16:20&nbsp; &nbsp;  C:\WINDOWS\KB971657.log --------- 38388 <br />
&nbsp; 23.08.2009 16:20&nbsp; &nbsp;  C:\WINDOWS\KB971557.log --------- 37890 <br />
&nbsp; 23.08.2009 16:20&nbsp; &nbsp;  C:\WINDOWS\KB956744.log --------- 31235 <br />
&nbsp; 23.08.2009 15:51&nbsp; &nbsp;  C:\WINDOWS\KB973869.log --------- 10094 <br />
&nbsp; 23.08.2009 15:51&nbsp; &nbsp;  C:\WINDOWS\KB973507.log --------- 18254 <br />
&nbsp; 23.08.2009 15:51&nbsp; &nbsp;  C:\WINDOWS\KB973354.log --------- 9848 <br />
&nbsp; 23.08.2009 15:50&nbsp; &nbsp;  C:\WINDOWS\KB973540.log --------- 8536 <br />
&nbsp; 23.08.2009 15:50&nbsp; &nbsp;  C:\WINDOWS\KB973815.log --------- 17638 <br />
&nbsp; 09.08.2009 12:11&nbsp; &nbsp;  C:\WINDOWS\KB973346.log --------- 13500 <br />
&nbsp; 09.08.2009 12:10&nbsp; &nbsp;  C:\WINDOWS\KB971633.log --------- 19654 <br />
&nbsp; 09.08.2009 12:10&nbsp; &nbsp;  C:\WINDOWS\KB972260-IE8.log --------- 17504 <br />
&nbsp; 09.08.2009 12:09&nbsp; &nbsp;  C:\WINDOWS\KB961371.log --------- 15945 <br />
&nbsp; 23.07.2009 19:02&nbsp; &nbsp;  C:\WINDOWS\setupact.log --------- 2901 <br />
&nbsp; 02.07.2009 12:58&nbsp; &nbsp;  C:\WINDOWS\cadkasdeinst01.exe --------- 73216 <br />
&nbsp; 24.06.2009 18:12&nbsp; &nbsp;  C:\WINDOWS\ModemLog_Sony Ericsson Device 115 USB WMC Modem.txt --------- 4622 <br />
&nbsp; 24.06.2009 18:12&nbsp; &nbsp;  C:\WINDOWS\ModemLog_Sony Ericsson Device 115 USB WMC Data Modem.txt --------- 4632 <br />
&nbsp; 20.06.2009 15:38&nbsp; &nbsp;  C:\WINDOWS\ie8Uninst.log --------- 1974 <br />
&nbsp; 17.06.2009 09:04&nbsp; &nbsp;  C:\WINDOWS\KB969897-IE8.log --------- 14156 <br />
&nbsp; 17.06.2009 09:04&nbsp; &nbsp;  C:\WINDOWS\KB961501.log --------- 18868 <br />
&nbsp; 17.06.2009 09:04&nbsp; &nbsp;  C:\WINDOWS\KB969898.log --------- 8625 <br />
&nbsp; 17.06.2009 09:04&nbsp; &nbsp;  C:\WINDOWS\KB970238.log --------- 18671 <br />
&nbsp; 17.06.2009 09:03&nbsp; &nbsp;  C:\WINDOWS\KB968537.log --------- 18460 <br />
&nbsp; 13.06.2009 15:57&nbsp; &nbsp;  C:\WINDOWS\system.ini --------- 256 <br />
&nbsp; 09.06.2009 19:27&nbsp; &nbsp;  C:\WINDOWS\run_1244590529.exe --------- 0 <br />
&nbsp; 09.06.2009 19:27&nbsp; &nbsp;  C:\WINDOWS\run_1244572101.exe --------- 0 <br />
&nbsp; 01.06.2009 14:05&nbsp; &nbsp;  C:\WINDOWS\Wdf01007Inst.log --------- 5799 <br />
&nbsp; 28.05.2009 13:11&nbsp; &nbsp;  C:\WINDOWS\ie8_main.log --------- 40854 <br />
&nbsp; 28.05.2009 13:11&nbsp; &nbsp;  C:\WINDOWS\KB971180-IE8.log --------- 87298 <br />
&nbsp; 28.05.2009 13:10&nbsp; &nbsp;  C:\WINDOWS\ie8.log --------- 87882 <br />
&nbsp; 15.04.2009 14:52&nbsp; &nbsp;  C:\WINDOWS\KB959426.log --------- 37628 <br />
&nbsp; 15.04.2009 14:51&nbsp; &nbsp;  C:\WINDOWS\KB961373.log --------- 36441 <br />
&nbsp; 15.04.2009 14:51&nbsp; &nbsp;  C:\WINDOWS\KB963027-IE7.log --------- 111736 <br />
&nbsp; 15.04.2009 14:47&nbsp; &nbsp;  C:\WINDOWS\KB956572.log --------- 21425 <br />
&nbsp; 15.04.2009 14:44&nbsp; &nbsp;  C:\WINDOWS\KB952004.log --------- 26000 <br />
&nbsp; 15.04.2009 14:43&nbsp; &nbsp;  C:\WINDOWS\KB960803.log --------- 24533 <br />
&nbsp; 15.04.2009 14:41&nbsp; &nbsp;  C:\WINDOWS\KB923561.log --------- 14744 <br />
&nbsp; 14.03.2009 10:02&nbsp; &nbsp;  C:\WINDOWS\KB960225.log --------- 17590 <br />
&nbsp; 14.03.2009 10:02&nbsp; &nbsp;  C:\WINDOWS\KB938464-v2.log --------- 7554 <br />
&nbsp; 14.03.2009 10:02&nbsp; &nbsp;  C:\WINDOWS\KB958690.log --------- 17377 <br />
&nbsp; 14.03.2009 09:59&nbsp; &nbsp;  C:\WINDOWS\KB959772.log --------- 6785 <br />
&nbsp; 14.03.2009 09:59&nbsp; &nbsp;  C:\WINDOWS\setuperr.log --------- 0 <br />
&nbsp; 25.02.2009 14:57&nbsp; &nbsp;  C:\WINDOWS\KB967715.log --------- 20037 <br />
&nbsp; 18.02.2009 13:55&nbsp; &nbsp;  C:\WINDOWS\winamp.ini --------- 132 <br />
&nbsp; 14.02.2009 21:04&nbsp; &nbsp;  C:\WINDOWS\KB960715.log --------- 13647 <br />
&nbsp; 14.02.2009 21:03&nbsp; &nbsp;  C:\WINDOWS\KB961260-IE7.log --------- 19975 <br />
&nbsp; 01.02.2009 12:14&nbsp; &nbsp;  C:\WINDOWS\KB958687.log --------- 8494 <br />
&nbsp; 30.01.2009 20:35&nbsp; &nbsp;  C:\WINDOWS\egirllic151 --------- 528 <br />
&nbsp; 06.01.2009 17:15&nbsp; &nbsp;  C:\WINDOWS\brpcfx.ini --------- 93 <br />
&nbsp; 06.01.2009 17:15&nbsp; &nbsp;  C:\WINDOWS\Brpfx04a.ini --------- 208 <br />
&nbsp; 06.01.2009 16:55&nbsp; &nbsp;  C:\WINDOWS\BRPP2KA.INI --------- 27 <br />
&nbsp; 06.01.2009 16:55&nbsp; &nbsp;  C:\WINDOWS\BRWMARK.INI --------- 425 <br />
&nbsp; 21.12.2008 13:12&nbsp; &nbsp;  C:\WINDOWS\KB960714-IE7.log --------- 9363 <br />
&nbsp; 17.12.2008 19:51&nbsp; &nbsp;  C:\WINDOWS\KB958215-IE7.log --------- 20414 <br />
&nbsp; 17.12.2008 19:40&nbsp; &nbsp;  C:\WINDOWS\KB952069.log --------- 10262 <br />
&nbsp; 15.12.2008 19:28&nbsp; &nbsp;  C:\WINDOWS\KB955839.log --------- 29700 <br />
&nbsp; 15.12.2008 19:25&nbsp; &nbsp;  C:\WINDOWS\KB954600.log --------- 8574 <br />
&nbsp; 15.12.2008 19:25&nbsp; &nbsp;  C:\WINDOWS\KB956802.log --------- 16501 <br />
&nbsp; 07.12.2008 17:56&nbsp; &nbsp;  C:\WINDOWS\KB957097.log --------- 10437 <br />
&nbsp; 07.12.2008 17:56&nbsp; &nbsp;  C:\WINDOWS\KB954459.log --------- 17417 <br />
&nbsp; 07.12.2008 17:56&nbsp; &nbsp;  C:\WINDOWS\KB955069.log --------- 10848 <br />
&nbsp; 07.12.2008 17:54&nbsp; &nbsp;  C:\WINDOWS\msxml4-KB954430-enu.LOG --------- 318992 <br />
&nbsp; 03.12.2008 18:42&nbsp; &nbsp;  C:\WINDOWS\$_hpcst$.hpc --------- 2464 <br />
&nbsp; 03.12.2008 18:42&nbsp; &nbsp;  C:\WINDOWS\KundenDB.INI --------- 0 <br />
&nbsp; 25.10.2008 10:01&nbsp; &nbsp;  C:\WINDOWS\KB958644.log --------- 10376 <br />
&nbsp; 21.10.2008 16:29&nbsp; &nbsp;  C:\WINDOWS\OEWABLog.txt --------- 2554 <br />
&nbsp; 29.09.2008 13:11&nbsp; &nbsp;  C:\WINDOWS\CD_Start.INI --------- 32 <br />
&nbsp; 17.07.2008 11:54&nbsp; &nbsp;  C:\WINDOWS\eReg.dat --------- 531 <br />
&nbsp; 16.07.2008 12:17&nbsp; &nbsp;  C:\WINDOWS\IE4 Error Log.txt --------- 1770 <br />
&nbsp; 16.07.2008 10:21&nbsp; &nbsp;  C:\WINDOWS\BM27bb8626.txt --------- 3144 <br />
&nbsp; 16.07.2008 10:21&nbsp; &nbsp;  C:\WINDOWS\pskt.ini --------- 22 <br />
&nbsp; 16.07.2008 10:08&nbsp; &nbsp;  C:\WINDOWS\BM27bb8626.xml --------- 110433 <br />
&nbsp; 10.07.2008 08:38&nbsp; &nbsp;  C:\WINDOWS\QTFont.qfn --------- 54156 <br />
&nbsp; 02.07.2008 11:54&nbsp; &nbsp;  C:\WINDOWS\ModemLog_Sony Ericsson W800 USB WMC Modem.txt --------- 2036 <br />
&nbsp; 02.07.2008 11:54&nbsp; &nbsp;  C:\WINDOWS\ModemLog_Sony Ericsson W800 USB WMC Data Modem.txt --------- 2046 <br />
&nbsp; 14.04.2008 03:23&nbsp; &nbsp;  C:\WINDOWS\kswdmcap.ax --------- 91648 <br />
&nbsp; 14.04.2008 03:23&nbsp; &nbsp;  C:\WINDOWS\ksxbar.ax --------- 43008 <br />
&nbsp; 14.04.2008 03:23&nbsp; &nbsp;  C:\WINDOWS\dshowext.ax --------- 20992 <br />
&nbsp; 14.04.2008 03:23&nbsp; &nbsp;  C:\WINDOWS\vidcap.ax --------- 28672 <br />
&nbsp; 14.04.2008 03:23&nbsp; &nbsp;  C:\WINDOWS\kstvtune.ax --------- 61952 <br />
&nbsp; 14.04.2008 03:23&nbsp; &nbsp;  C:\WINDOWS\winhlp32.exe --------- 288768 <br />
&nbsp; 14.04.2008 03:23&nbsp; &nbsp;  C:\WINDOWS\slrundll.exe --------- 32866 <br />
&nbsp; 14.04.2008 03:22&nbsp; &nbsp;  C:\WINDOWS\regedit.exe --------- 153600 <br />
&nbsp; 14.04.2008 03:22&nbsp; &nbsp;  C:\WINDOWS\notepad.exe --------- 70144 <br />
&nbsp; 14.04.2008 03:22&nbsp; &nbsp;  C:\WINDOWS\hh.exe --------- 10752 <br />
&nbsp; 14.04.2008 03:22&nbsp; &nbsp;  C:\WINDOWS\explorer.exe --------- 1036800 <br />
&nbsp; 14.04.2008 03:22&nbsp; &nbsp;  C:\WINDOWS\vfwwdm32.dll --------- 54272 <br />
&nbsp; 14.04.2008 03:22&nbsp; &nbsp;  C:\WINDOWS\twain_32.dll --------- 50688 <br />
&nbsp; 19.03.2008 09:59&nbsp; &nbsp;  C:\WINDOWS\Sansa Media Converter.INI --------- 131 <br />
&nbsp; 03.12.2007 09:16&nbsp; &nbsp;  C:\WINDOWS\iPSti.exe --------- 40960 <br />
&nbsp; 03.12.2007 09:13&nbsp; &nbsp;  C:\WINDOWS\iPPage.AX --------- 57344 <br />
&nbsp; 31.10.2007 09:36&nbsp; &nbsp;  C:\WINDOWS\iPTwain.exe --------- 225280 <br />
&nbsp; 04.10.2007 18:05&nbsp; &nbsp;  C:\WINDOWS\SAE79EED3.tmp --------- 48 <br />
&nbsp; 07.09.2007 12:27&nbsp; &nbsp;  C:\WINDOWS\msxml6-KB933579-enu-x86.LOG --------- 513222 <br />
&nbsp; 07.09.2007 11:06&nbsp; &nbsp;  C:\WINDOWS\Active Setup Log.txt --------- 840 <br />
&nbsp; 07.09.2007 11:01&nbsp; &nbsp;  C:\WINDOWS\Active Setup Log.BAK --------- 988 <br />
&nbsp; 15.08.2007 14:05&nbsp; &nbsp;  C:\WINDOWS\msxml4-KB936181-enu.LOG --------- 291194 <br />
&nbsp; 08.08.2007 10:01&nbsp; &nbsp;  C:\WINDOWS\hosts --------- 0 <br />
&nbsp; 08.07.2007 11:59&nbsp; &nbsp;  C:\WINDOWS\Setup1.exe --------- 253952 <br />
&nbsp; 08.07.2007 11:59&nbsp; &nbsp;  C:\WINDOWS\ST6UNST.EXE --------- 74752 <br />
&nbsp; 03.07.2007 15:40&nbsp; &nbsp;  C:\WINDOWS\QTFont.for --------- 1409 <br />
&nbsp; 15.02.2007 13:54&nbsp; &nbsp;  C:\WINDOWS\brunin03.dll --------- 131072 <br />
&nbsp; 03.01.2007 13:58&nbsp; &nbsp;  C:\WINDOWS\ODBC.INI --------- 400 <br />
&nbsp; 03.01.2007 13:57&nbsp; &nbsp;  C:\WINDOWS\PhotoSnapViewer.INI --------- 151 <br />
&nbsp; 30.11.2006 16:06&nbsp; &nbsp;  C:\WINDOWS\EmperorEdit.INI --------- 85 <br />
&nbsp; 06.11.2006 14:11&nbsp; &nbsp;  C:\WINDOWS\movexe.exe --------- 6688 <br />
&nbsp; 03.11.2006 14:42&nbsp; &nbsp;  C:\WINDOWS\dcmvwr.INI --------- 61 <br />
&nbsp; 30.10.2006 18:40&nbsp; &nbsp;  C:\WINDOWS\ST6UNST.002 --------- 1281 <br />
&nbsp; 30.10.2006 16:31&nbsp; &nbsp;  C:\WINDOWS\ST6UNST.001 --------- 348 <br />
&nbsp; 30.10.2006 16:31&nbsp; &nbsp;  C:\WINDOWS\ST6UNST.000 --------- 347 <br />
&nbsp; 07.10.2006 16:43&nbsp; &nbsp;  C:\WINDOWS\x2.64.exe --------- 502784 <br />
&nbsp; 14.09.2006 23:48&nbsp; &nbsp;  C:\WINDOWS\BlendSettings.ini --------- 23 <br />
&nbsp; 28.08.2006 10:56&nbsp; &nbsp;  C:\WINDOWS\WB.ini --------- 140 <br />
&nbsp; 27.08.2006 12:00&nbsp; &nbsp;  C:\WINDOWS\ARPR.INI --------- 1540 <br />
&nbsp; 25.08.2006 11:12&nbsp; &nbsp;  C:\WINDOWS\_MSRSTRT.EXE --------- 2560 <br />
&nbsp; 08.08.2006 17:55&nbsp; &nbsp;  C:\WINDOWS\cdplayer.ini --------- 868 <br />
&nbsp; 22.07.2006 20:48&nbsp; &nbsp;  C:\WINDOWS\Matrix Code.exe --------- 2285222 <br />
&nbsp; 22.07.2006 20:48&nbsp; &nbsp;  C:\WINDOWS\Matrix Code.scr --------- 232784 <br />
&nbsp; 22.07.2006 20:48&nbsp; &nbsp;  C:\WINDOWS\mickey32.dll --------- 29696 <br />
&nbsp; 05.07.2006 19:08&nbsp; &nbsp;  C:\WINDOWS\REGULOCS.OLD --------- 8192 <br />
&nbsp; 11.06.2006 15:55&nbsp; &nbsp;  C:\WINDOWS\patience.ini --------- 390 <br />
&nbsp; 11.06.2006 11:32&nbsp; &nbsp;  C:\WINDOWS\mozver.dat --------- 3549 <br />
&nbsp; 09.06.2006 20:17&nbsp; &nbsp;  C:\WINDOWS\nsreg.dat --------- 0 <br />
&nbsp; 12.04.2006 08:47&nbsp; &nbsp;  C:\WINDOWS\meta4.exe --------- 217073 <br />
&nbsp; 05.04.2006 07:09&nbsp; &nbsp;  C:\WINDOWS\MOTA113.exe --------- 66560 <br />
&nbsp; 17.01.2006 15:23&nbsp; &nbsp;  C:\WINDOWS\REGLOCS.OLD --------- 8192 <br />
&nbsp; 16.01.2006 16:34&nbsp; &nbsp;  C:\WINDOWS\smscfg.ini --------- 61 <br />
&nbsp; 16.01.2006 15:17&nbsp; &nbsp;  C:\WINDOWS\NDSTray.INI --------- 0 <br />
&nbsp; 16.01.2006 13:00&nbsp; &nbsp;  C:\WINDOWS\WMSysPr9.prx --------- 316640 <br />
&nbsp; 16.01.2006 12:59&nbsp; &nbsp;  C:\WINDOWS\orun32.isu --------- 197043 <br />
&nbsp; 16.01.2006 12:59&nbsp; &nbsp;  C:\WINDOWS\orun32.ini --------- 849 <br />
&nbsp; 16.01.2006 12:53&nbsp; &nbsp;  C:\WINDOWS\control.ini --------- 0 <br />
&nbsp; 16.01.2006 12:53&nbsp; &nbsp;  C:\WINDOWS\ODBCINST.INI --------- 4161 <br />
&nbsp; 16.01.2006 12:52&nbsp; &nbsp;  C:\WINDOWS\WindowsShell.Manifest --------- 749 <br />
&nbsp; 16.01.2006 12:51&nbsp; &nbsp;  C:\WINDOWS\vb.ini --------- 36 <br />
&nbsp; 16.01.2006 12:51&nbsp; &nbsp;  C:\WINDOWS\vbaddin.ini --------- 37 <br />
&nbsp; 16.01.2006 12:48&nbsp; &nbsp;  C:\WINDOWS\Sti_Trace.log --------- 0 <br />
&nbsp; 09.12.2005 23:49&nbsp; &nbsp;  C:\WINDOWS\RTHDCPL.exe --------- 15691264 <br />
&nbsp; 09.12.2005 00:42&nbsp; &nbsp;  C:\WINDOWS\MicCal.exe --------- 2142208 <br />
&nbsp; 02.11.2005 23:56&nbsp; &nbsp;  C:\WINDOWS\RTLCPL.exe --------- 9710592 <br />
&nbsp; 27.10.2005 15:17&nbsp; &nbsp;  C:\WINDOWS\TWallEx43_169.exe --------- 237568 <br />
&nbsp; 21.10.2005 21:49&nbsp; &nbsp;  C:\WINDOWS\RtlUpd.exe --------- 356352 <br />
&nbsp; 15.10.2005 14:29&nbsp; &nbsp;  C:\WINDOWS\agrsmmsg.exe --------- 88203 <br />
&nbsp; 11.10.2005 21:33&nbsp; &nbsp;  C:\WINDOWS\alcwzrd.exe --------- 2807808 <br />
&nbsp; 21.09.2005 18:24&nbsp; &nbsp;  C:\WINDOWS\SoundMan.exe --------- 86016 <br />
&nbsp; 11.05.2005 16:00&nbsp; &nbsp;  C:\WINDOWS\TBTdetect.exe --------- 245760 <br />
&nbsp; 04.05.2005 02:43&nbsp; &nbsp;  C:\WINDOWS\Alcmtr.exe --------- 69632 <br />
&nbsp; 03.05.2005 12:10&nbsp; &nbsp;  C:\WINDOWS\agrsmdel.exe --------- 68096 <br />
&nbsp; 17.04.2005 06:20&nbsp; &nbsp;  C:\WINDOWS\RtlExUpd.dll --------- 487424 <br />
&nbsp; 14.02.2005 08:54&nbsp; &nbsp;  C:\WINDOWS\TVersion.xml --------- 173 <br />
&nbsp; 20.12.2004 14:39&nbsp; &nbsp;  C:\WINDOWS\TBTdetect.ini --------- 466 <br />
&nbsp; 08.12.2004 16:04&nbsp; &nbsp;  C:\WINDOWS\cfdemo.scr --------- 45056 <br />
&nbsp; 20.08.2004 10:05&nbsp; &nbsp;  C:\WINDOWS\TOSHIBA Satellite 1280x800.bmp --------- 3072054 <br />
&nbsp; 20.08.2004 10:05&nbsp; &nbsp;  C:\WINDOWS\TOSHIBA SATELLITE.bmp --------- 3072054 <br />
&nbsp; 20.08.2004 10:05&nbsp; &nbsp;  C:\WINDOWS\TOSHIBA Satellite.bmp.169 --------- 3072054 <br />
&nbsp; 20.08.2004 09:29&nbsp; &nbsp;  C:\WINDOWS\TOSHIBA Satellite 1440x900.bmp --------- 3888054 <br />
&nbsp; 19.08.2004 18:17&nbsp; &nbsp;  C:\WINDOWS\TOSHIBA Satellite 1024x768.bmp --------- 2359350 <br />
&nbsp; 19.08.2004 18:17&nbsp; &nbsp;  C:\WINDOWS\TOSHIBA Satellite.bmp.43 --------- 2359350 <br />
&nbsp; 13.08.2004 00:05&nbsp; &nbsp;  C:\WINDOWS\dla.exe --------- 98358 <br />
&nbsp; 04.08.2004 14:00&nbsp; &nbsp;  C:\WINDOWS\wmprfDEU.prx --------- 34818 <br />
&nbsp; 04.08.2004 14:00&nbsp; &nbsp;  C:\WINDOWS\winnt256.bmp --------- 48680 <br />
&nbsp; 04.08.2004 14:00&nbsp; &nbsp;  C:\WINDOWS\winnt.bmp --------- 48680 <br />
&nbsp; 04.08.2004 14:00&nbsp; &nbsp;  C:\WINDOWS\winhelp.exe --------- 257568 <br />
&nbsp; 04.08.2004 14:00&nbsp; &nbsp;  C:\WINDOWS\Feder.bmp --------- 16730 <br />
&nbsp; 04.08.2004 14:00&nbsp; &nbsp;  C:\WINDOWS\explorer.scf --------- 80 <br />
&nbsp; 04.08.2004 14:00&nbsp; &nbsp;  C:\WINDOWS\twain.dll --------- 94800 <br />
&nbsp; 04.08.2004 14:00&nbsp; &nbsp;  C:\WINDOWS\msdfmap.ini --------- 1405 <br />
&nbsp; 04.08.2004 14:00&nbsp; &nbsp;  C:\WINDOWS\Kaffeetasse.bmp --------- 17062 <br />
&nbsp; 04.08.2004 14:00&nbsp; &nbsp;  C:\WINDOWS\twunk_16.exe --------- 49680 <br />
&nbsp; 04.08.2004 14:00&nbsp; &nbsp;  C:\WINDOWS\twunk_32.exe --------- 25600 <br />
&nbsp; 04.08.2004 14:00&nbsp; &nbsp;  C:\WINDOWS\Granit.bmp --------- 26582 <br />
&nbsp; 04.08.2004 14:00&nbsp; &nbsp;  C:\WINDOWS\Pr„riewind.bmp --------- 65954 <br />
&nbsp; 04.08.2004 14:00&nbsp; &nbsp;  C:\WINDOWS\Blaue Spitzen 16.bmp --------- 1272 <br />
&nbsp; 04.08.2004 14:00&nbsp; &nbsp;  C:\WINDOWS\Seifenblase.bmp --------- 65978 <br />
&nbsp; 04.08.2004 14:00&nbsp; &nbsp;  C:\WINDOWS\Zapotek.bmp --------- 9522 <br />
&nbsp; 04.08.2004 14:00&nbsp; &nbsp;  C:\WINDOWS\desktop.ini --------- 2 <br />
&nbsp; 04.08.2004 14:00&nbsp; &nbsp;  C:\WINDOWS\_default.pif --------- 707 <br />
&nbsp; 04.08.2004 14:00&nbsp; &nbsp;  C:\WINDOWS\clock.avi --------- 82944 <br />
&nbsp; 04.08.2004 14:00&nbsp; &nbsp;  C:\WINDOWS\vmmreg32.dll --------- 18944 <br />
&nbsp; 04.08.2004 14:00&nbsp; &nbsp;  C:\WINDOWS\F„cher.bmp --------- 26680 <br />
&nbsp; 04.08.2004 14:00&nbsp; &nbsp;  C:\WINDOWS\Angler.bmp --------- 17336 <br />
&nbsp; 04.08.2004 14:00&nbsp; &nbsp;  C:\WINDOWS\Rhododendron.bmp --------- 17362 <br />
&nbsp; 04.08.2004 14:00&nbsp; &nbsp;  C:\WINDOWS\TASKMAN.EXE --------- 15872 <br />
&nbsp; 04.08.2004 14:00&nbsp; &nbsp;  C:\WINDOWS\Santa Fe-Stuck.bmp --------- 65832 <br />
&nbsp; 19.04.2004 12:18&nbsp; &nbsp;  C:\WINDOWS\TOSHIBA1280x0800.bmp --------- 3072056 <br />
&nbsp; 19.04.2004 11:18&nbsp; &nbsp;  C:\WINDOWS\TOSHIBA_GEN_169.BMP --------- 3072056 <br />
&nbsp; 28.11.2003 18:57&nbsp; &nbsp;  C:\WINDOWS\brdfxspd.dat --------- 0 <br />
&nbsp; 09.10.2003 17:55&nbsp; &nbsp;  C:\WINDOWS\cfdemo.exe --------- 20966970 <br />
&nbsp; 22.05.2003 16:51&nbsp; &nbsp;  C:\WINDOWS\TOSHIBA1440x0900.bmp --------- 3888056 <br />
&nbsp; 07.11.2002 11:35&nbsp; &nbsp;  C:\WINDOWS\MakeMrk.exe --------- 159744 <br />
&nbsp; 09.08.2002 21:17&nbsp; &nbsp;  C:\WINDOWS\una2setup.exe --------- 4292608 <br />
&nbsp; 15.11.2001 01:00&nbsp; &nbsp;  C:\WINDOWS\CVRPAGE.bmp --------- 6224 <br />
&nbsp; 10.09.2001 11:13&nbsp; &nbsp;  C:\WINDOWS\TOSHIBA1024x0768.bmp --------- 2359352 <br />
&nbsp; 10.09.2001 10:13&nbsp; &nbsp;  C:\WINDOWS\TOSHIBA_GEN.BMP --------- 2359352 <br />
&nbsp; 01.06.2001 08:17&nbsp; &nbsp;  C:\WINDOWS\Manager.CAB --------- 3613235 <br />
&nbsp; 17.11.1998 12:44&nbsp; &nbsp;  C:\WINDOWS\IsUn0407.exe --------- 328704 <br />
&nbsp; 29.10.1998 16:45&nbsp; &nbsp;  C:\WINDOWS\IsUninst.exe --------- 306688 <br />
&nbsp; 24.01.1997 14:22&nbsp; &nbsp;  C:\WINDOWS\ABADDON.TTF --------- 25884 <br />
&nbsp; 18.07.1996 12:06&nbsp; &nbsp;  C:\WINDOWS\uninst.exe --------- 297472 <br />
----------------------------------------<br />
<br />
&nbsp;<br />
C:\WINDOWS\System<br />
<br />
&nbsp;14.04.2008 03:23&nbsp; &nbsp; C:\WINDOWS\System\winspool.drv --------- 146944 <br />
&nbsp;04.08.2004 14:00&nbsp; &nbsp; C:\WINDOWS\System\AVIFILE.DLL --------- 109504 <br />
&nbsp;04.08.2004 14:00&nbsp; &nbsp; C:\WINDOWS\System\COMMDLG.DLL --------- 33744 <br />
&nbsp;04.08.2004 14:00&nbsp; &nbsp; C:\WINDOWS\System\KEYBOARD.DRV --------- 2000 <br />
&nbsp;04.08.2004 14:00&nbsp; &nbsp; C:\WINDOWS\System\LZEXPAND.DLL --------- 9936 <br />
&nbsp;04.08.2004 14:00&nbsp; &nbsp; C:\WINDOWS\System\MCIAVI.DRV --------- 73760 <br />
&nbsp;04.08.2004 14:00&nbsp; &nbsp; C:\WINDOWS\System\MCISEQ.DRV --------- 25296 <br />
&nbsp;04.08.2004 14:00&nbsp; &nbsp; C:\WINDOWS\System\MCIWAVE.DRV --------- 28160 <br />
&nbsp;04.08.2004 14:00&nbsp; &nbsp; C:\WINDOWS\System\MMSYSTEM.DLL --------- 69632 <br />
&nbsp;04.08.2004 14:00&nbsp; &nbsp; C:\WINDOWS\System\MMTASK.TSK --------- 1152 <br />
&nbsp;04.08.2004 14:00&nbsp; &nbsp; C:\WINDOWS\System\MOUSE.DRV --------- 2032 <br />
&nbsp;04.08.2004 14:00&nbsp; &nbsp; C:\WINDOWS\System\AVICAP.DLL --------- 70368 <br />
&nbsp;04.08.2004 14:00&nbsp; &nbsp; C:\WINDOWS\System\OLECLI.DLL --------- 82944 <br />
&nbsp;04.08.2004 14:00&nbsp; &nbsp; C:\WINDOWS\System\OLESVR.DLL --------- 24064 <br />
&nbsp;04.08.2004 14:00&nbsp; &nbsp; C:\WINDOWS\System\setup.inf --------- 59167 <br />
&nbsp;04.08.2004 14:00&nbsp; &nbsp; C:\WINDOWS\System\SHELL.DLL --------- 5120 <br />
&nbsp;04.08.2004 14:00&nbsp; &nbsp; C:\WINDOWS\System\SOUND.DRV --------- 1744 <br />
&nbsp;04.08.2004 14:00&nbsp; &nbsp; C:\WINDOWS\System\stdole.tlb --------- 5532 <br />
&nbsp;04.08.2004 14:00&nbsp; &nbsp; C:\WINDOWS\System\SYSTEM.DRV --------- 3360 <br />
&nbsp;04.08.2004 14:00&nbsp; &nbsp; C:\WINDOWS\System\TAPI.DLL --------- 19200 <br />
&nbsp;04.08.2004 14:00&nbsp; &nbsp; C:\WINDOWS\System\TIMER.DRV --------- 4048 <br />
&nbsp;04.08.2004 14:00&nbsp; &nbsp; C:\WINDOWS\System\VER.DLL --------- 9200 <br />
&nbsp;04.08.2004 14:00&nbsp; &nbsp; C:\WINDOWS\System\VGA.DRV --------- 2176 <br />
&nbsp;04.08.2004 14:00&nbsp; &nbsp; C:\WINDOWS\System\WFWNET.DRV --------- 13600 <br />
&nbsp;04.08.2004 14:00&nbsp; &nbsp; C:\WINDOWS\System\MSVIDEO.DLL --------- 127104 <br />
----------------------------------------<br />
<br />
&nbsp;<br />
C:\WINDOWS\System32<br />
<br />
&nbsp;24.01.2010 21:09&nbsp; &nbsp;  C:\WINDOWS\system32\Lang --------- 0 <br />
&nbsp;24.01.2010 21:08&nbsp; &nbsp;  C:\WINDOWS\system32\wpa.dbl --------- 1158 <br />
&nbsp;24.01.2010 21:08&nbsp; &nbsp;  C:\WINDOWS\system32\CatRoot2 --------- 0 <br />
&nbsp;22.01.2010 20:18&nbsp; &nbsp;  C:\WINDOWS\system32\rmoc3260.dll --------- 185920 <br />
&nbsp;22.01.2010 20:18&nbsp; &nbsp;  C:\WINDOWS\system32\pndx5032.dll --------- 5632 <br />
&nbsp;22.01.2010 20:18&nbsp; &nbsp;  C:\WINDOWS\system32\pndx5016.dll --------- 6656 <br />
&nbsp;22.01.2010 20:16&nbsp; &nbsp;  C:\WINDOWS\system32\msvcr71.dll --------- 348160 <br />
&nbsp;22.01.2010 20:16&nbsp; &nbsp;  C:\WINDOWS\system32\pncrt.dll --------- 278528 <br />
&nbsp;17.01.2010 21:26&nbsp; &nbsp;  C:\WINDOWS\system32\DRVSTORE --------- 0 <br />
&nbsp;28.12.2009 11:30&nbsp; &nbsp;  C:\WINDOWS\system32\dllcache --------- 0 <br />
&nbsp;28.12.2009 11:30&nbsp; &nbsp;  C:\WINDOWS\system32\drivers --------- 0 <br />
&nbsp;07.12.2009 15:18&nbsp; &nbsp;  C:\WINDOWS\system32\FNTCACHE.DAT --------- 347400 <br />
&nbsp;07.12.2009 15:14&nbsp; &nbsp;  C:\WINDOWS\system32\TZLog.log --------- 842532 <br />
&nbsp;07.12.2009 15:10&nbsp; &nbsp;  C:\WINDOWS\system32\CatRoot --------- 0 <br />
&nbsp;01.12.2009 21:06&nbsp; &nbsp;  C:\WINDOWS\system32\MRT.exe --------- 25966024 <br />
&nbsp;16.11.2009 10:39&nbsp; &nbsp;  C:\WINDOWS\system32\jupdate-1.6.0_17-b04.log --------- 3617 <br />
&nbsp;16.11.2009 10:38&nbsp; &nbsp;  C:\WINDOWS\system32\perfh009.dat --------- 446158 <br />
&nbsp;16.11.2009 10:38&nbsp; &nbsp;  C:\WINDOWS\system32\perfc009.dat --------- 73260 <br />
&nbsp;16.11.2009 10:38&nbsp; &nbsp;  C:\WINDOWS\system32\perfh007.dat --------- 464884 <br />
&nbsp;16.11.2009 10:38&nbsp; &nbsp;  C:\WINDOWS\system32\perfc007.dat --------- 86982 <br />
&nbsp;16.11.2009 10:38&nbsp; &nbsp;  C:\WINDOWS\system32\PerfStringBackup.INI --------- 1084834 <br />
&nbsp;10.11.2009 23:08&nbsp; &nbsp;  C:\WINDOWS\system32\QuickTimeVR.qtx --------- 94208 <br />
&nbsp;10.11.2009 23:08&nbsp; &nbsp;  C:\WINDOWS\system32\QuickTime.qts --------- 69632 <br />
&nbsp;07.11.2009 22:43&nbsp; &nbsp;  C:\WINDOWS\system32\GDIPFONTCACHEV1.DAT --------- 105472 <br />
&nbsp;29.10.2009 08:40&nbsp; &nbsp;  C:\WINDOWS\system32\wininet.dll --------- 916480 <br />
&nbsp;29.10.2009 08:40&nbsp; &nbsp;  C:\WINDOWS\system32\urlmon.dll --------- 1208832 <br />
&nbsp;29.10.2009 08:40&nbsp; &nbsp;  C:\WINDOWS\system32\mshtml.dll --------- 5940736 <br />
&nbsp;29.10.2009 08:40&nbsp; &nbsp;  C:\WINDOWS\system32\occache.dll --------- 206848 <br />
&nbsp;29.10.2009 08:40&nbsp; &nbsp;  C:\WINDOWS\system32\inetcpl.cpl --------- 1469440 <br />
&nbsp;29.10.2009 08:40&nbsp; &nbsp;  C:\WINDOWS\system32\msfeedsbs.dll --------- 55296 <br />
&nbsp;29.10.2009 08:40&nbsp; &nbsp;  C:\WINDOWS\system32\msfeeds.dll --------- 594432 <br />
&nbsp;29.10.2009 08:40&nbsp; &nbsp;  C:\WINDOWS\system32\jsproxy.dll --------- 25600 <br />
&nbsp;29.10.2009 08:40&nbsp; &nbsp;  C:\WINDOWS\system32\iertutil.dll --------- 1985536 <br />
&nbsp;29.10.2009 08:40&nbsp; &nbsp;  C:\WINDOWS\system32\iepeers.dll --------- 184320 <br />
&nbsp;29.10.2009 08:40&nbsp; &nbsp;  C:\WINDOWS\system32\ieframe.dll --------- 11069952 <br />
&nbsp;29.10.2009 08:40&nbsp; &nbsp;  C:\WINDOWS\system32\iedkcs32.dll --------- 387584 <br />
&nbsp;28.10.2009 16:07&nbsp; &nbsp;  C:\WINDOWS\system32\tzchange.exe --------- 46080 <br />
&nbsp;28.10.2009 15:40&nbsp; &nbsp;  C:\WINDOWS\system32\ie4uinit.exe --------- 173056 <br />
&nbsp;21.10.2009 06:38&nbsp; &nbsp;  C:\WINDOWS\system32\httpapi.dll --------- 25088 <br />
&nbsp;21.10.2009 06:38&nbsp; &nbsp;  C:\WINDOWS\system32\strmfilt.dll --------- 75776 <br />
&nbsp;13.10.2009 11:32&nbsp; &nbsp;  C:\WINDOWS\system32\oakley.dll --------- 271360 <br />
&nbsp;12.10.2009 14:38&nbsp; &nbsp;  C:\WINDOWS\system32\rastls.dll --------- 150528 <br />
&nbsp;12.10.2009 14:38&nbsp; &nbsp;  C:\WINDOWS\system32\raschap.dll --------- 79872 <br />
&nbsp;11.10.2009 04:17&nbsp; &nbsp;  C:\WINDOWS\system32\javaws.exe --------- 149280 <br />
&nbsp;11.10.2009 04:17&nbsp; &nbsp;  C:\WINDOWS\system32\javaw.exe --------- 145184 <br />
&nbsp;11.10.2009 04:17&nbsp; &nbsp;  C:\WINDOWS\system32\java.exe --------- 145184 <br />
&nbsp;11.10.2009 04:17&nbsp; &nbsp;  C:\WINDOWS\system32\deploytk.dll --------- 411368 <br />
&nbsp;11.10.2009 02:14&nbsp; &nbsp;  C:\WINDOWS\system32\javacpl.cpl --------- 73728 <br />
&nbsp;02.10.2009 14:01&nbsp; &nbsp;  C:\WINDOWS\system32\Macromed --------- 0 <br />
&nbsp;14.09.2009 16:10&nbsp; &nbsp;  C:\WINDOWS\system32\windows media --------- 0 <br />
&nbsp;11.09.2009 15:17&nbsp; &nbsp;  C:\WINDOWS\system32\msv1_0.dll --------- 136192 <br />
&nbsp;04.09.2009 22:03&nbsp; &nbsp;  C:\WINDOWS\system32\msasn1.dll --------- 58880 <br />
&nbsp;01.09.2009 15:46&nbsp; &nbsp;  C:\WINDOWS\system32\msaud32.acm --------- 282654 <br />
&nbsp;26.08.2009 09:00&nbsp; &nbsp;  C:\WINDOWS\system32\strmdll.dll --------- 247326 <br />
&nbsp;25.08.2009 10:17&nbsp; &nbsp;  C:\WINDOWS\system32\winhttp.dll --------- 354816 <br />
&nbsp;23.08.2009 16:00&nbsp; &nbsp;  C:\WINDOWS\system32\XPSViewer --------- 0 <br />
&nbsp;23.08.2009 16:00&nbsp; &nbsp;  C:\WINDOWS\system32\en-us --------- 0 <br />
&nbsp;18.08.2009 10:00&nbsp; &nbsp;  C:\WINDOWS\system32\jupdate-1.6.0_15-b03.log --------- 4122 <br />
&nbsp;14.08.2009 16:10&nbsp; &nbsp;  C:\WINDOWS\system32\win32k.sys --------- 1850752 <br />
&nbsp;06.08.2009 19:24&nbsp; &nbsp;  C:\WINDOWS\system32\wucltui.dll --------- 327896 <br />
&nbsp;06.08.2009 19:24&nbsp; &nbsp;  C:\WINDOWS\system32\wuweb.dll --------- 209632 <br />
&nbsp;06.08.2009 19:24&nbsp; &nbsp;  C:\WINDOWS\system32\wuaueng.dll.mui --------- 18144 <br />
&nbsp;06.08.2009 19:24&nbsp; &nbsp;  C:\WINDOWS\system32\wups.dll --------- 35552 <br />
&nbsp;06.08.2009 19:24&nbsp; &nbsp;  C:\WINDOWS\system32\wuaucpl.cpl --------- 217816 <br />
&nbsp;06.08.2009 19:24&nbsp; &nbsp;  C:\WINDOWS\system32\wuapi.dll.mui --------- 15584 <br />
&nbsp;06.08.2009 19:24&nbsp; &nbsp;  C:\WINDOWS\system32\wups2.dll --------- 44768 <br />
&nbsp;06.08.2009 19:24&nbsp; &nbsp;  C:\WINDOWS\system32\wuauclt.exe --------- 53472 <br />
&nbsp;06.08.2009 19:24&nbsp; &nbsp;  C:\WINDOWS\system32\cdm.dll --------- 96480 <br />
&nbsp;06.08.2009 19:24&nbsp; &nbsp;  C:\WINDOWS\system32\wuaucpl.cpl.mui --------- 15584 <br />
&nbsp;06.08.2009 19:24&nbsp; &nbsp;  C:\WINDOWS\system32\wucltui.dll.mui --------- 23264 <br />
&nbsp;06.08.2009 19:23&nbsp; &nbsp;  C:\WINDOWS\system32\wuapi.dll --------- 575704 <br />
&nbsp;06.08.2009 19:23&nbsp; &nbsp;  C:\WINDOWS\system32\wuaueng.dll --------- 1929952 <br />
&nbsp;05.08.2009 09:59&nbsp; &nbsp;  C:\WINDOWS\system32\mswebdvd.dll --------- 206336 <br />
&nbsp;04.08.2009 18:26&nbsp; &nbsp;  C:\WINDOWS\system32\ntoskrnl.exe --------- 2147840 <br />
&nbsp;04.08.2009 18:25&nbsp; &nbsp;  C:\WINDOWS\system32\ntkrnlpa.exe --------- 2026496 <br />
&nbsp;31.07.2009 10:02&nbsp; &nbsp;  C:\WINDOWS\system32\msxml6.dll --------- 1372672 <br />
&nbsp;31.07.2009 05:32&nbsp; &nbsp;  C:\WINDOWS\system32\msxml3.dll --------- 1172480 <br />
&nbsp;21.07.2009 00:05&nbsp; &nbsp;  C:\WINDOWS\system32\msxml4.dll --------- 1348432 <br />
&nbsp;17.07.2009 20:01&nbsp; &nbsp;  C:\WINDOWS\system32\atl.dll --------- 58880 <br />
&nbsp;17.07.2009 17:15&nbsp; &nbsp;  C:\WINDOWS\system32\query.dll --------- 1441792 <br />
&nbsp;13.07.2009 22:43&nbsp; &nbsp;  C:\WINDOWS\system32\wmp.dll --------- 10841088 <br />
&nbsp;13.07.2009 22:43&nbsp; &nbsp;  C:\WINDOWS\system32\wmpdxm.dll --------- 286208 <br />
&nbsp;29.06.2009 09:40&nbsp; &nbsp;  C:\WINDOWS\system32\ieuinit.inf --------- 57667 <br />
&nbsp;25.06.2009 09:25&nbsp; &nbsp;  C:\WINDOWS\system32\secur32.dll --------- 56832 <br />
&nbsp;25.06.2009 09:25&nbsp; &nbsp;  C:\WINDOWS\system32\schannel.dll --------- 147456 <br />
&nbsp;25.06.2009 09:25&nbsp; &nbsp;  C:\WINDOWS\system32\lsasrv.dll --------- 737792 <br />
&nbsp;25.06.2009 09:25&nbsp; &nbsp;  C:\WINDOWS\system32\wdigest.dll --------- 54272 <br />
&nbsp;25.06.2009 09:25&nbsp; &nbsp;  C:\WINDOWS\system32\kerberos.dll --------- 301568 <br />
&nbsp;22.06.2009 07:45&nbsp; &nbsp;  C:\WINDOWS\system32\jscript.dll --------- 726528 <br />
&nbsp;16.06.2009 15:36&nbsp; &nbsp;  C:\WINDOWS\system32\t2embed.dll --------- 119808 <br />
&nbsp;16.06.2009 15:36&nbsp; &nbsp;  C:\WINDOWS\system32\fontsub.dll --------- 81920 <br />
&nbsp;15.06.2009 11:43&nbsp; &nbsp;  C:\WINDOWS\system32\telnet.exe --------- 78848 <br />
&nbsp;10.06.2009 17:38&nbsp; &nbsp;  C:\WINDOWS\system32\DLA --------- 0 <br />
&nbsp;10.06.2009 15:13&nbsp; &nbsp;  C:\WINDOWS\system32\avifil32.dll --------- 85504 <br />
&nbsp;10.06.2009 08:19&nbsp; &nbsp;  C:\WINDOWS\system32\mstscax.dll --------- 2066432 <br />
&nbsp;10.06.2009 07:14&nbsp; &nbsp;  C:\WINDOWS\system32\wkssvc.dll --------- 132096 <br />
&nbsp;09.06.2009 21:18&nbsp; &nbsp;  C:\WINDOWS\system32\sysloc --------- 0 <br />
&nbsp;09.06.2009 18:40&nbsp; &nbsp;  C:\WINDOWS\system32\NBM_Id.txt --------- 16 <br />
&nbsp;03.06.2009 20:09&nbsp; &nbsp;  C:\WINDOWS\system32\quartz.dll --------- 1296896 <br />
&nbsp;01.06.2009 13:57&nbsp; &nbsp;  C:\WINDOWS\system32\WdfCoInstaller01007.dll --------- 1112288 <br />
----------------------------------------<br />
<br />
&nbsp;<br />
C:\WINDOWS\Prefetch<br />
<br />
&nbsp;24.01.2010 21:39&nbsp; &nbsp;  C:\WINDOWS\Prefetch\WINRAR.EXE-3588DFE8.pf --------- 145548 <br />
&nbsp;24.01.2010 21:39&nbsp; &nbsp;  C:\WINDOWS\Prefetch\AVWSC.EXE-24612965.pf --------- 88338 <br />
&nbsp;24.01.2010 21:32&nbsp; &nbsp;  C:\WINDOWS\Prefetch\IEXPLORE.EXE-2CA9778D.pf --------- 126936 <br />
&nbsp;24.01.2010 21:27&nbsp; &nbsp;  C:\WINDOWS\Prefetch\VERCLSID.EXE-3667BD89.pf --------- 24268 <br />
&nbsp;24.01.2010 21:24&nbsp; &nbsp;  C:\WINDOWS\Prefetch\WMIPRVSE.EXE-28F301A9.pf --------- 23726 <br />
&nbsp;24.01.2010 21:16&nbsp; &nbsp;  C:\WINDOWS\Prefetch\MSIEXEC.EXE-2F8A8CAE.pf --------- 48418 <br />
&nbsp;24.01.2010 21:14&nbsp; &nbsp;  C:\WINDOWS\Prefetch\JAVA.EXE-2167859B.pf --------- 8810 <br />
&nbsp;24.01.2010 21:12&nbsp; &nbsp;  C:\WINDOWS\Prefetch\WMIADAP.EXE-2DF425B2.pf --------- 51142 <br />
&nbsp;24.01.2010 21:12&nbsp; &nbsp;  C:\WINDOWS\Prefetch\CAPABILITYMANAGER.EXE-259F816C.pf --------- 107716 <br />
&nbsp;24.01.2010 21:11&nbsp; &nbsp;  C:\WINDOWS\Prefetch\RUNDLL32.EXE-132B2031.pf --------- 67486 <br />
&nbsp;24.01.2010 21:09&nbsp; &nbsp;  C:\WINDOWS\Prefetch\BTDNA.EXE-3722F78C.pf --------- 39726 <br />
&nbsp;24.01.2010 21:09&nbsp; &nbsp;  C:\WINDOWS\Prefetch\GOOGLETOOLBARNOTIFIER.EXE-09E6E9C6.pf --------- 30676 <br />
&nbsp;24.01.2010 21:09&nbsp; &nbsp;  C:\WINDOWS\Prefetch\CLI.EXE-02B0DB56.pf --------- 84662 <br />
&nbsp;24.01.2010 21:09&nbsp; &nbsp;  C:\WINDOWS\Prefetch\CFSSERV.EXE-2BD960B5.pf --------- 62182 <br />
&nbsp;24.01.2010 21:09&nbsp; &nbsp;  C:\WINDOWS\Prefetch\ADOBE GAMMA LOADER.EXE-1FD09C3A.pf --------- 17258 <br />
&nbsp;24.01.2010 21:09&nbsp; &nbsp;  C:\WINDOWS\Prefetch\TOSCDSPD.EXE-2E028BB7.pf --------- 15984 <br />
&nbsp;24.01.2010 21:09&nbsp; &nbsp;  C:\WINDOWS\Prefetch\DOT1XCFG.EXE-32C52055.pf --------- 36252 <br />
&nbsp;24.01.2010 21:09&nbsp; &nbsp;  C:\WINDOWS\Prefetch\JUSCHED.EXE-336229D9.pf --------- 15284 <br />
&nbsp;24.01.2010 21:09&nbsp; &nbsp;  C:\WINDOWS\Prefetch\AVGNT.EXE-39CD89BF.pf --------- 50134 <br />
&nbsp;24.01.2010 21:09&nbsp; &nbsp;  C:\WINDOWS\Prefetch\IFRMEWRK.EXE-27F5F7E5.pf --------- 61032 <br />
&nbsp;24.01.2010 21:09&nbsp; &nbsp;  C:\WINDOWS\Prefetch\SMOOTHVIEW.EXE-245D965C.pf --------- 12980 <br />
&nbsp;24.01.2010 21:09&nbsp; &nbsp;  C:\WINDOWS\Prefetch\RTHDCPL.EXE-06918CFA.pf --------- 50902 <br />
&nbsp;24.01.2010 21:09&nbsp; &nbsp;  C:\WINDOWS\Prefetch\THOTKEY.EXE-188233A8.pf --------- 23504 <br />
&nbsp;24.01.2010 21:09&nbsp; &nbsp;  C:\WINDOWS\Prefetch\TPSMAIN.EXE-3A835F71.pf --------- 28968 <br />
&nbsp;24.01.2010 21:09&nbsp; &nbsp;  C:\WINDOWS\Prefetch\IMAPI.EXE-0BF740A4.pf --------- 18290 <br />
&nbsp;24.01.2010 21:09&nbsp; &nbsp;  C:\WINDOWS\Prefetch\ALCMTR.EXE-235F9538.pf --------- 12102 <br />
&nbsp;24.01.2010 21:09&nbsp; &nbsp;  C:\WINDOWS\Prefetch\AGRSMMSG.EXE-0034A7F7.pf --------- 17552 <br />
&nbsp;24.01.2010 21:09&nbsp; &nbsp;  C:\WINDOWS\Prefetch\NTOSBOOT-B00DFAAD.pf --------- 1492746 <br />
&nbsp;24.01.2010 21:04&nbsp; &nbsp;  C:\WINDOWS\Prefetch\TASKMGR.EXE-20256C55.pf --------- 76256 <br />
&nbsp;24.01.2010 20:49&nbsp; &nbsp;  C:\WINDOWS\Prefetch\GOOGLEUPDATERSERVICE.EXE-19F5FCF4.pf --------- 64086 <br />
&nbsp;24.01.2010 20:31&nbsp; &nbsp;  C:\WINDOWS\Prefetch\JAVAW.EXE-0159D575.pf --------- 74106 <br />
&nbsp;24.01.2010 20:30&nbsp; &nbsp;  C:\WINDOWS\Prefetch\AU_.EXE-23209E69.pf --------- 50490 <br />
&nbsp;24.01.2010 20:29&nbsp; &nbsp;  C:\WINDOWS\Prefetch\HELPER.EXE-244ABC1F.pf --------- 19060 <br />
&nbsp;24.01.2010 20:29&nbsp; &nbsp;  C:\WINDOWS\Prefetch\UNINSTALLER.EXE-2294980C.pf --------- 18542 <br />
&nbsp;24.01.2010 20:28&nbsp; &nbsp;  C:\WINDOWS\Prefetch\WUAUCLT.EXE-399A8E72.pf --------- 21856 <br />
&nbsp;24.01.2010 19:54&nbsp; &nbsp;  C:\WINDOWS\Prefetch\RUNDLL32.EXE-2576181F.pf --------- 76528 <br />
&nbsp;24.01.2010 18:57&nbsp; &nbsp;  C:\WINDOWS\Prefetch\LOGONUI.EXE-0AF22957.pf --------- 50238 <br />
&nbsp;24.01.2010 18:13&nbsp; &nbsp;  C:\WINDOWS\Prefetch\JQSNOTIFY.EXE-1E60A522.pf --------- 8722 <br />
&nbsp;24.01.2010 18:08&nbsp; &nbsp;  C:\WINDOWS\Prefetch\FIREFOX.EXE-1D57670A.pf --------- 110370 <br />
&nbsp;24.01.2010 18:07&nbsp; &nbsp;  C:\WINDOWS\Prefetch\IGFXSRVC.EXE-2FB63FE8.pf --------- 32810 <br />
&nbsp;24.01.2010 18:06&nbsp; &nbsp;  C:\WINDOWS\Prefetch\EPMWORKER.EXE-36EA6AD1.pf --------- 33770 <br />
&nbsp;24.01.2010 18:06&nbsp; &nbsp;  C:\WINDOWS\Prefetch\GENERIC.EXE-0FF6F96D.pf --------- 44690 <br />
&nbsp;24.01.2010 18:06&nbsp; &nbsp;  C:\WINDOWS\Prefetch\DMASSIST.EXE-3A034025.pf --------- 11750 <br />
&nbsp;24.01.2010 18:05&nbsp; &nbsp;  C:\WINDOWS\Prefetch\SANSADISPATCH.EXE-209DABB9.pf --------- 16836 <br />
&nbsp;24.01.2010 18:05&nbsp; &nbsp;  C:\WINDOWS\Prefetch\CTFMON.EXE-0E17969B.pf --------- 27852 <br />
&nbsp;24.01.2010 18:05&nbsp; &nbsp;  C:\WINDOWS\Prefetch\TFSWCTRL.EXE-360FB39A.pf --------- 21256 <br />
&nbsp;24.01.2010 18:05&nbsp; &nbsp;  C:\WINDOWS\Prefetch\CLISTART.EXE-1EE1D5BF.pf --------- 16166 <br />
&nbsp;24.01.2010 18:05&nbsp; &nbsp;  C:\WINDOWS\Prefetch\ZCFGSVC.EXE-1FEE3EEE.pf --------- 36414 <br />
&nbsp;24.01.2010 18:05&nbsp; &nbsp;  C:\WINDOWS\Prefetch\TPSBATTM.EXE-0243976F.pf --------- 16580 <br />
&nbsp;24.01.2010 17:57&nbsp; &nbsp;  C:\WINDOWS\Prefetch\AVNOTIFY.EXE-31D7686A.pf --------- 71794 <br />
&nbsp;24.01.2010 17:57&nbsp; &nbsp;  C:\WINDOWS\Prefetch\UPDATE.EXE-3398FCD6.pf --------- 72082 <br />
&nbsp;24.01.2010 17:57&nbsp; &nbsp;  C:\WINDOWS\Prefetch\GOOGLEUPDATER.EXE-36CE3796.pf --------- 63378 <br />
&nbsp;23.01.2010 14:02&nbsp; &nbsp;  C:\WINDOWS\Prefetch\SANSA MEDIA CONVERTER.EXE-3339CF89.pf --------- 59274 <br />
&nbsp;23.01.2010 14:01&nbsp; &nbsp;  C:\WINDOWS\Prefetch\RUNDLL32.EXE-451FC2C0.pf --------- 19196 <br />
&nbsp;23.01.2010 13:57&nbsp; &nbsp;  C:\WINDOWS\Prefetch\SANSAUPDATER.EXE-0244D6C5.pf --------- 54658 <br />
&nbsp;23.01.2010 13:57&nbsp; &nbsp;  C:\WINDOWS\Prefetch\WUDFHOST.EXE-215E7549.pf --------- 19866 <br />
&nbsp;23.01.2010 10:37&nbsp; &nbsp;  C:\WINDOWS\Prefetch\WMPLAYER.EXE-0996933A.pf --------- 147010 <br />
&nbsp;22.01.2010 20:20&nbsp; &nbsp;  C:\WINDOWS\Prefetch\REALPLAY_MOUNTPOINTS.EXE-2B4A70B6.pf --------- 37888 <br />
&nbsp;22.01.2010 20:19&nbsp; &nbsp;  C:\WINDOWS\Prefetch\SETREG.EXE-1DC5C5F5.pf --------- 5730 <br />
&nbsp;22.01.2010 20:19&nbsp; &nbsp;  C:\WINDOWS\Prefetch\DEFENC.EXE-39D07B7C.pf --------- 6062 <br />
&nbsp;22.01.2010 20:18&nbsp; &nbsp;  C:\WINDOWS\Prefetch\MERGEDT.EXE-38C24B81.pf --------- 11848 <br />
&nbsp;22.01.2010 20:17&nbsp; &nbsp;  C:\WINDOWS\Prefetch\REGEDIT.EXE-1B606482.pf --------- 22716 <br />
&nbsp;22.01.2010 20:16&nbsp; &nbsp;  C:\WINDOWS\Prefetch\CONVERTER_INSTALLER.EXE-06DD5B43.pf --------- 58840 <br />
&nbsp;22.01.2010 20:14&nbsp; &nbsp;  C:\WINDOWS\Prefetch\ACRORD32INFO.EXE-30CEC19C.pf --------- 157142 <br />
&nbsp;22.01.2010 20:10&nbsp; &nbsp;  C:\WINDOWS\Prefetch\REALPLAYERSPGOLD_DE(2).EXE-04CE8579.pf --------- 55236 <br />
&nbsp;22.01.2010 19:41&nbsp; &nbsp;  C:\WINDOWS\Prefetch\RNSETUP0.EXE-1552A682.pf --------- 44774 <br />
&nbsp;22.01.2010 19:41&nbsp; &nbsp;  C:\WINDOWS\Prefetch\REALPLAYERSPGOLD_DE.EXE-2961A834.pf --------- 25210 <br />
&nbsp;22.01.2010 19:40&nbsp; &nbsp;  C:\WINDOWS\Prefetch\RUNDLL32.EXE-25575C2E.pf --------- 27912 <br />
&nbsp;22.01.2010 19:18&nbsp; &nbsp;  C:\WINDOWS\Prefetch\WINAMP.EXE-08C38ED9.pf --------- 45296 <br />
&nbsp;22.01.2010 18:54&nbsp; &nbsp;  C:\WINDOWS\Prefetch\HELPSVC.EXE-2878DDA2.pf --------- 73648 <br />
&nbsp;22.01.2010 18:48&nbsp; &nbsp;  C:\WINDOWS\Prefetch\DEFRAG.EXE-273F131E.pf --------- 16860 <br />
&nbsp;22.01.2010 18:48&nbsp; &nbsp;  C:\WINDOWS\Prefetch\DFRGNTFS.EXE-269967DF.pf --------- 23802 <br />
&nbsp;22.01.2010 18:48&nbsp; &nbsp;  C:\WINDOWS\Prefetch\Layout.ini --------- 721000 <br />
&nbsp;22.01.2010 18:29&nbsp; &nbsp;  C:\WINDOWS\Prefetch\SETUP.EXE-2EF37B13.pf --------- 32318 <br />
&nbsp;22.01.2010 18:29&nbsp; &nbsp;  C:\WINDOWS\Prefetch\FIREFOX SETUP 3.6.EXE-2F3D912D.pf --------- 62876 <br />
&nbsp;22.01.2010 18:01&nbsp; &nbsp;  C:\WINDOWS\Prefetch\BITTORRENT.EXE-07AA1F0F.pf --------- 110072 <br />
&nbsp;22.01.2010 17:50&nbsp; &nbsp;  C:\WINDOWS\Prefetch\WMPLAYER.EXE-0996933B.pf --------- 63272 <br />
&nbsp;22.01.2010 17:33&nbsp; &nbsp;  C:\WINDOWS\Prefetch\ACRORD32.EXE-0EC716D9.pf --------- 101136 <br />
&nbsp;22.01.2010 16:58&nbsp; &nbsp;  C:\WINDOWS\Prefetch\SVCHOST.EXE-3530F672.pf --------- 16926 <br />
&nbsp;22.01.2010 16:48&nbsp; &nbsp;  C:\WINDOWS\Prefetch\WINWORD.EXE-3395695A.pf --------- 123260 <br />
&nbsp;22.01.2010 16:47&nbsp; &nbsp;  C:\WINDOWS\Prefetch\ADOBE AIR INSTALLER.EXE-368CE67A.pf --------- 42942 <br />
&nbsp;22.01.2010 16:47&nbsp; &nbsp;  C:\WINDOWS\Prefetch\ADOBEAIRINSTALLER.EXE-0A4C0527.pf --------- 55334 <br />
&nbsp;22.01.2010 16:47&nbsp; &nbsp;  C:\WINDOWS\Prefetch\EADM6AIRCOMPONENTS-INSTALLER.-08977E09.pf --------- 54636 <br />
&nbsp;22.01.2010 16:47&nbsp; &nbsp;  C:\WINDOWS\Prefetch\NSF.TMP-0849BC58.pf --------- 6790 <br />
&nbsp;22.01.2010 16:47&nbsp; &nbsp;  C:\WINDOWS\Prefetch\CACLS.EXE-25504E4A.pf --------- 12490 <br />
&nbsp;22.01.2010 16:47&nbsp; &nbsp;  C:\WINDOWS\Prefetch\NSE.TMP-0B1A5753.pf --------- 6340 <br />
&nbsp;22.01.2010 16:47&nbsp; &nbsp;  C:\WINDOWS\Prefetch\UNINSTALL.EXE-2C199E10.pf --------- 17356 <br />
&nbsp;22.01.2010 16:45&nbsp; &nbsp;  C:\WINDOWS\Prefetch\EAD8.EXE-08A72752.pf --------- 54938 <br />
&nbsp;22.01.2010 16:44&nbsp; &nbsp;  C:\WINDOWS\Prefetch\POWERPNT.EXE-28A8DBA4.pf --------- 107086 <br />
&nbsp;22.01.2010 16:43&nbsp; &nbsp;  C:\WINDOWS\Prefetch\OIS.EXE-33076924.pf --------- 83000 <br />
&nbsp;22.01.2010 16:42&nbsp; &nbsp;  C:\WINDOWS\Prefetch\CORE.EXE-322F54F1.pf --------- 45038 <br />
&nbsp;22.01.2010 16:42&nbsp; &nbsp;  C:\WINDOWS\Prefetch\TVSTRAY.EXE-089980C8.pf --------- 18582 <br />
&nbsp;21.01.2010 18:35&nbsp; &nbsp;  C:\WINDOWS\Prefetch\JAVAWS.EXE-1714DD62.pf --------- 12676 <br />
&nbsp;21.01.2010 18:20&nbsp; &nbsp;  C:\WINDOWS\Prefetch\NDSTRAY.EXE-2384C76C.pf --------- 37200 <br />
&nbsp;18.01.2010 15:52&nbsp; &nbsp;  C:\WINDOWS\Prefetch\TFNCKY.EXE-2C10A33D.pf --------- 29894 <br />
&nbsp;17.01.2010 21:25&nbsp; &nbsp;  C:\WINDOWS\Prefetch\UPDATE SERVICE.EXE-17CBEDD4.pf --------- 108608 <br />
&nbsp;17.01.2010 21:25&nbsp; &nbsp;  C:\WINDOWS\Prefetch\UPDATE.EXE-19D49475.pf --------- 15086 <br />
&nbsp;17.01.2010 21:02&nbsp; &nbsp;  C:\WINDOWS\Prefetch\WPDSHEXTAUTOPLAY.EXE-17D83223.pf --------- 13070 <br />
&nbsp;17.01.2010 21:02&nbsp; &nbsp;  C:\WINDOWS\Prefetch\RUNDLL32.EXE-19B3AED6.pf --------- 17412 <br />
&nbsp;17.01.2010 16:01&nbsp; &nbsp;  C:\WINDOWS\Prefetch\WOW.EXE-1DC320E6.pf --------- 59170 <br />
&nbsp;17.01.2010 16:01&nbsp; &nbsp;  C:\WINDOWS\Prefetch\LAUNCHER.EXE-37FEA5BF.pf --------- 66682 <br />
&nbsp;17.01.2010 11:03&nbsp; &nbsp;  C:\WINDOWS\Prefetch\RUNDLL32.EXE-14FC201E.pf --------- 38160 <br />
&nbsp;13.01.2010 22:50&nbsp; &nbsp;  C:\WINDOWS\Prefetch\MSPAINT.EXE-11CBB631.pf --------- 32972 <br />
&nbsp;13.01.2010 22:43&nbsp; &nbsp;  C:\WINDOWS\Prefetch\WINSNAP.EXE-309852AB.pf --------- 50676 <br />
&nbsp;13.01.2010 22:42&nbsp; &nbsp;  C:\WINDOWS\Prefetch\JPEG.EXE-2C4DEBB5.pf --------- 56252 <br />
&nbsp;13.01.2010 22:41&nbsp; &nbsp;  C:\WINDOWS\Prefetch\SCRIPT-FU.EXE-0D77E8FB.pf --------- 48080 <br />
&nbsp;13.01.2010 22:41&nbsp; &nbsp;  C:\WINDOWS\Prefetch\GIMP-2.4.EXE-0E3D66AF.pf --------- 82848 <br />
&nbsp;12.01.2010 17:23&nbsp; &nbsp;  C:\WINDOWS\Prefetch\GIMP-WIN-REMOTE.EXE-3AA7949F.pf --------- 26808 <br />
&nbsp;12.01.2010 17:12&nbsp; &nbsp;  C:\WINDOWS\Prefetch\WMF.EXE-2B8827A1.pf --------- 97352 <br />
&nbsp;12.01.2010 17:01&nbsp; &nbsp;  C:\WINDOWS\Prefetch\PNG.EXE-122489BD.pf --------- 47204 <br />
&nbsp;12.01.2010 15:25&nbsp; &nbsp;  C:\WINDOWS\Prefetch\CALC.EXE-02CD573A.pf --------- 28972 <br />
&nbsp;12.01.2010 15:16&nbsp; &nbsp;  C:\WINDOWS\Prefetch\RUNDLL32.EXE-40A4C8F9.pf --------- 73238 <br />
&nbsp;11.01.2010 14:32&nbsp; &nbsp;  C:\WINDOWS\Prefetch\DUMPREP.EXE-1B46F901.pf --------- 40338 <br />
&nbsp;11.01.2010 14:01&nbsp; &nbsp;  C:\WINDOWS\Prefetch\BMP.EXE-2D09E8CB.pf --------- 60508 <br />
&nbsp;11.01.2010 12:15&nbsp; &nbsp;  C:\WINDOWS\Prefetch\RUNDLL32.EXE-23C4CBE3.pf --------- 61028 <br />
&nbsp;11.01.2010 12:14&nbsp; &nbsp;  C:\WINDOWS\Prefetch\DWWIN.EXE-30875ADC.pf --------- 36626 <br />
&nbsp;11.01.2010 11:47&nbsp; &nbsp;  C:\WINDOWS\Prefetch\RUNDLL32.EXE-12E27DD0.pf --------- 33390 <br />
&nbsp;11.01.2010 11:47&nbsp; &nbsp;  C:\WINDOWS\Prefetch\WINWORD.EXE-1EAA55E3.pf --------- 75074 <br />
&nbsp;11.01.2010 11:42&nbsp; &nbsp;  C:\WINDOWS\Prefetch\WORDCONV.EXE-151ABD40.pf --------- 48100 <br />
&nbsp;11.01.2010 11:24&nbsp; &nbsp;  C:\WINDOWS\Prefetch\CRASHREPORTER.EXE-38DC7BD9.pf --------- 31214 <br />
&nbsp;10.01.2010 20:36&nbsp; &nbsp;  C:\WINDOWS\Prefetch\GUARDGUI.EXE-147E0160.pf --------- 30118 <br />
&nbsp;10.01.2010 17:35&nbsp; &nbsp;  C:\WINDOWS\Prefetch\RUNDLL32.EXE-14BE42EE.pf --------- 35570 <br />
&nbsp;10.01.2010 16:32&nbsp; &nbsp;  C:\WINDOWS\Prefetch\GOOGLETOOLBARMANAGER_0E996B06-08C2C2D2.pf --------- 36572 <br />
&nbsp;10.01.2010 16:32&nbsp; &nbsp;  C:\WINDOWS\Prefetch\SEARCHWITHGOOGLEUPDATE_C58171-348F26B0.pf --------- 10830 <br />
&nbsp;10.01.2010 16:32&nbsp; &nbsp;  C:\WINDOWS\Prefetch\GOOGLEUPDATERSERVICE_5898FABC-0566477D.pf --------- 13050 <br />
&nbsp;10.01.2010 16:31&nbsp; &nbsp;  C:\WINDOWS\Prefetch\SETUP.EXE-0101CF45.pf --------- 34222 <br />
&nbsp;10.01.2010 16:31&nbsp; &nbsp;  C:\WINDOWS\Prefetch\FIREFOX%20SETUP%203.5.7[1].EX-1168DCF3.pf --------- 31996 <br />
&nbsp;10.01.2010 16:12&nbsp; &nbsp;  C:\WINDOWS\Prefetch\EXTEXPORT.EXE-036DFB87.pf --------- 18356 <br />
&nbsp;10.01.2010 16:03&nbsp; &nbsp;  C:\WINDOWS\Prefetch\GTB1E3.TMP.EXE-281BCE8A.pf --------- 32476 <br />
&nbsp;07.04.2009 10:22&nbsp; &nbsp;  C:\WINDOWS\Prefetch\AVWSC.EXE-2F6C3C95.pf --------- 30948 <br />
----------------------------------------<br />
<br />
&nbsp;<br />
C:\WINDOWS\Tasks<br />
<br />
&nbsp;24.01.2010 21:08&nbsp; &nbsp;  C:\WINDOWS\Tasks\{5B57CF47-0BFA-43c6-ACF9-3B3653DCADBA}.job --------- 276 <br />
&nbsp;24.01.2010 21:08&nbsp; &nbsp;  C:\WINDOWS\Tasks\Google Software Updater.job --------- 1044 <br />
&nbsp;24.01.2010 21:08&nbsp; &nbsp;  C:\WINDOWS\Tasks\SA.DAT --------- 6 <br />
&nbsp;27.12.2009 18:47&nbsp; &nbsp;  C:\WINDOWS\Tasks\NSSstub.job --------- 406 <br />
&nbsp;04.08.2004 14:00&nbsp; &nbsp;  C:\WINDOWS\Tasks\desktop.ini --------- 65 <br />
----------------------------------------<br />
<br />
&nbsp;<br />
C:\WINDOWS\Temp<br />
<br />
&nbsp;24.01.2010 21:08&nbsp; &nbsp;  C:\WINDOWS\Temp\WGANotify.settings --------- 409 <br />
&nbsp;24.01.2010 21:08&nbsp; &nbsp;  C:\WINDOWS\Temp\WGAErrLog.txt --------- 255 <br />
&nbsp;24.01.2010 21:08&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_1f8.dat --------- 16384 <br />
&nbsp;24.01.2010 18:03&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_18c.dat --------- 16384 <br />
&nbsp;21.01.2010 18:18&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_4f8.dat --------- 16384 <br />
&nbsp;18.01.2010 15:51&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_4f0.dat --------- 16384 <br />
&nbsp;10.01.2010 16:32&nbsp; &nbsp;  C:\WINDOWS\Temp\GoogleToolbarInstaller1.log --------- 14594 <br />
&nbsp;10.01.2010 16:04&nbsp; &nbsp;  C:\WINDOWS\Temp\Google Toolbar --------- 0 <br />
&nbsp;10.01.2010 16:03&nbsp; &nbsp;  C:\WINDOWS\Temp\GoogleToolbarInstaller2.log --------- 12770 <br />
&nbsp;06.01.2010 12:18&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_470.dat --------- 16384 <br />
&nbsp;06.01.2010 12:16&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_4a0.dat --------- 16384 <br />
&nbsp;02.01.2010 11:01&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_4c4.dat --------- 16384 <br />
&nbsp;30.12.2009 16:27&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_4d0.dat --------- 16384 <br />
&nbsp;28.12.2009 10:32&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_7b4.dat --------- 16384 <br />
&nbsp;26.12.2009 10:26&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_5b8.dat --------- 16384 <br />
&nbsp;22.12.2009 22:56&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_5c0.dat --------- 16384 <br />
&nbsp;15.12.2009 22:14&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_658.dat --------- 16384 <br />
&nbsp;15.12.2009 22:07&nbsp; &nbsp;  C:\WINDOWS\Temp\JETF184.tmp --------- 0 <br />
&nbsp;14.12.2009 15:03&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_4c8.dat --------- 16384 <br />
&nbsp;13.12.2009 22:19&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_748.dat --------- 16384 <br />
&nbsp;13.12.2009 21:52&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_638.dat --------- 16384 <br />
&nbsp;07.12.2009 15:19&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_1e8.dat --------- 16384 <br />
&nbsp;22.11.2009 21:06&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_100.dat --------- 16384 <br />
&nbsp;22.11.2009 18:11&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_544.dat --------- 16384 <br />
&nbsp;16.11.2009 10:41&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_1d4c.dat --------- 16384 <br />
&nbsp;01.11.2009 19:41&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_6cc.dat --------- 16384 <br />
&nbsp;26.10.2009 11:23&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_63c.dat --------- 16384 <br />
&nbsp;17.10.2009 22:11&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_2a8.dat --------- 16384 <br />
&nbsp;16.10.2009 08:54&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_688.dat --------- 16384 <br />
&nbsp;15.10.2009 14:23&nbsp; &nbsp;  C:\WINDOWS\Temp\NetFxUpdate_v1.1.4322.log --------- 9986 <br />
&nbsp;12.10.2009 11:21&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_a0.dat --------- 16384 <br />
&nbsp;12.10.2009 08:10&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_668.dat --------- 16384 <br />
&nbsp;08.10.2009 09:54&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_64c.dat --------- 16384 <br />
&nbsp;07.10.2009 09:32&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_3a0.dat --------- 16384 <br />
&nbsp;27.09.2009 19:01&nbsp; &nbsp;  C:\WINDOWS\Temp\dneinst.log --------- 497095 <br />
&nbsp;23.09.2009 14:35&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_654.dat --------- 16384 <br />
&nbsp;22.09.2009 13:01&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_660.dat --------- 16384 <br />
&nbsp;16.09.2009 08:41&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_5a8.dat --------- 16384 <br />
&nbsp;15.09.2009 15:33&nbsp; &nbsp;  C:\WINDOWS\Temp\JETEE76.tmp --------- 0 <br />
&nbsp;14.09.2009 16:19&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_634.dat --------- 16384 <br />
&nbsp;01.09.2009 11:42&nbsp; &nbsp;  C:\WINDOWS\Temp\mgxgroups --------- 0 <br />
&nbsp;01.09.2009 11:40&nbsp; &nbsp;  C:\WINDOWS\Temp\mgxlicense --------- 0 <br />
&nbsp;01.09.2009 11:39&nbsp; &nbsp;  C:\WINDOWS\Temp\_FbMsiLog.txt --------- 310240 <br />
&nbsp;27.08.2009 22:39&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_4bc.dat --------- 16384 <br />
&nbsp;23.08.2009 16:58&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_268.dat --------- 16384 <br />
&nbsp;17.08.2009 15:59&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_6e0.dat --------- 16384 <br />
&nbsp;23.07.2009 13:00&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_524.dat --------- 16384 <br />
&nbsp;22.07.2009 08:24&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_94.dat --------- 16384 <br />
&nbsp;14.07.2009 19:43&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_84.dat --------- 16384 <br />
&nbsp;13.07.2009 08:52&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_5c8.dat --------- 16384 <br />
&nbsp;06.07.2009 08:51&nbsp; &nbsp;  C:\WINDOWS\Temp\Perflib_Perfdata_13e8.dat --------- 16384 <br />
&nbsp;07.04.2009 10:43&nbsp; &nbsp;  C:\WINDOWS\Temp\AVSETUP_49db1c7b --------- 0 <br />
&nbsp;29.03.2009 21:16&nbsp; &nbsp;  C:\WINDOWS\Temp\gis86cbf13 --------- 0 <br />
&nbsp;19.01.2009 10:54&nbsp; &nbsp;  C:\WINDOWS\Temp\mgx3rdlogos.ini --------- 715 <br />
&nbsp;19.01.2009 10:53&nbsp; &nbsp;  C:\WINDOWS\Temp\mgx3rdlogos.bmp --------- 332934 <br />
&nbsp;12.12.2008 12:36&nbsp; &nbsp;  C:\WINDOWS\Temp\Untitled.js --------- 66060 <br />
&nbsp;12.12.2008 12:35&nbsp; &nbsp;  C:\WINDOWS\Temp\Untitled.txt --------- 0 <br />
&nbsp;12.12.2008 12:35&nbsp; &nbsp;  C:\WINDOWS\Temp\Untitled.work --------- 0 <br />
&nbsp;13.11.2008 13:58&nbsp; &nbsp;  C:\WINDOWS\Temp\vastat.out --------- 115 <br />
&nbsp;05.11.2008 20:45&nbsp; &nbsp;  C:\WINDOWS\Temp\T30DebugLogFile.txt --------- 0 <br />
&nbsp;02.11.2008 19:04&nbsp; &nbsp;  C:\WINDOWS\Temp\SanDisk --------- 0 <br />
&nbsp;02.11.2008 19:04&nbsp; &nbsp;  C:\WINDOWS\Temp\NDP20-KB928365-v2-X86 --------- 0 <br />
&nbsp;02.11.2008 19:04&nbsp; &nbsp;  C:\WINDOWS\Temp\TempFolder.aab --------- 0 <br />
&nbsp;02.11.2008 19:04&nbsp; &nbsp;  C:\WINDOWS\Temp\TempFolder.aaa --------- 0 <br />
&nbsp;22.10.2008 12:32&nbsp; &nbsp;  C:\WINDOWS\Temp\Cookies --------- 0 <br />
&nbsp;22.10.2008 12:32&nbsp; &nbsp;  C:\WINDOWS\Temp\IntelChip --------- 0 <br />
&nbsp;22.10.2008 12:31&nbsp; &nbsp;  C:\WINDOWS\Temp\ZAP1.tmp --------- 0 <br />
&nbsp;22.10.2008 12:31&nbsp; &nbsp;  C:\WINDOWS\Temp\ZAP2.tmp --------- 0 <br />
&nbsp;22.10.2008 12:31&nbsp; &nbsp;  C:\WINDOWS\Temp\ZAP3.tmp --------- 0 <br />
&nbsp;22.10.2008 12:31&nbsp; &nbsp;  C:\WINDOWS\Temp\ZAP4.tmp --------- 0 <br />
&nbsp;22.10.2008 12:31&nbsp; &nbsp;  C:\WINDOWS\Temp\ZAP5.tmp --------- 0 <br />
&nbsp;22.10.2008 12:31&nbsp; &nbsp;  C:\WINDOWS\Temp\ZAP6.tmp --------- 0 <br />
&nbsp;22.10.2008 12:31&nbsp; &nbsp;  C:\WINDOWS\Temp\ZAP7.tmp --------- 0 <br />
&nbsp;22.10.2008 12:31&nbsp; &nbsp;  C:\WINDOWS\Temp\ZAPA2.tmp --------- 0 <br />
&nbsp;16.07.2008 10:23&nbsp; &nbsp;  C:\WINDOWS\Temp\History --------- 0 <br />
&nbsp;23.07.2006 16:08&nbsp; &nbsp;  C:\WINDOWS\Temp\Temporary Internet Files --------- 0 <br />
&nbsp;08.06.2006 17:49&nbsp; &nbsp;  C:\WINDOWS\Temp\Verlauf --------- 0 <br />
----------------------------------------<br />
<br />
&nbsp;<br />
C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp<br />
<br />
&nbsp;24.01.2010 21:36&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF3C65.tmp --------- 16384 <br />
&nbsp;24.01.2010 21:35&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DFECA3.tmp --------- 16384 <br />
&nbsp;24.01.2010 21:29&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF2DA0.tmp --------- 28672 <br />
&nbsp;24.01.2010 21:29&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DFAA2D.tmp --------- 16384 <br />
&nbsp;24.01.2010 21:17&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DFD7FE.tmp --------- 24576 <br />
&nbsp;24.01.2010 21:14&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\jusched.log --------- 157086 <br />
&nbsp;24.01.2010 21:10&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF64DF.tmp --------- 512 <br />
&nbsp;24.01.2010 21:10&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF6383.tmp --------- 32768 <br />
&nbsp;24.01.2010 21:10&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF60E9.tmp --------- 512 <br />
&nbsp;24.01.2010 21:10&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF6091.tmp --------- 16384 <br />
&nbsp;24.01.2010 21:10&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF5F9D.tmp --------- 512 <br />
&nbsp;24.01.2010 21:10&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF5F82.tmp --------- 32768 <br />
&nbsp;24.01.2010 21:10&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF416B.tmp --------- 16384 <br />
&nbsp;24.01.2010 21:10&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF160B.tmp --------- 16384 <br />
&nbsp;24.01.2010 21:10&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_bbc.dat --------- 16384 <br />
&nbsp;24.01.2010 21:09&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\AdobeARM.log --------- 1612 <br />
&nbsp;24.01.2010 21:08&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\WPDNSE --------- 0 <br />
&nbsp;24.01.2010 21:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF84D0.tmp --------- 0 <br />
&nbsp;24.01.2010 21:04&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF32AD.tmp --------- 512 <br />
&nbsp;24.01.2010 21:04&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF32A8.tmp --------- 32768 <br />
&nbsp;24.01.2010 21:04&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF3228.tmp --------- 512 <br />
&nbsp;24.01.2010 21:04&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF327B.tmp --------- 16384 <br />
&nbsp;24.01.2010 21:04&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF3223.tmp --------- 32768 <br />
&nbsp;24.01.2010 21:04&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF3280.tmp --------- 512 <br />
&nbsp;24.01.2010 21:04&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF64AA.tmp --------- 0 <br />
&nbsp;24.01.2010 21:04&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF4259.tmp --------- 0 <br />
&nbsp;24.01.2010 18:06&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_80.dat --------- 16384 <br />
&nbsp;24.01.2010 18:06&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_408.dat --------- 16384 <br />
&nbsp;24.01.2010 18:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_cc0.dat --------- 16384 <br />
&nbsp;23.01.2010 14:02&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\wmplog00.sqm --------- 5082 <br />
&nbsp;23.01.2010 13:57&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\cb69_appcompat.txt --------- 0 <br />
&nbsp;23.01.2010 13:57&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\SansaUpdater --------- 0 <br />
&nbsp;23.01.2010 13:57&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~tmp1264251458410 --------- 252 <br />
&nbsp;22.01.2010 20:32&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\QTInstallCode.log --------- 4050 <br />
&nbsp;22.01.2010 20:32&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\qtplugin.log --------- 4000 <br />
&nbsp;22.01.2010 20:20&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~rnsetup --------- 0 <br />
&nbsp;22.01.2010 16:45&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\EAD8.exe --------- 22093720 <br />
&nbsp;22.01.2010 16:42&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\EAD8.tmp --------- 0 <br />
&nbsp;21.01.2010 21:41&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\fla5E.tmp --------- 22824459 <br />
&nbsp;21.01.2010 21:36&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-148 --------- 0 <br />
&nbsp;24.01.2010 20:31&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\hsperfdata_Clarissa Thalmaier --------- 0 <br />
&nbsp;21.01.2010 18:35&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\java_install_reg.log --------- 46962 <br />
&nbsp;21.01.2010 18:20&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_bb0.dat --------- 16384 <br />
&nbsp;21.01.2010 18:20&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_bb4.dat --------- 16384 <br />
&nbsp;21.01.2010 18:20&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_a80.dat --------- 16384 <br />
&nbsp;21.01.2010 15:39&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-147 --------- 0 <br />
&nbsp;18.01.2010 15:53&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_4c4.dat --------- 16384 <br />
&nbsp;18.01.2010 15:53&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_ff8.dat --------- 16384 <br />
&nbsp;18.01.2010 15:51&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Google Toolbar --------- 0 <br />
&nbsp;18.01.2010 11:25&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-146 --------- 0 <br />
&nbsp;18.01.2010 11:23&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-145 --------- 0 <br />
&nbsp;17.01.2010 21:02&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~tmp1263758548410 --------- 252 <br />
&nbsp;17.01.2010 20:56&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\InExtremo-AmGoldenenRhein-Live@www.torrent.to.torrent --------- 30 <br />
&nbsp;15.01.2010 21:47&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\EADM6AirComponents-installer.exe --------- 15833921 <br />
&nbsp;14.01.2010 19:16&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\UninstallEACore.dll --------- 230720 <br />
&nbsp;12.01.2010 20:24&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-144 --------- 0 <br />
&nbsp;11.01.2010 11:24&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-143 --------- 0 <br />
&nbsp;10.01.2010 18:03&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-142 --------- 0 <br />
&nbsp;09.01.2010 09:39&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_d00.dat --------- 16384 <br />
&nbsp;09.01.2010 09:39&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_f40.dat --------- 16384 <br />
&nbsp;08.01.2010 20:01&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-141 --------- 0 <br />
&nbsp;06.01.2010 20:16&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-140 --------- 0 <br />
&nbsp;06.01.2010 12:20&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_acc.dat --------- 16384 <br />
&nbsp;06.01.2010 12:20&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_534.dat --------- 16384 <br />
&nbsp;06.01.2010 12:20&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_854.dat --------- 16384 <br />
&nbsp;05.01.2010 19:02&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-139 --------- 0 <br />
&nbsp;05.01.2010 12:16&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\msohtml1 --------- 0 <br />
&nbsp;05.01.2010 03:31&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\AdobeAIRInstaller.exe --------- 15849968 <br />
&nbsp;04.01.2010 21:54&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-138 --------- 0 <br />
&nbsp;04.01.2010 12:44&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF54DC.tmp --------- 147456 <br />
&nbsp;04.01.2010 12:20&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~WRD3564.doc --------- 141 <br />
&nbsp;04.01.2010 12:19&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF83E6.tmp --------- 512 <br />
&nbsp;04.01.2010 10:50&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-137 --------- 0 <br />
&nbsp;02.01.2010 21:28&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\jar_cache8519198589453180015.tmp --------- 1007 <br />
&nbsp;02.01.2010 21:28&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\jar_cache6965136036378686655.tmp --------- 2090 <br />
&nbsp;02.01.2010 21:28&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\jar_cache4219563426746058338.tmp --------- 2072 <br />
&nbsp;02.01.2010 21:27&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\jar_cache3071265860281487252.tmp --------- 558 <br />
&nbsp;02.01.2010 21:26&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\jar_cache4822064350593732343.tmp --------- 58 <br />
&nbsp;02.01.2010 21:26&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\jar_cache7214130968835590580.tmp --------- 558 <br />
&nbsp;02.01.2010 21:26&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\jar_cache7018115499339670353.tmp --------- 217 <br />
&nbsp;02.01.2010 21:26&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\jar_cache4280946246188560072.tmp --------- 639 <br />
&nbsp;02.01.2010 21:26&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\jar_cache807715736737315165.tmp --------- 906 <br />
&nbsp;02.01.2010 21:15&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\jar_cache4779060562152268817.tmp --------- 558 <br />
&nbsp;02.01.2010 21:15&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\jar_cache7635280778052406028.tmp --------- 103 <br />
&nbsp;02.01.2010 21:15&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\jar_cache2843534918807060990.tmp --------- 417 <br />
&nbsp;02.01.2010 21:14&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\jar_cache8238452449616823973.tmp --------- 558 <br />
&nbsp;02.01.2010 21:14&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\jar_cache1426332901683898082.tmp --------- 453 <br />
&nbsp;02.01.2010 18:58&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-136 --------- 0 <br />
&nbsp;02.01.2010 11:02&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_108.dat --------- 16384 <br />
&nbsp;02.01.2010 11:02&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_b9c.dat --------- 16384 <br />
&nbsp;02.01.2010 11:02&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_d40.dat --------- 16384 <br />
&nbsp;30.12.2009 17:15&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DFDE70.tmp --------- 512 <br />
&nbsp;30.12.2009 17:13&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DFE237.tmp --------- 512 <br />
&nbsp;30.12.2009 17:12&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF9568.tmp --------- 512 <br />
&nbsp;30.12.2009 17:12&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF9549.tmp --------- 512 <br />
&nbsp;30.12.2009 17:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~WRS2495.tmp --------- 20 <br />
&nbsp;30.12.2009 17:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DFDF90.tmp --------- 512 <br />
&nbsp;30.12.2009 17:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DFB8E8.tmp --------- 512 <br />
&nbsp;30.12.2009 16:29&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_ad8.dat --------- 16384 <br />
&nbsp;30.12.2009 16:29&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_ad0.dat --------- 16384 <br />
&nbsp;30.12.2009 16:28&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_b50.dat --------- 16384 <br />
&nbsp;30.12.2009 11:36&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-135 --------- 0 <br />
&nbsp;28.12.2009 22:44&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-134 --------- 0 <br />
&nbsp;28.12.2009 11:06&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-133 --------- 0 <br />
&nbsp;28.12.2009 10:33&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_1ec.dat --------- 16384 <br />
&nbsp;28.12.2009 10:33&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_c44.dat --------- 16384 <br />
&nbsp;27.12.2009 19:03&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-132 --------- 0 <br />
&nbsp;27.12.2009 18:47&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\NSSstub.txt --------- 1422 <br />
&nbsp;27.12.2009 18:47&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\isconfig.dat --------- 0 <br />
&nbsp;27.12.2009 18:35&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\nro.log --------- 0 <br />
&nbsp;27.12.2009 18:17&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\{821DABD6-26F2-49E5-AE55-40A589ADBE6D} --------- 0 <br />
&nbsp;26.12.2009 10:28&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_210.dat --------- 16384 <br />
&nbsp;26.12.2009 10:28&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_254.dat --------- 16384 <br />
&nbsp;25.12.2009 17:03&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-131 --------- 0 <br />
&nbsp;24.12.2009 22:03&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-130 --------- 0 <br />
&nbsp;24.12.2009 17:19&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-129 --------- 0 <br />
&nbsp;22.12.2009 22:59&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_b3c.dat --------- 16384 <br />
&nbsp;22.12.2009 22:58&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_8ec.dat --------- 16384 <br />
&nbsp;21.12.2009 11:56&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-128 --------- 0 <br />
&nbsp;21.12.2009 11:38&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-127 --------- 0 <br />
&nbsp;17.12.2009 15:43&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF2398.tmp --------- 512 <br />
&nbsp;17.12.2009 15:43&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF19B2.tmp --------- 512 <br />
&nbsp;17.12.2009 15:40&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Eingelegte Heringe mit Currysauce-2.doc --------- 20480 <br />
&nbsp;15.12.2009 23:12&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\_SaE6.tmp --------- 0 <br />
&nbsp;15.12.2009 23:12&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\_SaE5.tmp --------- 0 <br />
&nbsp;15.12.2009 23:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\_SaE4.tmp --------- 0 <br />
&nbsp;15.12.2009 23:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\_SaE3.tmp --------- 0 <br />
&nbsp;15.12.2009 23:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\_SaE2.tmp --------- 0 <br />
&nbsp;15.12.2009 23:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\_SaDF.tmp --------- 0 <br />
&nbsp;15.12.2009 23:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\_SaDE.tmp --------- 0 <br />
&nbsp;15.12.2009 23:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\_SaDD.tmp --------- 0 <br />
&nbsp;15.12.2009 23:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\_SaDC.tmp --------- 0 <br />
&nbsp;15.12.2009 23:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\_SaDB.tmp --------- 0 <br />
&nbsp;15.12.2009 23:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\_SaDA.tmp --------- 0 <br />
&nbsp;15.12.2009 23:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\_SaD9.tmp --------- 0 <br />
&nbsp;15.12.2009 23:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\_SaD8.tmp --------- 0 <br />
&nbsp;15.12.2009 23:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\_SaD7.tmp --------- 0 <br />
&nbsp;15.12.2009 23:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\_SaD6.tmp --------- 0 <br />
&nbsp;15.12.2009 23:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\_SaD5.tmp --------- 0 <br />
&nbsp;15.12.2009 23:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\_SaD4.tmp --------- 0 <br />
&nbsp;15.12.2009 23:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\_SaD3.tmp --------- 0 <br />
&nbsp;15.12.2009 23:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\_SaD2.tmp --------- 0 <br />
&nbsp;15.12.2009 23:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\_SaD1.tmp --------- 0 <br />
&nbsp;15.12.2009 23:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\_SaD0.tmp --------- 0 <br />
&nbsp;15.12.2009 23:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\_SaCF.tmp --------- 0 <br />
&nbsp;15.12.2009 23:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\_SaCE.tmp --------- 0 <br />
&nbsp;15.12.2009 23:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\_SaCD.tmp --------- 0 <br />
&nbsp;15.12.2009 23:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\_SaCC.tmp --------- 0 <br />
&nbsp;15.12.2009 23:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\_SaCB.tmp --------- 0 <br />
&nbsp;15.12.2009 23:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\_SaCA.tmp --------- 0 <br />
&nbsp;15.12.2009 23:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\_SaC9.tmp --------- 0 <br />
&nbsp;15.12.2009 23:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\_SaC8.tmp --------- 0 <br />
&nbsp;15.12.2009 23:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\_SaC7.tmp --------- 0 <br />
&nbsp;15.12.2009 23:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\_SaC6.tmp --------- 0 <br />
&nbsp;15.12.2009 23:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\_SaC5.tmp --------- 0 <br />
&nbsp;15.12.2009 23:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\_SaC4.tmp --------- 0 <br />
&nbsp;15.12.2009 23:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\_SaC3.tmp --------- 0 <br />
&nbsp;15.12.2009 23:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\_SaC2.tmp --------- 0 <br />
&nbsp;15.12.2009 23:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~tmp1260914750410 --------- 252 <br />
&nbsp;15.12.2009 23:03&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~tmp1260914625410 --------- 252 <br />
&nbsp;15.12.2009 23:02&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~tmp1260914574410 --------- 252 <br />
&nbsp;15.12.2009 22:57&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-126 --------- 0 <br />
&nbsp;15.12.2009 22:16&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_b30.dat --------- 16384 <br />
&nbsp;15.12.2009 22:15&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~tmp1260911740410 --------- 252 <br />
&nbsp;15.12.2009 20:37&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~tmp1260905848410 --------- 252 <br />
&nbsp;15.12.2009 20:36&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-125 --------- 0 <br />
&nbsp;14.12.2009 15:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_b24.dat --------- 16384 <br />
&nbsp;14.12.2009 15:04&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_658.dat --------- 16384 <br />
&nbsp;14.12.2009 10:58&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-124 --------- 0 <br />
&nbsp;14.12.2009 10:13&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Eingelegte Heringe mit Currysauce-1.doc --------- 20480 <br />
&nbsp;14.12.2009 10:10&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_d3c.dat --------- 16384 <br />
&nbsp;14.12.2009 10:09&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_15c.dat --------- 16384 <br />
&nbsp;13.12.2009 22:21&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_864.dat --------- 16384 <br />
&nbsp;13.12.2009 22:20&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_d58.dat --------- 16384 <br />
&nbsp;13.12.2009 21:54&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_c78.dat --------- 16384 <br />
&nbsp;13.12.2009 20:40&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-123 --------- 0 <br />
&nbsp;13.12.2009 19:53&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-122 --------- 0 <br />
&nbsp;13.12.2009 15:53&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\utt1C5.tmp.bat --------- 72 <br />
&nbsp;13.12.2009 15:53&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\utt1C5.tmp --------- 0 <br />
&nbsp;13.12.2009 15:53&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\utt1C4.tmp --------- 0 <br />
&nbsp;13.12.2009 15:47&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Die Drei Fragezeichen - F135-Fluch Des Piraten [found-on-www-bitreactor-to].torrent --------- 8891 <br />
&nbsp;08.12.2009 20:32&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Eingelegte Heringe mit Currysauce.doc --------- 20480 <br />
&nbsp;07.12.2009 16:00&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ5597445479201359770Swap.tmp --------- 145857 <br />
&nbsp;07.12.2009 15:20&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_5ec.dat --------- 16384 <br />
&nbsp;07.12.2009 15:20&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_688.dat --------- 16384 <br />
&nbsp;07.12.2009 15:03&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-121 --------- 0 <br />
&nbsp;06.12.2009 21:03&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DFC398.tmp --------- 49152 <br />
&nbsp;06.12.2009 19:00&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\cc3data_init.xml --------- 8098 <br />
&nbsp;05.12.2009 00:23&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_354c.dat --------- 16384 <br />
&nbsp;05.12.2009 00:23&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF528C.tmp --------- 49152 <br />
&nbsp;05.12.2009 00:18&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-120 --------- 0 <br />
&nbsp;04.12.2009 22:21&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\unwise.exe --------- 201944 <br />
&nbsp;04.12.2009 22:16&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\{EAB899DE-30FF-4D22-B879-A66CCA7786A8} --------- 0 <br />
&nbsp;04.12.2009 21:53&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-119 --------- 0 <br />
&nbsp;04.12.2009 21:36&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-118 --------- 0 <br />
&nbsp;30.11.2009 12:07&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-117 --------- 0 <br />
&nbsp;26.11.2009 22:39&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-116 --------- 0 <br />
&nbsp;26.11.2009 20:37&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-115 --------- 0 <br />
&nbsp;24.11.2009 20:55&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-114 --------- 0 <br />
&nbsp;22.11.2009 21:09&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_450.dat --------- 16384 <br />
&nbsp;22.11.2009 21:09&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_990.dat --------- 16384 <br />
&nbsp;22.11.2009 21:08&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_780.dat --------- 16384 <br />
&nbsp;22.11.2009 18:16&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-113 --------- 0 <br />
&nbsp;22.11.2009 18:12&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_fd8.dat --------- 16384 <br />
&nbsp;22.11.2009 18:12&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_d24.dat --------- 16384 <br />
&nbsp;22.11.2009 17:44&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-112 --------- 0 <br />
&nbsp;21.11.2009 20:24&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-111 --------- 0 <br />
&nbsp;19.11.2009 17:37&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\ShellFolders6267950543732462312.tmp --------- 4122 <br />
&nbsp;19.11.2009 16:30&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-110 --------- 0 <br />
&nbsp;16.11.2009 11:55&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-109 --------- 0 <br />
&nbsp;16.11.2009 10:37&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\java_install_sp.log --------- 4124 <br />
&nbsp;16.11.2009 10:36&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\2bc6b414.mst --------- 5302784 <br />
&nbsp;13.11.2009 22:22&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\jinstall.cfg --------- 931 <br />
&nbsp;09.11.2009 21:10&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ2916450602574245315Swap.tmp --------- 292250 <br />
&nbsp;09.11.2009 21:06&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ9109957963520741711Swap.tmp --------- 240955 <br />
&nbsp;09.11.2009 21:06&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ1821936559692988401Swap.tmp --------- 204730 <br />
&nbsp;09.11.2009 21:06&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ9133856123190279590Swap.tmp --------- 296733 <br />
&nbsp;09.11.2009 21:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ7591655925425016851Swap.tmp --------- 301925 <br />
&nbsp;09.11.2009 21:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ1387421505154684924Swap.tmp --------- 322027 <br />
&nbsp;09.11.2009 21:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ5973644263080305497Swap.tmp --------- 299302 <br />
&nbsp;09.11.2009 21:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ7260969858612115506Swap.tmp --------- 164649 <br />
&nbsp;09.11.2009 21:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ9048463820646157582Swap.tmp --------- 244050 <br />
&nbsp;09.11.2009 21:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ1141234305188704415Swap.tmp --------- 301875 <br />
&nbsp;09.11.2009 21:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ143660765846778961Swap.tmp --------- 216903 <br />
&nbsp;09.11.2009 21:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ8449220537986739056Swap.tmp --------- 242443 <br />
&nbsp;09.11.2009 21:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ8005821985320272796Swap.tmp --------- 255220 <br />
&nbsp;09.11.2009 21:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ2311649046048926180Swap.tmp --------- 291792 <br />
&nbsp;09.11.2009 21:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ5250254844819886556Swap.tmp --------- 280632 <br />
&nbsp;09.11.2009 21:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ711174668178366130Swap.tmp --------- 267208 <br />
&nbsp;09.11.2009 21:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ3996866976125652016Swap.tmp --------- 294328 <br />
&nbsp;09.11.2009 21:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ6687801903529040432Swap.tmp --------- 312436 <br />
&nbsp;09.11.2009 21:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ4324580603879851031Swap.tmp --------- 233706 <br />
&nbsp;09.11.2009 21:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ497109274995162782Swap.tmp --------- 205130 <br />
&nbsp;09.11.2009 21:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ5467919567317779523Swap.tmp --------- 255643 <br />
&nbsp;09.11.2009 21:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ2162991389740861506Swap.tmp --------- 302097 <br />
&nbsp;09.11.2009 21:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ4329932412138133062Swap.tmp --------- 217070 <br />
&nbsp;09.11.2009 21:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ3520512138961573375Swap.tmp --------- 360841 <br />
&nbsp;09.11.2009 21:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ5859925305588062782Swap.tmp --------- 346452 <br />
&nbsp;09.11.2009 21:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ5448086309564180038Swap.tmp --------- 361724 <br />
&nbsp;09.11.2009 21:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ8542080830027582964Swap.tmp --------- 227208 <br />
&nbsp;09.11.2009 21:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ4452849793019378189Swap.tmp --------- 336025 <br />
&nbsp;09.11.2009 21:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ2832966250062123733Swap.tmp --------- 373460 <br />
&nbsp;09.11.2009 21:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ475213085414656953Swap.tmp --------- 271218 <br />
&nbsp;09.11.2009 20:58&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ6335581983593957240Swap.tmp --------- 270312 <br />
&nbsp;09.11.2009 20:58&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ1514910572571483273Swap.tmp --------- 257646 <br />
&nbsp;09.11.2009 20:58&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ2495701290495637986Swap.tmp --------- 306474 <br />
&nbsp;09.11.2009 20:58&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ2311652120154673554Swap.tmp --------- 252631 <br />
&nbsp;09.11.2009 20:58&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ2169259489811594288Swap.tmp --------- 222382 <br />
&nbsp;09.11.2009 20:58&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ432016343013912270Swap.tmp --------- 339074 <br />
&nbsp;09.11.2009 20:57&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ7538956915779562191Swap.tmp --------- 345817 <br />
&nbsp;09.11.2009 20:57&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ8541637923109026497Swap.tmp --------- 414673 <br />
&nbsp;09.11.2009 20:57&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ7911552187891662952Swap.tmp --------- 370444 <br />
&nbsp;09.11.2009 20:57&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ3803198431539194518Swap.tmp --------- 377749 <br />
&nbsp;09.11.2009 20:57&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ812088609583195050Swap.tmp --------- 238069 <br />
&nbsp;09.11.2009 20:57&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ2067585338855065125Swap.tmp --------- 317543 <br />
&nbsp;09.11.2009 20:57&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ4767303052564841667Swap.tmp --------- 239369 <br />
&nbsp;09.11.2009 20:57&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ7134148558085824162Swap.tmp --------- 288280 <br />
&nbsp;09.11.2009 20:57&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ8453549056089186470Swap.tmp --------- 270982 <br />
&nbsp;09.11.2009 20:57&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ6494302037406113889Swap.tmp --------- 277564 <br />
&nbsp;09.11.2009 16:22&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-108 --------- 0 <br />
&nbsp;07.11.2009 22:43&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_a28.dat --------- 16384 <br />
&nbsp;07.11.2009 22:43&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_1fc.dat --------- 16384 <br />
&nbsp;07.11.2009 22:42&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\uttA.tmp --------- 0 <br />
&nbsp;07.11.2009 22:42&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\uttA.tmp.bat --------- 72 <br />
&nbsp;07.11.2009 22:42&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_b78.dat --------- 16384 <br />
&nbsp;07.11.2009 22:42&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\utt9.tmp --------- 0 <br />
&nbsp;07.11.2009 20:02&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-107 --------- 0 <br />
&nbsp;07.11.2009 17:12&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\temp.ani --------- 13592 <br />
&nbsp;07.11.2009 17:12&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\drm_dyndata_7300015.dll --------- 212992 <br />
&nbsp;06.11.2009 00:39&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\jre-6u17-windows-i586-iftw-rv.exe --------- 796448 <br />
&nbsp;05.11.2009 17:35&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-106 --------- 0 <br />
&nbsp;04.11.2009 20:57&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DFBF01.tmp --------- 512 <br />
&nbsp;04.11.2009 20:57&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DFBEF1.tmp --------- 512 <br />
&nbsp;04.11.2009 20:57&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF86ED.tmp --------- 512 <br />
&nbsp;04.11.2009 20:56&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~WRS0009.tmp --------- 33280 <br />
&nbsp;04.11.2009 20:30&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF2696.tmp --------- 512 <br />
&nbsp;04.11.2009 20:02&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\persisch.zip --------- 12469 <br />
&nbsp;02.11.2009 20:53&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_8c.dat --------- 16384 <br />
&nbsp;02.11.2009 20:52&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_c08.dat --------- 16384 <br />
&nbsp;02.11.2009 11:08&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-105 --------- 0 <br />
&nbsp;01.11.2009 19:44&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_2f4.dat --------- 16384 <br />
&nbsp;01.11.2009 19:42&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_7d4.dat --------- 16384 <br />
&nbsp;01.11.2009 12:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-104 --------- 0 <br />
&nbsp;01.11.2009 11:28&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-103 --------- 0 <br />
&nbsp;30.10.2009 14:46&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~tmp1256910386410 --------- 252 <br />
&nbsp;26.10.2009 11:25&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_fb0.dat --------- 16384 <br />
&nbsp;26.10.2009 11:24&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_9f8.dat --------- 16384 <br />
&nbsp;25.10.2009 21:47&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\drm_dialogs.dll --------- 65536 <br />
&nbsp;22.10.2009 16:34&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\TWAIN.LOG --------- 5698 <br />
&nbsp;22.10.2009 16:33&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Twain001.Mtx --------- 4 <br />
&nbsp;22.10.2009 16:33&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Twunk001.MTX --------- 156 <br />
&nbsp;22.10.2009 15:24&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-102 --------- 0 <br />
&nbsp;20.10.2009 09:43&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~tmp1256028182410 --------- 252 <br />
&nbsp;19.10.2009 21:50&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Mitgliederwerbung - Plakat WS 2009-10.pdf --------- 24708 <br />
&nbsp;18.10.2009 08:03&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_d48.dat --------- 16384 <br />
&nbsp;18.10.2009 08:02&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_c14.dat --------- 16384 <br />
&nbsp;17.10.2009 22:02&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_hOqw0vnUcYtovpcP5cbo --------- 0 <br />
&nbsp;17.10.2009 21:01&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-101 --------- 0 <br />
&nbsp;16.10.2009 08:56&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_a88.dat --------- 16384 <br />
&nbsp;16.10.2009 08:56&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_d38.dat --------- 16384 <br />
&nbsp;15.10.2009 17:07&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_hDcZof3cHcNW2lzmSdHX --------- 0 <br />
&nbsp;15.10.2009 15:44&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-100 --------- 0 <br />
&nbsp;15.10.2009 14:32&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Microsoft .NET Framework 2.0-KB974417_20091015_132427419.html --------- 507222 <br />
&nbsp;15.10.2009 14:32&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Microsoft .NET Framework 2.0-KB974417_20091015_132427419-Msi0.txt --------- 9954310 <br />
&nbsp;15.10.2009 14:30&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\ASPNETSetup_00003.log --------- 5158 <br />
&nbsp;15.10.2009 14:21&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\NetFxUpdate_v1.1.4322.log --------- 1547 <br />
&nbsp;15.10.2009 14:19&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\NDP1.1sp1-KB953297-X86 --------- 0 <br />
&nbsp;15.10.2009 14:15&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_bac.dat --------- 16384 <br />
&nbsp;15.10.2009 14:14&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_f68.dat --------- 16384 <br />
&nbsp;15.10.2009 14:07&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-99 --------- 0 <br />
&nbsp;15.10.2009 13:41&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_39b9pUpgTsmS5PMvBNsI --------- 0 <br />
&nbsp;15.10.2009 12:32&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\FluchderKaribik3-AmEndederWelt@www.torrent.to.torrent --------- 19413 <br />
&nbsp;15.10.2009 12:31&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\FluchderKaribik2@www.torrent.to.torrent --------- 27140 <br />
&nbsp;14.10.2009 13:18&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~WRS2106.tmp --------- 181330 <br />
&nbsp;14.10.2009 13:15&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-98 --------- 0 <br />
&nbsp;14.10.2009 13:00&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF1DC.tmp --------- 512 <br />
&nbsp;14.10.2009 13:00&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF1CC.tmp --------- 512 <br />
&nbsp;14.10.2009 12:31&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF91B6.tmp --------- 512 <br />
&nbsp;14.10.2009 12:31&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~WRD0014.doc --------- 933 <br />
&nbsp;14.10.2009 12:31&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF6FF8.tmp --------- 512 <br />
&nbsp;14.10.2009 12:31&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF46AE.tmp --------- 512 <br />
&nbsp;14.10.2009 12:29&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF6C8B.tmp --------- 512 <br />
&nbsp;14.10.2009 12:02&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-97 --------- 0 <br />
&nbsp;14.10.2009 11:06&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-96 --------- 0 <br />
&nbsp;14.10.2009 10:16&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF30DE.tmp --------- 512 <br />
&nbsp;14.10.2009 10:08&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-95 --------- 0 <br />
&nbsp;14.10.2009 09:20&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-94 --------- 0 <br />
&nbsp;12.10.2009 11:24&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_e98.dat --------- 16384 <br />
&nbsp;12.10.2009 11:24&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_ea4.dat --------- 16384 <br />
&nbsp;12.10.2009 11:23&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_8fc.dat --------- 16384 <br />
&nbsp;12.10.2009 08:53&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF680E.tmp --------- 512 <br />
&nbsp;12.10.2009 08:52&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~WRD0003.doc --------- 5829 <br />
&nbsp;12.10.2009 08:51&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF2EDD.tmp --------- 512 <br />
&nbsp;12.10.2009 08:49&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF96D5.tmp --------- 512 <br />
&nbsp;12.10.2009 08:47&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF2AB7.tmp --------- 512 <br />
&nbsp;12.10.2009 08:43&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DFE350.tmp --------- 512 <br />
&nbsp;12.10.2009 08:34&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF2C34.tmp --------- 512 <br />
&nbsp;12.10.2009 08:33&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~WRS0008.tmp --------- 28722 <br />
&nbsp;12.10.2009 08:28&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DFD19A.tmp --------- 512 <br />
&nbsp;12.10.2009 08:28&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF8FBC.tmp --------- 512 <br />
&nbsp;12.10.2009 08:13&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_318.dat --------- 16384 <br />
&nbsp;12.10.2009 08:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_f1c.dat --------- 16384 <br />
&nbsp;10.10.2009 12:41&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\uvs091007-015.BMP --------- 921654 <br />
&nbsp;10.10.2009 12:22&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\{71945844-AA92-4038-A1FC-40CEE017808A} --------- 0 <br />
&nbsp;10.10.2009 12:16&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-93 --------- 0 <br />
&nbsp;09.10.2009 09:33&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-92 --------- 0 <br />
&nbsp;09.10.2009 09:26&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-91 --------- 0 <br />
&nbsp;08.10.2009 09:55&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_2a4.dat --------- 16384 <br />
&nbsp;07.10.2009 16:39&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-90 --------- 0 <br />
&nbsp;07.10.2009 15:10&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\tmpD0.tmp --------- 243 <br />
&nbsp;07.10.2009 15:09&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\tmpCF.tmp --------- 0 <br />
&nbsp;07.10.2009 15:09&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DFDF6D.tmp --------- 16384 <br />
&nbsp;07.10.2009 09:35&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_93c.dat --------- 16384 <br />
&nbsp;07.10.2009 09:34&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_948.dat --------- 16384 <br />
&nbsp;06.10.2009 12:14&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-89 --------- 0 <br />
&nbsp;06.10.2009 10:34&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-88 --------- 0 <br />
&nbsp;05.10.2009 15:27&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\angebot_091005_155659_7449.pdf --------- 225663 <br />
&nbsp;02.10.2009 14:01&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\mpb00404.php --------- 102 <br />
&nbsp;02.10.2009 14:01&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\mp25096.php --------- 1 <br />
&nbsp;02.10.2009 14:01&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\mp17368.php --------- 37 <br />
&nbsp;02.10.2009 14:01&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\mp17587.php --------- 0 <br />
&nbsp;02.10.2009 14:01&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\mp30413.jpg --------- 15920 <br />
&nbsp;02.10.2009 14:01&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\mp20272.w32 --------- 884421 <br />
&nbsp;02.10.2009 14:01&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\mp23316.w32 --------- 154310 <br />
&nbsp;02.10.2009 14:01&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\mp10426.w32 --------- 203011 <br />
&nbsp;02.10.2009 14:01&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\mp16002.w32 --------- 41515 <br />
&nbsp;02.10.2009 14:01&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\mpb00404.w32 --------- 51507 <br />
&nbsp;02.10.2009 14:01&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\mp9002.w32 --------- 10558 <br />
&nbsp;02.10.2009 14:01&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\mp32219.w32 --------- 15393 <br />
&nbsp;02.10.2009 14:01&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\mp24926.w32 --------- 20751 <br />
&nbsp;02.10.2009 14:01&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\mpa00404 --------- 26484 <br />
&nbsp;02.10.2009 12:36&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-87 --------- 0 <br />
&nbsp;01.10.2009 20:38&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Die Drei Fragezeichen - F134-Der Tote M”nch [found-on-www-bitreactor-to].torrent --------- 8588 <br />
&nbsp;01.10.2009 20:38&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Die Drei Fragezeichen - F133-Fels Der D„monen [found-on-www-bitreactor-to].torrent --------- 7600 <br />
&nbsp;01.10.2009 18:03&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\EADF.exe --------- 6819160 <br />
&nbsp;01.10.2009 18:03&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_d1c.dat --------- 16384 <br />
&nbsp;01.10.2009 18:03&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_8b4.dat --------- 16384 <br />
&nbsp;01.10.2009 18:02&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\EADF.tmp --------- 0 <br />
&nbsp;01.10.2009 15:18&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-86 --------- 0 <br />
&nbsp;01.10.2009 11:39&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\PICT0087.JPG --------- 707900 <br />
&nbsp;01.10.2009 11:39&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\PICT0077.JPG --------- 429383 <br />
&nbsp;30.09.2009 20:37&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-85 --------- 0 <br />
&nbsp;28.09.2009 13:53&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-84 --------- 0 <br />
&nbsp;25.09.2009 13:06&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Setup.exe --------- 6399048 <br />
&nbsp;24.09.2009 21:35&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-83 --------- 0 <br />
&nbsp;24.09.2009 12:44&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_PpY04tzHqNjJlptEoF3F --------- 0 <br />
&nbsp;23.09.2009 14:37&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_9b4.dat --------- 16384 <br />
&nbsp;23.09.2009 14:36&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_f2c.dat --------- 16384 <br />
&nbsp;23.09.2009 14:36&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\EAD7.exe --------- 616448 <br />
&nbsp;23.09.2009 14:36&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\EAD7.tmp --------- 0 <br />
&nbsp;23.09.2009 14:19&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\cc3data_change.xml --------- 8098 <br />
&nbsp;23.09.2009 13:49&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-82 --------- 0 <br />
&nbsp;23.09.2009 12:18&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_oxY82P1qNiL2rbx0tCo0 --------- 0 <br />
&nbsp;23.09.2009 11:22&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_a1c.dat --------- 16384 <br />
&nbsp;23.09.2009 11:22&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_9f4.dat --------- 16384 <br />
&nbsp;23.09.2009 11:22&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\EADE.exe --------- 6819160 <br />
&nbsp;23.09.2009 11:21&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_104.dat --------- 16384 <br />
&nbsp;23.09.2009 11:21&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\EADE.tmp --------- 0 <br />
&nbsp;23.09.2009 10:25&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_Yt0gIG0PBzRdvnb7gC6W --------- 0 <br />
&nbsp;23.09.2009 09:58&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-81 --------- 0 <br />
&nbsp;23.09.2009 09:57&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-80 --------- 0 <br />
&nbsp;22.09.2009 21:03&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\TE_Schultze.pdf --------- 78960 <br />
&nbsp;22.09.2009 16:25&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\uvs090914-003.BMP --------- 921654 <br />
&nbsp;22.09.2009 13:04&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\EADD.exe --------- 6819160 <br />
&nbsp;22.09.2009 13:04&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_9b8.dat --------- 16384 <br />
&nbsp;22.09.2009 13:04&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_2e0.dat --------- 16384 <br />
&nbsp;22.09.2009 13:03&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\EADD.tmp --------- 0 <br />
&nbsp;22.09.2009 12:40&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-79 --------- 0 <br />
&nbsp;22.09.2009 10:43&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_QsgUXrY1iP01hEK2lQoc --------- 0 <br />
&nbsp;17.09.2009 13:26&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-78 --------- 0 <br />
&nbsp;16.09.2009 18:02&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\NoConnection.mht --------- 1058 <br />
&nbsp;16.09.2009 09:20&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-77 --------- 0 <br />
&nbsp;16.09.2009 08:43&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_d98.dat --------- 16384 <br />
&nbsp;16.09.2009 08:43&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_d30.dat --------- 16384 <br />
&nbsp;16.09.2009 08:42&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_b20.dat --------- 16384 <br />
&nbsp;15.09.2009 10:45&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-76 --------- 0 <br />
&nbsp;15.09.2009 09:51&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\EADC.exe --------- 6819160 <br />
&nbsp;15.09.2009 09:50&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\EADC.tmp --------- 0 <br />
&nbsp;14.09.2009 21:26&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-75 --------- 0 <br />
&nbsp;14.09.2009 16:59&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\uvs090914-008.BMP --------- 921654 <br />
&nbsp;14.09.2009 16:58&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\uvs090914-001.BMP --------- 921654 <br />
&nbsp;14.09.2009 16:21&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\EADB.exe --------- 6819160 <br />
&nbsp;14.09.2009 16:21&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_220.dat --------- 16384 <br />
&nbsp;14.09.2009 16:20&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_904.dat --------- 16384 <br />
&nbsp;14.09.2009 16:20&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\EADB.tmp --------- 0 <br />
&nbsp;14.09.2009 16:15&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\{19CCF13B-B9D6-4E4C-B413-1C10C41DD2A8} --------- 0 <br />
&nbsp;14.09.2009 16:15&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\{DCF68728-121B-4AA2-80FC-A1C9BFE831D6} --------- 0 <br />
&nbsp;14.09.2009 16:14&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DFD8FE.tmp --------- 1540096 <br />
&nbsp;14.09.2009 16:10&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\RealPlayer-log.txt --------- 5390 <br />
&nbsp;14.09.2009 16:01&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\EADA.exe --------- 6819160 <br />
&nbsp;14.09.2009 16:00&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\EADA.tmp --------- 0 <br />
&nbsp;14.09.2009 15:53&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\{537D8E37-CD60-4572-B06E-E890F369D78A} --------- 0 <br />
&nbsp;14.09.2009 15:41&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-74 --------- 0 <br />
&nbsp;14.09.2009 15:38&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF98D9.tmp --------- 1540096 <br />
&nbsp;14.09.2009 12:03&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-73 --------- 0 <br />
&nbsp;12.09.2009 13:09&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\tg.fl2 --------- 1443464 <br />
&nbsp;12.09.2009 11:48&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\EAD9.exe --------- 6819160 <br />
&nbsp;12.09.2009 11:47&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\EAD9.tmp --------- 0 <br />
&nbsp;11.09.2009 21:42&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\dde2_appcompat.txt --------- 52084 <br />
&nbsp;11.09.2009 21:39&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Spi59F.tmp --------- 21380 <br />
&nbsp;11.09.2009 21:10&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF70C1.tmp --------- 16384 <br />
&nbsp;11.09.2009 21:06&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF50DE.tmp --------- 16384 <br />
&nbsp;11.09.2009 19:37&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF4C9D.tmp --------- 16384 <br />
&nbsp;11.09.2009 18:59&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF4E6.tmp --------- 16384 <br />
&nbsp;11.09.2009 16:53&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DFA3CD.tmp --------- 16384 <br />
&nbsp;11.09.2009 16:31&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF18F8.tmp --------- 16384 <br />
&nbsp;11.09.2009 14:35&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-72 --------- 0 <br />
&nbsp;11.09.2009 14:15&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF40C2.tmp --------- 16384 <br />
&nbsp;11.09.2009 13:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Literatur zu einzelnen Fundpl„tzen.pdf --------- 75476 <br />
&nbsp;11.09.2009 12:56&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF5F46.tmp --------- 16384 <br />
&nbsp;11.09.2009 11:28&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF8FD1.tmp --------- 16384 <br />
&nbsp;10.09.2009 15:06&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-71 --------- 0 <br />
&nbsp;10.09.2009 14:33&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ4032434713505389519Swap.tmp --------- 254373 <br />
&nbsp;10.09.2009 14:32&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ791813546033508144Swap.tmp --------- 118014 <br />
&nbsp;10.09.2009 14:31&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ4649248612263074117Swap.tmp --------- 332498 <br />
&nbsp;10.09.2009 14:29&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ8831239448273422512Swap.tmp --------- 89025 <br />
&nbsp;09.09.2009 21:33&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Spi2DF.tmp --------- 21380 <br />
&nbsp;09.09.2009 16:24&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Die Drei Fragezeichen - F132-Spuk Im Netz [found-on-www-bitreactor-to].torrent --------- 7790 <br />
&nbsp;09.09.2009 15:45&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\jar_cache5520473034873721711.tmp --------- 76856 <br />
&nbsp;09.09.2009 14:02&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-70 --------- 0 <br />
&nbsp;08.09.2009 18:07&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\{5C02EA6D-3EA1-41DE-99C8-DA4272F37259} --------- 0 <br />
&nbsp;08.09.2009 17:53&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\{84F6EC29-D94E-4D16-BD21-5965CF87EBEF} --------- 0 <br />
&nbsp;07.09.2009 19:41&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-69 --------- 0 <br />
&nbsp;07.09.2009 10:27&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-68 --------- 0 <br />
&nbsp;07.09.2009 10:00&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Microsoft .NET Framework 3.5-KB963707_20090907_085938671.html --------- 75794 <br />
&nbsp;07.09.2009 10:00&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Microsoft .NET Framework 3.5-KB963707_20090907_085938671-Msi0.txt --------- 427942 <br />
&nbsp;04.09.2009 14:53&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-67 --------- 0 <br />
&nbsp;03.09.2009 22:14&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\UninstallEADM.dll --------- 193840 <br />
&nbsp;01.09.2009 13:35&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-66 --------- 0 <br />
&nbsp;01.09.2009 10:41&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\jar_cache449289839516170960.tmp --------- 2072 <br />
&nbsp;01.09.2009 10:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_160.dat --------- 16384 <br />
&nbsp;01.09.2009 10:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_12c.dat --------- 16384 <br />
&nbsp;01.09.2009 10:10&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_d14.dat --------- 16384 <br />
&nbsp;31.08.2009 20:18&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-65 --------- 0 <br />
&nbsp;30.08.2009 09:39&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\346stsvz.pdf --------- 47035 <br />
&nbsp;28.08.2009 19:54&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\SIntfIcn.ani --------- 4592 <br />
&nbsp;28.08.2009 19:54&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\SIntfNT.dll --------- 22068 <br />
&nbsp;28.08.2009 19:54&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\SIntf32.dll --------- 17324 <br />
&nbsp;28.08.2009 19:54&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\SIntf16.dll --------- 12305 <br />
&nbsp;28.08.2009 19:54&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\CmdLineExt03.dll --------- 40448 <br />
&nbsp;28.08.2009 19:21&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~e5d141.tmp --------- 73276 <br />
&nbsp;28.08.2009 19:08&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-64 --------- 0 <br />
&nbsp;28.08.2009 13:47&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\melderegisterauskunft_privat.pdf --------- 102529 <br />
&nbsp;27.08.2009 22:41&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_ec4.dat --------- 16384 <br />
&nbsp;27.08.2009 22:41&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_29c.dat --------- 16384 <br />
&nbsp;27.08.2009 22:37&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_900.dat --------- 16384 <br />
&nbsp;27.08.2009 21:48&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-63 --------- 0 <br />
&nbsp;27.08.2009 15:53&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_TaAhSj8lVudKP3P9VQsU --------- 0 <br />
&nbsp;27.08.2009 14:03&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~3A6.tmp --------- 0 <br />
&nbsp;27.08.2009 13:37&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-62 --------- 0 <br />
&nbsp;24.08.2009 21:39&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Dickas-1.ged --------- 2042 <br />
&nbsp;24.08.2009 21:37&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Dickas.ged --------- 1744 <br />
&nbsp;24.08.2009 21:00&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-61 --------- 0 <br />
&nbsp;23.08.2009 22:47&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\utt11C.tmp --------- 0 <br />
&nbsp;23.08.2009 22:47&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\utt11C.tmp.bat --------- 72 <br />
&nbsp;23.08.2009 22:47&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\utt11B.tmp --------- 0 <br />
&nbsp;23.08.2009 20:18&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Adressbuch_aller_L__nder_der_Erde_der_Ka.pdf --------- 14567781 <br />
&nbsp;23.08.2009 17:00&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_944.dat --------- 16384 <br />
&nbsp;23.08.2009 16:59&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_690.dat --------- 16384 <br />
&nbsp;23.08.2009 16:19&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Microsoft .NET Framework 3.5-KB958484_20090823_151834375.html --------- 94242 <br />
&nbsp;23.08.2009 16:19&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Microsoft .NET Framework 3.5-KB958484_20090823_151834375-Msi0.txt --------- 751948 <br />
&nbsp;23.08.2009 16:18&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Microsoft .NET Framework 3.0-KB958483_20090823_151632218.html --------- 113454 <br />
&nbsp;23.08.2009 16:18&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Microsoft .NET Framework 3.0-KB958483_20090823_151632218-Msi0.txt --------- 2121546 <br />
&nbsp;23.08.2009 16:17&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\dd_wcf_retCA1245.txt --------- 4671 <br />
&nbsp;23.08.2009 16:15&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Microsoft .NET Framework 2.0-KB958481_20090823_150352500.html --------- 504530 <br />
&nbsp;23.08.2009 16:15&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Microsoft .NET Framework 2.0-KB958481_20090823_150352500-Msi0.txt --------- 9424948 <br />
&nbsp;23.08.2009 16:12&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\ASPNETSetup_00002.log --------- 5158 <br />
&nbsp;23.08.2009 16:03&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\dd_dotnetfx35install.txt --------- 297040 <br />
&nbsp;23.08.2009 16:03&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\uxeventlog.txt --------- 69896 <br />
&nbsp;23.08.2009 16:03&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\dd_NET_Framework35_MSI4A46.txt --------- 1444822 <br />
&nbsp;23.08.2009 16:02&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\dd_NET_Framework30_Setup4825.txt --------- 4043842 <br />
&nbsp;23.08.2009 16:00&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\dd_wcf_retCA42CC.txt --------- 4740 <br />
&nbsp;23.08.2009 15:59&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\dd_XPS.txt --------- 23211 <br />
&nbsp;23.08.2009 15:58&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\dd_NET_Framework20_Setup42D7.txt --------- 17060734 <br />
&nbsp;23.08.2009 15:56&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\ASPNETSetup_00001.log --------- 5158 <br />
&nbsp;23.08.2009 15:52&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\dd_clwireg.txt --------- 7944 <br />
&nbsp;23.08.2009 15:52&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\dd_depcheck_NETFX_EXP_35.txt --------- 204281 <br />
&nbsp;23.08.2009 15:51&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\dd_dotnetfx35error.txt --------- 2 <br />
&nbsp;21.08.2009 14:20&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\{A38E222C-83EC-4469-8F86-0D833D8BAF8C} --------- 0 <br />
&nbsp;21.08.2009 14:03&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\{F19B18BC-869D-403C-95B5-4D224261F4A5} --------- 0 <br />
&nbsp;20.08.2009 19:04&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-60 --------- 0 <br />
&nbsp;19.08.2009 11:54&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-59 --------- 0 <br />
&nbsp;18.08.2009 10:18&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IMT3B.xml --------- 797676 <br />
&nbsp;18.08.2009 10:18&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IMT3A.xml --------- 426 <br />
&nbsp;18.08.2009 10:18&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IMT39.xml --------- 2036 <br />
&nbsp;18.08.2009 09:57&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\902b4.mst --------- 1852928 <br />
&nbsp;18.08.2009 00:59&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\ge2056 --------- 0 <br />
&nbsp;18.08.2009 00:55&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_r0wuMGXTvwZgWPrQZhr5 --------- 0 <br />
&nbsp;17.08.2009 22:16&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_ouqBikS09oxKRdk5sDod --------- 1024 <br />
&nbsp;17.08.2009 22:16&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_PFZo2AkZoum1hhViCqFe --------- 1544 <br />
&nbsp;17.08.2009 16:00&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_2b0.dat --------- 16384 <br />
&nbsp;17.08.2009 16:00&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_fa8.dat --------- 16384 <br />
&nbsp;12.08.2009 11:56&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\{FF328BC5-5208-41C2-A323-2F85B0636A53} --------- 0 <br />
&nbsp;12.08.2009 10:39&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-58 --------- 0 <br />
&nbsp;12.08.2009 10:37&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Die Drei Fragezeichen - Das Verfluchte Schloss [found-on-www-bitreactor-to].torrent --------- 58913 <br />
&nbsp;12.08.2009 10:37&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Die Drei Fragezeichen - F131-Haus Des Schreckens [found-on-www-bitreactor-to].torrent --------- 8572 <br />
&nbsp;11.08.2009 10:53&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Zonatus Liste.xls --------- 460800 <br />
&nbsp;10.08.2009 11:49&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~tmp1249901346410 --------- 252 <br />
&nbsp;10.08.2009 10:44&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~tmp1249897454410 --------- 252 <br />
&nbsp;10.08.2009 10:36&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\[www.seedpeer.com] Family Tree Maker 2009.SEEDPEER.torrent --------- 13425 <br />
&nbsp;10.08.2009 10:14&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~tmp1249895671410 --------- 252 <br />
&nbsp;09.08.2009 21:25&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\ge1064 --------- 0 <br />
&nbsp;09.08.2009 15:54&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_fUPhpHt1t5uJ2l5crQ5p --------- 0 <br />
&nbsp;09.08.2009 15:32&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\3D - Wanwan - Beastiality Hentai [found-on-www-bitreactor-to]-1.torrent --------- 13567 <br />
&nbsp;09.08.2009 15:31&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Rape Rape Rape [hshare net] [found-on-www-bitreactor-to].torrent --------- 20692 <br />
&nbsp;09.08.2009 15:29&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Hentai - Immoral-Sisters 1 (Eng Dub &amp; Uncensored) [found-on-www-bitreactor-to].torrent --------- 13017 <br />
&nbsp;09.08.2009 15:29&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\3D - Trash Box 2 - With Futanari [found-on-www-bitreactor-to]-1.torrent --------- 16792 <br />
&nbsp;09.08.2009 15:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-57 --------- 0 <br />
&nbsp;09.08.2009 14:22&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_a94.dat --------- 16384 <br />
&nbsp;09.08.2009 14:22&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_a58.dat --------- 16384 <br />
&nbsp;07.08.2009 10:01&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_sa6ieKDFXGGVMhJiG0Wf --------- 0 <br />
&nbsp;07.08.2009 09:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_CMZ1wgQ6QoWIb7g6fcEq --------- 1024 <br />
&nbsp;07.08.2009 09:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_E4fCKQanTiLv8utJ1wMj --------- 1544 <br />
&nbsp;06.08.2009 22:03&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\12pa-1998-s00.pdf --------- 107388 <br />
&nbsp;06.08.2009 22:01&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\12vf-1998-s00.pdf --------- 109297 <br />
&nbsp;06.08.2009 20:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-56 --------- 0 <br />
&nbsp;01.08.2009 18:29&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\jre-6u15-windows-i586-iftw.exe --------- 714528 <br />
&nbsp;27.07.2009 11:55&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~tmp1248692133410 --------- 252 <br />
&nbsp;26.07.2009 15:40&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_fbc.dat --------- 16384 <br />
&nbsp;23.07.2009 22:14&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Slave Market EP01-03 [ENG SUBS] [DUAL AUDIO] [UNCEN] [found-on-www-bitreactor-to].torrent --------- 16011 <br />
&nbsp;23.07.2009 22:14&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_ZvtFgJkXpQCfABcRDOTM --------- 0 <br />
&nbsp;23.07.2009 22:13&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\3D - Trash Box 2 - With Futanari [found-on-www-bitreactor-to].torrent --------- 16792 <br />
&nbsp;23.07.2009 22:13&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\3D - Wanwan - Beastiality Hentai [found-on-www-bitreactor-to].torrent --------- 13567 <br />
&nbsp;23.07.2009 22:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\15min Hardcore *** [found-on-www-bitreactor-to].torrent --------- 7354 <br />
&nbsp;23.07.2009 21:32&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Meine Frau erwischt mit Nachbarin [found-on-www-bitreactor-to].torrent --------- 3366 <br />
&nbsp;23.07.2009 21:19&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-55 --------- 0 <br />
&nbsp;23.07.2009 16:46&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\ge2332 --------- 0 <br />
&nbsp;23.07.2009 13:06&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_138.dat --------- 16384 <br />
&nbsp;23.07.2009 13:06&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_2e4.dat --------- 16384 <br />
&nbsp;23.07.2009 13:06&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_910.dat --------- 16384 <br />
&nbsp;23.07.2009 11:29&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-54 --------- 0 <br />
&nbsp;23.07.2009 11:22&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_O4ROfFV2QhwZLaJtOfxO --------- 36900 <br />
&nbsp;22.07.2009 08:45&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-53 --------- 0 <br />
&nbsp;22.07.2009 08:26&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_bec.dat --------- 16384 <br />
&nbsp;22.07.2009 08:25&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_1e0.dat --------- 16384 <br />
&nbsp;21.07.2009 22:29&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-52 --------- 0 <br />
&nbsp;20.07.2009 10:14&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\lilo2 --------- 1024 <br />
&nbsp;20.07.2009 10:13&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-51 --------- 0 <br />
&nbsp;19.07.2009 21:36&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_XgP8yYd5PBBHcrvpZAg5 --------- 1544 <br />
&nbsp;19.07.2009 21:36&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_zZISrZoTmNYoBZ9RXA9Y --------- 1024 <br />
&nbsp;19.07.2009 19:09&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_GbKjnG24QWMgtn6JBgId --------- 36900 <br />
&nbsp;18.07.2009 12:17&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-50 --------- 0 <br />
&nbsp;16.07.2009 19:03&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\ge4024 --------- 0 <br />
&nbsp;16.07.2009 14:28&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ_8189704592967639278.tmp --------- 141603 <br />
&nbsp;16.07.2009 13:56&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Lethe%201001%20B.JPG --------- 1873074 <br />
&nbsp;16.07.2009 12:36&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-49 --------- 0 <br />
&nbsp;14.07.2009 22:12&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\albo4.JPG --------- 17115 <br />
&nbsp;14.07.2009 22:12&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\albo1.JPG --------- 18029 <br />
&nbsp;14.07.2009 22:12&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\albo3.JPG --------- 16239 <br />
&nbsp;14.07.2009 22:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\albo2.JPG --------- 18188 <br />
&nbsp;14.07.2009 20:00&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\{BDE19838-505C-47EA-9DBD-253156A90C9F} --------- 0 <br />
&nbsp;14.07.2009 19:58&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\GLBC.tmp --------- 71680 <br />
&nbsp;14.07.2009 19:56&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\rb --------- 0 <br />
&nbsp;14.07.2009 19:47&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\{4385FC6F-4509-483E-A8A3-EA304987D693} --------- 0 <br />
&nbsp;14.07.2009 19:46&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_270.dat --------- 16384 <br />
&nbsp;14.07.2009 19:46&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_a08.dat --------- 16384 <br />
&nbsp;14.07.2009 19:41&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DFC734.tmp --------- 0 <br />
&nbsp;14.07.2009 19:41&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_QTFc1pYk980LALFBB8da --------- 4 <br />
&nbsp;14.07.2009 19:41&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF9E5D.tmp --------- 0 <br />
&nbsp;14.07.2009 19:39&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\GLJ20.tmp --------- 2560 <br />
&nbsp;14.07.2009 19:39&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\GLC1F.tmp --------- 165376 <br />
&nbsp;14.07.2009 19:39&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\GLB1E.tmp --------- 71680 <br />
&nbsp;14.07.2009 19:39&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF43AB.tmp --------- 98304 <br />
&nbsp;14.07.2009 19:32&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\{88ACCD4A-E9A7-493C-8BCA-03AA18B5500B} --------- 0 <br />
&nbsp;14.07.2009 19:32&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\{9EDA26F7-6A01-4208-ABCB-4B0B2A7BDAEA} --------- 0 <br />
&nbsp;14.07.2009 19:32&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\718631~1.exe --------- 16825216 <br />
&nbsp;13.07.2009 08:54&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_b94.dat --------- 16384 <br />
&nbsp;13.07.2009 08:54&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_120.dat --------- 16384 <br />
&nbsp;12.07.2009 21:34&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-48 --------- 0 <br />
&nbsp;12.07.2009 12:41&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_6MYHRmyevHSXFuv0MluI --------- 1544 <br />
&nbsp;12.07.2009 12:40&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_BhHeNih2WzidvXPnfUbB --------- 1024 <br />
&nbsp;09.07.2009 22:25&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_lEW7uM87sMm1bLR6Rq6c --------- 49200 <br />
&nbsp;09.07.2009 22:23&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_228.dat --------- 16384 <br />
&nbsp;09.07.2009 22:23&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_fc8.dat --------- 16384 <br />
&nbsp;09.07.2009 22:22&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_e40.dat --------- 16384 <br />
&nbsp;09.07.2009 17:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-47 --------- 0 <br />
&nbsp;08.07.2009 09:15&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_GcDSuFXWXObiLRo1vIy6 --------- 49200 <br />
&nbsp;07.07.2009 22:00&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_q2bI7YbVCxlqJiG2QGhg --------- 1024 <br />
&nbsp;07.07.2009 22:00&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_sOMEnqkVM7NTdDtKWOMT --------- 1544 <br />
&nbsp;07.07.2009 20:42&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-46 --------- 0 <br />
&nbsp;07.07.2009 20:40&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\{ADF7BFC0-065E-4AF7-AC6B-0B93251E35F4} --------- 0 <br />
&nbsp;07.07.2009 20:39&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\{CE278B68-6E95-49FC-88D6-3FD3B05FFB59} --------- 0 <br />
&nbsp;06.07.2009 08:51&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\java_install.log --------- 26928 <br />
&nbsp;06.07.2009 08:50&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\13a30e46.mst --------- 1089024 <br />
&nbsp;05.07.2009 20:48&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\{9115E611-8E65-4F0C-AC11-69BB3E289646} --------- 0 <br />
&nbsp;05.07.2009 20:48&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\{E21BAB24-6E67-4E18-82A3-6D29237A06D0} --------- 0 <br />
&nbsp;05.07.2009 20:28&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-45 --------- 0 <br />
&nbsp;05.07.2009 19:40&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\{33AFD3AD-2C5A-4A27-B702-28903226BD91} --------- 0 <br />
&nbsp;05.07.2009 19:40&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\{71B01CEC-7293-43E6-9977-0982060E580C} --------- 0 <br />
&nbsp;05.07.2009 19:25&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\{AF74D228-866F-45FF-8F8F-8F4FDC307875} --------- 0 <br />
&nbsp;05.07.2009 19:24&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\{44C97721-D4E0-4B3C-BD3B-85BB390EE21B} --------- 0 <br />
&nbsp;05.07.2009 19:02&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\{B745A897-0213-410E-9B6E-316EED549542} --------- 0 <br />
&nbsp;05.07.2009 19:02&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\{C79F37AE-2A07-4947-8079-AC5B2270CB3B} --------- 0 <br />
&nbsp;02.07.2009 21:38&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\HIM - Venus Doom Limited Edition [found-on-www-bitreactor-to].torrent --------- 12314 <br />
&nbsp;02.07.2009 21:38&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\HIM - Digital Versatile Doom (2008) [found-on-www-bitreactor-to].torrent --------- 17788 <br />
&nbsp;02.07.2009 21:34&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-44 --------- 0 <br />
&nbsp;02.07.2009 13:21&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_f08.dat --------- 16384 <br />
&nbsp;02.07.2009 13:21&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_8a4.dat --------- 16384 <br />
&nbsp;02.07.2009 13:06&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~WRD1193.doc --------- 2805 <br />
&nbsp;02.07.2009 12:58&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\tf0.exe --------- 2006662 <br />
&nbsp;02.07.2009 12:43&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-43 --------- 0 <br />
&nbsp;02.07.2009 10:37&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~WRS0007.tmp --------- 200192 <br />
&nbsp;02.07.2009 10:34&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\DRI1OTDFH8JG --------- 0 <br />
&nbsp;02.07.2009 10:06&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF7DD1.tmp --------- 512 <br />
&nbsp;01.07.2009 12:38&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_97iSwlGugX2qQktXzgcX --------- 49200 <br />
&nbsp;29.06.2009 13:44&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_hoSzdr7XAbHSzZlUA6CI --------- 1024 <br />
&nbsp;29.06.2009 13:44&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_aPBbDYM1M85IPQdVXvra --------- 1544 <br />
&nbsp;29.06.2009 10:28&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_f50.dat --------- 16384 <br />
&nbsp;24.06.2009 18:15&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_Db1Z9SmwwerY2b5kzaIo --------- 12304 <br />
&nbsp;24.06.2009 18:14&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_fb8.dat --------- 16384 <br />
&nbsp;24.06.2009 18:14&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_fcc.dat --------- 16384 <br />
&nbsp;24.06.2009 18:13&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_bd4.dat --------- 16384 <br />
&nbsp;24.06.2009 17:35&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~WRF2101.tmp --------- 16384 <br />
&nbsp;24.06.2009 17:33&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\LUPGPMDFH8JG --------- 0 <br />
&nbsp;24.06.2009 16:41&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-42 --------- 0 <br />
&nbsp;24.06.2009 11:01&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Wie_Gefuehle_im_Gehirn_entstehen(1).doc --------- 40960 <br />
&nbsp;24.06.2009 08:51&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-41 --------- 0 <br />
&nbsp;24.06.2009 08:35&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_xDwOKPPUbMVEGseT2BfG --------- 28704 <br />
&nbsp;23.06.2009 21:12&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\090615_004.pdf --------- 3214371 <br />
&nbsp;23.06.2009 21:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_324.dat --------- 16384 <br />
&nbsp;23.06.2009 21:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_cf4.dat --------- 16384 <br />
&nbsp;23.06.2009 21:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_a20.dat --------- 16384 <br />
&nbsp;23.06.2009 21:06&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\090617_004.pdf --------- 9198 <br />
&nbsp;23.06.2009 21:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\090622_006.pdf --------- 258304 <br />
&nbsp;23.06.2009 21:01&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\080917_017_hoffmann.pdf --------- 14052 <br />
&nbsp;23.06.2009 21:01&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\080804_003.pdf --------- 15032 <br />
&nbsp;23.06.2009 21:01&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\081010_004.pdf --------- 575901 <br />
&nbsp;23.06.2009 20:59&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\090127_011.pdf --------- 3887334 <br />
&nbsp;23.06.2009 20:59&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\081014_007.pdf --------- 138578 <br />
&nbsp;23.06.2009 20:57&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\090223_001.pdf --------- 28141 <br />
&nbsp;23.06.2009 20:56&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\090302_001.pdf --------- 28113 <br />
&nbsp;23.06.2009 20:54&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\090406_002.pdf --------- 10103 <br />
&nbsp;23.06.2009 20:53&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\090504_005.pdf --------- 32234 <br />
&nbsp;23.06.2009 20:51&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\090504_006.pdf --------- 10048 <br />
&nbsp;23.06.2009 20:50&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\090525_002.pdf --------- 124085 <br />
&nbsp;23.06.2009 20:50&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\090506_009.pdf --------- 8944 <br />
&nbsp;23.06.2009 20:48&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\090622_008.pdf --------- 1297293 <br />
&nbsp;23.06.2009 20:48&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\090622_003.pdf --------- 56419 <br />
&nbsp;23.06.2009 20:48&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\080721_007.pdf --------- 437223 <br />
&nbsp;23.06.2009 19:51&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_yEbcXqKdHGvfo8a4FNld --------- 28704 <br />
&nbsp;23.06.2009 19:43&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-40 --------- 0 <br />
&nbsp;23.06.2009 18:30&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\ge3496 --------- 0 <br />
&nbsp;23.06.2009 09:06&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_278.dat --------- 16384 <br />
&nbsp;22.06.2009 09:55&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\ge5396 --------- 0 <br />
&nbsp;21.06.2009 19:44&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-39 --------- 0 <br />
&nbsp;21.06.2009 18:43&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\0x9eee20165bbb41c3898c3569a3c8169b.package --------- 800794 <br />
&nbsp;21.06.2009 16:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\ge476 --------- 0 <br />
&nbsp;21.06.2009 15:02&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\11763250.cvr --------- 0 <br />
&nbsp;21.06.2009 12:26&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Excel8.0 --------- 0 <br />
&nbsp;21.06.2009 11:49&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_980.dat --------- 16384 <br />
&nbsp;21.06.2009 11:49&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_984.dat --------- 16384 <br />
&nbsp;21.06.2009 11:48&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_230.dat --------- 16384 <br />
&nbsp;21.06.2009 11:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Bild2bea.jpg --------- 432527 <br />
&nbsp;21.06.2009 11:04&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\BeaCy1.jpg --------- 364103 <br />
&nbsp;21.06.2009 10:23&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-38 --------- 0 <br />
&nbsp;21.06.2009 09:45&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_Nly5AJmCgUVC8XIJdfRX --------- 36900 <br />
&nbsp;20.06.2009 21:17&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\JET3401.tmp --------- 0 <br />
&nbsp;20.06.2009 21:16&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_b70.dat --------- 16384 <br />
&nbsp;20.06.2009 20:08&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\JET7606.tmp --------- 0 <br />
&nbsp;20.06.2009 20:00&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-37 --------- 0 <br />
&nbsp;20.06.2009 16:27&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\ge3860 --------- 0 <br />
&nbsp;20.06.2009 15:42&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_7zXEBAjL9kmUGvzr1HfO --------- 41000 <br />
&nbsp;20.06.2009 15:34&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\ge3840 --------- 0 <br />
&nbsp;20.06.2009 15:02&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_868.dat --------- 16384 <br />
&nbsp;20.06.2009 14:53&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DFCDA6.tmp --------- 0 <br />
&nbsp;20.06.2009 14:53&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF9A1E.tmp --------- 0 <br />
&nbsp;20.06.2009 14:51&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\ge788 --------- 0 <br />
&nbsp;20.06.2009 14:49&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\ge2136 --------- 0 <br />
&nbsp;20.06.2009 14:46&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\isF4.tmp --------- 0 <br />
&nbsp;20.06.2009 14:42&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\isE8.tmp --------- 0 <br />
&nbsp;20.06.2009 14:42&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-36 --------- 0 <br />
&nbsp;20.06.2009 14:08&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\sfj938wjkdmf8w793g.tmp --------- 160 <br />
&nbsp;18.06.2009 12:36&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_NB9roLm4FEVnf62vPFLa --------- 36900 <br />
&nbsp;18.06.2009 07:42&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_8f8.dat --------- 16384 <br />
&nbsp;18.06.2009 07:42&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_844.dat --------- 16384 <br />
&nbsp;18.06.2009 07:41&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_8b0.dat --------- 16384 <br />
&nbsp;18.06.2009 07:32&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_6Am5lhp8ifEvknvOLULc --------- 516 <br />
&nbsp;18.06.2009 07:32&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_eZIMqZ3e1eQz4JuoziXT --------- 0 <br />
&nbsp;17.06.2009 23:21&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-35 --------- 0 <br />
&nbsp;17.06.2009 14:52&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_l2TpLda5eWpGxHAGKIYs --------- 36900 <br />
&nbsp;17.06.2009 12:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_e8c.dat --------- 16384 <br />
&nbsp;17.06.2009 12:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_e78.dat --------- 16384 <br />
&nbsp;15.06.2009 12:28&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\pp.log --------- 18736 <br />
&nbsp;15.06.2009 12:27&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\PPSetup.log --------- 414 <br />
&nbsp;15.06.2009 11:02&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\js48jogk94grgre.tmp --------- 160 <br />
&nbsp;14.06.2009 12:59&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DFC69D.tmp --------- 0 <br />
&nbsp;14.06.2009 12:59&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF9FD4.tmp --------- 0 <br />
&nbsp;14.06.2009 12:59&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_TfKyfMy9FeuFJhV5H8vw --------- 24600 <br />
&nbsp;14.06.2009 12:59&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\nsg1A.tmp --------- 0 <br />
&nbsp;14.06.2009 12:59&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\nsg19.tmp --------- 5659451 <br />
&nbsp;14.06.2009 12:59&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\nsx17.tmp --------- 0 <br />
&nbsp;14.06.2009 12:59&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\nsh16.tmp --------- 14139298 <br />
&nbsp;14.06.2009 12:47&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_c00.dat --------- 16384 <br />
&nbsp;14.06.2009 12:47&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_c0c.dat --------- 16384 <br />
&nbsp;14.06.2009 12:47&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_fdc.dat --------- 16384 <br />
&nbsp;14.06.2009 11:33&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\nsz58.tmp --------- 0 <br />
&nbsp;14.06.2009 11:31&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\nsj57.tmp --------- 7674221 <br />
&nbsp;14.06.2009 11:28&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_szLvWpAhNexrfcDvfRoZ --------- 36900 <br />
&nbsp;14.06.2009 11:16&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Die Sims 3 Nude Patch [found-on-www-bitreactor-to].torrent --------- 3921 <br />
&nbsp;14.06.2009 11:14&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-34 --------- 0 <br />
&nbsp;14.06.2009 10:47&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-33 --------- 0 <br />
&nbsp;14.06.2009 10:41&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-32 --------- 0 <br />
&nbsp;14.06.2009 10:38&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_bb8.dat --------- 16384 <br />
&nbsp;13.06.2009 21:57&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_fNbknGmgWWR2poS3qE2X --------- 1024 <br />
&nbsp;13.06.2009 21:57&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_kIfNcj1TxeJIjbX0A7As --------- 1544 <br />
&nbsp;13.06.2009 16:03&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_RZZMX5jtsLNdFT1dR6NN --------- 28700 <br />
&nbsp;13.06.2009 15:55&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\EAD20.exe --------- 6674216 <br />
&nbsp;13.06.2009 15:55&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_150.dat --------- 16384 <br />
&nbsp;13.06.2009 15:54&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_f58.dat --------- 16384 <br />
&nbsp;13.06.2009 15:54&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\EAD20.tmp --------- 0 <br />
&nbsp;13.06.2009 15:24&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_pDYG6mKX1N5N9DKTH024-journal --------- 1544 <br />
&nbsp;13.06.2009 15:24&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_pDYG6mKX1N5N9DKTH024 --------- 0 <br />
&nbsp;13.06.2009 13:48&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-31 --------- 0 <br />
&nbsp;13.06.2009 09:07&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_PL86VvcdvISwI4M3ojjl --------- 36900 <br />
&nbsp;10.06.2009 19:21&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_e18.dat --------- 16384 <br />
&nbsp;10.06.2009 18:08&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF4E9.tmp --------- 16384 <br />
&nbsp;10.06.2009 17:42&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_8cc.dat --------- 16384 <br />
&nbsp;10.06.2009 15:27&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\dd_netfx20UI16FE.txt --------- 18296 <br />
&nbsp;10.06.2009 15:27&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\dd_netfx20MSI16FE.txt --------- 4517900 <br />
&nbsp;10.06.2009 15:25&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\ASPNETSetup_00000.log --------- 5461 <br />
&nbsp;10.06.2009 09:52&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\nse62.tmp --------- 0 <br />
&nbsp;10.06.2009 09:45&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\nso5D.tmp --------- 0 <br />
&nbsp;09.06.2009 18:56&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_1dc.dat --------- 16384 <br />
&nbsp;09.06.2009 18:41&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\hd2onv00 --------- 0 <br />
&nbsp;07.06.2009 16:32&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-30 --------- 0 <br />
&nbsp;07.06.2009 10:19&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-29 --------- 0 <br />
&nbsp;07.06.2009 10:16&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\The Sims 3 - Razor1911 Final PC ISO MAXSPEED [mininova].torrent --------- 29965 <br />
&nbsp;07.06.2009 10:07&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\The Sims 3_Sims 3 [Soft Club].torrent --------- 29272 <br />
&nbsp;07.06.2009 10:06&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\www.bitreactor.to_The.Sims.3-RELOADED.torrent --------- 103984 <br />
&nbsp;07.06.2009 10:04&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\(SUMOTorrent.com)_Sims_3_FINAL_Version_MULTI-LANGUAGE_REUP.torrent --------- 57513 <br />
&nbsp;07.06.2009 10:03&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\-{SUMOTorrent.com}-_2009--Sims_3_FINAL_Version_MULTI-LANGUAGE_--by_danger2u_ST2655435.torrent --------- 57513 <br />
&nbsp;01.06.2009 13:39&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\8IL14MDFH8JG --------- 0 <br />
&nbsp;01.06.2009 13:38&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\QR514MDFH8JG --------- 0 <br />
&nbsp;01.06.2009 12:52&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\DSNC1MDFH8JG --------- 0 <br />
&nbsp;01.06.2009 12:52&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\FCDC1MDFH8JG --------- 0 <br />
&nbsp;01.06.2009 12:52&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IAUB1MDFH8JG --------- 0 <br />
&nbsp;01.06.2009 12:51&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\8KJB1MDFH8JG --------- 0 <br />
&nbsp;01.06.2009 10:51&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-28 --------- 0 <br />
&nbsp;27.05.2009 09:57&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF2988.tmp --------- 16384 <br />
&nbsp;26.05.2009 15:02&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Word8.0 --------- 0 <br />
&nbsp;24.05.2009 17:41&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~tmp1243183277410 --------- 252 <br />
&nbsp;23.05.2009 20:15&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Fantasia 3D *** [found-on-www-bitreactor-to].torrent --------- 28323 <br />
&nbsp;23.05.2009 20:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-27 --------- 0 <br />
&nbsp;23.05.2009 20:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Bei Massage zum *** gezwungen [found-on-www-bitreactor-to].torrent --------- 15518 <br />
&nbsp;23.05.2009 20:06&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\2 hot sexy young lesbians [found-on-www-bitreactor-to].torrent --------- 11043 <br />
&nbsp;23.05.2009 20:06&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\2 super hot asian chicks [found-on-www-bitreactor-to].torrent --------- 8975 <br />
&nbsp;23.05.2009 20:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\3 Schlerinnen auf ner Fick-Party [found-on-www-bitreactor-to].torrent --------- 35082 <br />
&nbsp;23.05.2009 20:02&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\39 J Paar gibt M„dchen u Jungen Fick-Nachhilfe [found-on-www-bitreactor-to].torrent --------- 37950 <br />
&nbsp;23.05.2009 20:02&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\46 J Mama Hanna u T”chterchen dauerfeucht [found-on-www-bitreactor-to].torrent --------- 30076 <br />
&nbsp;23.05.2009 19:59&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\10 Typen ficken 2 Schwestern fett durch [found-on-www-bitreactor-to].torrent --------- 39830 <br />
&nbsp;23.05.2009 19:58&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\100 Prozent Spermatrinken - Gangbang Total (German 2009) [found-on-www-bitreactor-to].torrent --------- 14640 <br />
&nbsp;23.05.2009 19:55&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Saugstube-Torrent.to_Mitten auf dem Feweg die Pflaume gewichst.torrent --------- 15491 <br />
&nbsp;23.05.2009 19:54&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Saugstube-Torrent.to_18 J Danijel fickt 2 blutjunge Mdchen.torrent --------- 32832 <br />
&nbsp;23.05.2009 17:13&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Saugstube-Torrent.to_XXXtreme Lesbian Slavegirl.torrent --------- 18515 <br />
&nbsp;23.05.2009 17:09&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Saugstube-Torrent.to_Bei der kommst du sofort.torrent --------- 2711 <br />
&nbsp;23.05.2009 17:00&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Saugstube-Torrent.to_2 geile Teenie Paare am Ficken.torrent --------- 32952 <br />
&nbsp;23.05.2009 16:58&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Saugstube-Torrent.to_Lesben Lara und Jacki ficken sich.torrent --------- 4237 <br />
&nbsp;23.05.2009 16:53&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Saugstube-Torrent.to_2 BiHschen lassen Jungen ran.torrent --------- 21255 <br />
&nbsp;23.05.2009 16:52&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Saugstube-Torrent.to_Three Girls Make Fun.torrent --------- 2633 <br />
&nbsp;23.05.2009 16:47&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Saugstube-Torrent.to_Japanische Lesben melken sich gegenseitig.torrent --------- 5113 <br />
&nbsp;23.05.2009 16:46&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Saugstube-Torrent.to_1st Time Lesbians.torrent --------- 15127 <br />
&nbsp;23.05.2009 16:44&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Saugstube-Torrent.to_blonde Lesbe zeigt es einer Bruumlnetten.torrent --------- 1693 <br />
&nbsp;23.05.2009 16:33&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-26 --------- 0 <br />
&nbsp;23.05.2009 10:21&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_efNiToje5hYGjHv2ZwUC-journal --------- 1544 <br />
&nbsp;23.05.2009 10:21&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_efNiToje5hYGjHv2ZwUC --------- 1024 <br />
&nbsp;23.05.2009 09:58&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-25 --------- 0 <br />
&nbsp;23.05.2009 09:53&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DFD0C5.tmp --------- 512 <br />
&nbsp;23.05.2009 09:42&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_dhQqbqbIIFWIe1QuMBZr --------- 28700 <br />
&nbsp;19.05.2009 11:12&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_510.dat --------- 16384 <br />
&nbsp;19.05.2009 11:12&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_d50.dat --------- 16384 <br />
&nbsp;19.05.2009 11:11&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_f10.dat --------- 16384 <br />
&nbsp;18.05.2009 21:23&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~tmp1242678235410 --------- 252 <br />
&nbsp;18.05.2009 12:08&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_b18.dat --------- 16384 <br />
&nbsp;18.05.2009 12:08&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_b10.dat --------- 16384 <br />
&nbsp;13.05.2009 21:48&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\CJ8S0MDFH8JG --------- 0 <br />
&nbsp;13.05.2009 21:48&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\TBOD0MDFH8JG --------- 0 <br />
&nbsp;13.05.2009 21:29&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-24 --------- 0 <br />
&nbsp;08.05.2009 09:40&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Adobe --------- 0 <br />
&nbsp;06.05.2009 22:15&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-23 --------- 0 <br />
&nbsp;03.05.2009 20:18&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ_47994.tmp --------- 336068 <br />
&nbsp;03.05.2009 20:18&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ_47993.tmp --------- 202563 <br />
&nbsp;03.05.2009 20:17&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ_47989.tmp --------- 311804 <br />
&nbsp;29.04.2009 13:03&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_0kXidcHbHNRpNoV83Et0 --------- 77900 <br />
&nbsp;29.04.2009 10:09&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ_47776.tmp --------- 187195 <br />
&nbsp;28.04.2009 07:12&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_hkWfIzw4r1D1bgJ11llj-journal --------- 1544 <br />
&nbsp;28.04.2009 07:12&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_hkWfIzw4r1D1bgJ11llj --------- 1024 <br />
&nbsp;27.04.2009 18:28&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ_47760.tmp --------- 180673 <br />
&nbsp;25.04.2009 17:29&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ_65118.tmp --------- 331350 <br />
&nbsp;25.04.2009 17:23&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_e2c.dat --------- 16384 <br />
&nbsp;25.04.2009 17:23&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_87c.dat --------- 16384 <br />
&nbsp;24.04.2009 21:51&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\FFS --------- 0 <br />
&nbsp;21.04.2009 14:57&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~WRS0001.tmp --------- 89088 <br />
&nbsp;21.04.2009 14:34&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_7rOAQ6OMPgAMWr9rMPSI --------- 41000 <br />
&nbsp;21.04.2009 14:09&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF4593.tmp --------- 512 <br />
&nbsp;21.04.2009 14:06&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\grabungsbericht sdliche ganghoferstraáe.pdf --------- 3678130 <br />
&nbsp;19.04.2009 20:32&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_m0UmzRFLbEbAxvCyfRPH-journal --------- 1544 <br />
&nbsp;19.04.2009 20:32&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_m0UmzRFLbEbAxvCyfRPH --------- 1024 <br />
&nbsp;19.04.2009 15:03&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-22 --------- 0 <br />
&nbsp;19.04.2009 11:15&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_898.dat --------- 16384 <br />
&nbsp;19.04.2009 10:38&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_EXIWeyfbzLc7r6oSr0kr --------- 12304 <br />
&nbsp;17.04.2009 11:31&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_4b8.dat --------- 16384 <br />
&nbsp;17.04.2009 11:31&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_ee4.dat --------- 16384 <br />
&nbsp;17.04.2009 11:30&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_85c.dat --------- 16384 <br />
&nbsp;15.04.2009 15:44&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-21 --------- 0 <br />
&nbsp;15.04.2009 15:03&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\mnv516.tmp --------- 0 <br />
&nbsp;15.04.2009 15:03&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\x9h515.tmp --------- 0 <br />
&nbsp;15.04.2009 15:00&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\fwa514.tmp --------- 0 <br />
&nbsp;15.04.2009 14:58&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\i0650D.tmp --------- 0 <br />
&nbsp;12.04.2009 10:09&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ_51663.tmp --------- 186684 <br />
&nbsp;12.04.2009 10:09&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ_51661.tmp --------- 246580 <br />
&nbsp;07.04.2009 11:02&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-20 --------- 0 <br />
&nbsp;07.04.2009 10:22&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\AVSETUP_49db1b49 --------- 0 <br />
&nbsp;07.04.2009 10:22&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\dd_vcredistUI277B.txt --------- 11422 <br />
&nbsp;07.04.2009 10:22&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\dd_vcredistMSI277B.txt --------- 524532 <br />
&nbsp;07.04.2009 09:36&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF264B.tmp --------- 512 <br />
&nbsp;07.04.2009 09:35&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF207.tmp --------- 512 <br />
&nbsp;07.04.2009 09:33&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~WRD0001.doc --------- 7485 <br />
&nbsp;07.04.2009 09:32&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF93FA.tmp --------- 512 <br />
&nbsp;07.04.2009 09:31&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF6714.tmp --------- 512 <br />
&nbsp;07.04.2009 09:30&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF44C0.tmp --------- 512 <br />
&nbsp;07.04.2009 09:30&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF28B2.tmp --------- 512 <br />
&nbsp;07.04.2009 09:16&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF41E3.tmp --------- 512 <br />
&nbsp;07.04.2009 08:55&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF2EC4.tmp --------- 512 <br />
&nbsp;07.04.2009 08:47&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF6439.tmp --------- 512 <br />
&nbsp;07.04.2009 08:37&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DFB69A.tmp --------- 512 <br />
&nbsp;07.04.2009 08:32&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF3309.tmp --------- 512 <br />
&nbsp;07.04.2009 08:18&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~WRS0000.tmp --------- 66640 <br />
&nbsp;06.04.2009 21:50&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_yors4VQRYcjkpopDXxg6-journal --------- 1544 <br />
&nbsp;06.04.2009 21:50&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_yors4VQRYcjkpopDXxg6 --------- 1024 <br />
&nbsp;06.04.2009 21:26&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-19 --------- 0 <br />
&nbsp;06.04.2009 15:06&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_9WEffLPOOfheTnabW4y5 --------- 41000 <br />
&nbsp;06.04.2009 15:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF6A09.tmp --------- 512 <br />
&nbsp;06.04.2009 15:04&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_31c.dat --------- 16384 <br />
&nbsp;06.04.2009 15:04&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_fe0.dat --------- 16384 <br />
&nbsp;06.04.2009 15:04&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_ca0.dat --------- 16384 <br />
&nbsp;03.04.2009 09:55&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-18 --------- 0 <br />
&nbsp;02.04.2009 14:49&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_YBXGQHp7fclHLwegn4w5 --------- 41000 <br />
&nbsp;02.04.2009 12:38&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-17 --------- 0 <br />
&nbsp;01.04.2009 21:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-16 --------- 0 <br />
&nbsp;31.03.2009 13:34&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IMTF4.xml --------- 797676 <br />
&nbsp;31.03.2009 13:34&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IMTF3.xml --------- 426 <br />
&nbsp;31.03.2009 13:34&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IMTF2.xml --------- 2036 <br />
&nbsp;29.03.2009 21:21&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_ee8.dat --------- 16384 <br />
&nbsp;29.03.2009 21:07&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF95DA.tmp --------- 49152 <br />
&nbsp;29.03.2009 20:39&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-15 --------- 0 <br />
&nbsp;26.03.2009 00:39&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\3561BC.tmp --------- 0 <br />
&nbsp;23.03.2009 23:12&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DFD776.tmp --------- 16384 <br />
&nbsp;23.03.2009 16:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_u4DRAaMgHJOiA4GAebS3 --------- 49200 <br />
&nbsp;23.03.2009 14:28&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-14 --------- 0 <br />
&nbsp;21.03.2009 07:30&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_JmVMd8Kdic7kfSrDuQx7-journal --------- 1544 <br />
&nbsp;21.03.2009 07:30&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_JmVMd8Kdic7kfSrDuQx7 --------- 1024 <br />
&nbsp;20.03.2009 11:30&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_ba8.dat --------- 16384 <br />
&nbsp;20.03.2009 11:30&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_bdc.dat --------- 16384 <br />
&nbsp;19.03.2009 19:31&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_Amc9GFjC0sISEn3l3KeX --------- 73800 <br />
&nbsp;18.03.2009 11:45&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-13 --------- 0 <br />
&nbsp;17.03.2009 22:52&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_FPCoeUydf7RTmxg5yPj3-journal --------- 1544 <br />
&nbsp;17.03.2009 22:52&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_FPCoeUydf7RTmxg5yPj3 --------- 1024 <br />
&nbsp;14.03.2009 12:16&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_e10.dat --------- 16384 <br />
&nbsp;14.03.2009 12:16&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_c7c.dat --------- 16384 <br />
&nbsp;14.03.2009 12:15&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_6dc.dat --------- 16384 <br />
&nbsp;13.03.2009 20:36&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-12 --------- 0 <br />
&nbsp;12.03.2009 17:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF293A.tmp --------- 16384 <br />
&nbsp;10.03.2009 14:46&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\oeffnungsz.pdf --------- 8522 <br />
&nbsp;10.03.2009 14:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\0421_d_00.pdf --------- 240242 <br />
&nbsp;09.03.2009 16:38&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~WRS0006.tmp --------- 57856 <br />
&nbsp;09.03.2009 11:52&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ_19089.tmp --------- 236364 <br />
&nbsp;09.03.2009 11:51&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ_19088.tmp --------- 154632 <br />
&nbsp;09.03.2009 11:25&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF8663.tmp --------- 512 <br />
&nbsp;09.03.2009 11:24&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_8CK3iJrHpgsw3Zz32dHL-journal --------- 1544 <br />
&nbsp;09.03.2009 11:24&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_8CK3iJrHpgsw3Zz32dHL --------- 1024 <br />
&nbsp;07.03.2009 12:51&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_fa0EN9I8xYgIg7RN7nrd --------- 32800 <br />
&nbsp;02.03.2009 17:10&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\aGNcHiDc.pdf.part --------- 0 <br />
&nbsp;27.02.2009 20:45&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_9c8.dat --------- 16384 <br />
&nbsp;27.02.2009 20:45&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_4cc.dat --------- 16384 <br />
&nbsp;27.02.2009 20:43&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_78c.dat --------- 16384 <br />
&nbsp;27.02.2009 20:31&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-11 --------- 0 <br />
&nbsp;24.02.2009 15:18&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\2ff103.tmp --------- 0 <br />
&nbsp;19.02.2009 14:22&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-10 --------- 0 <br />
&nbsp;19.02.2009 11:55&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ_61761.tmp --------- 204328 <br />
&nbsp;19.02.2009 11:54&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ_61758.tmp --------- 248115 <br />
&nbsp;19.02.2009 11:52&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ_61659.tmp --------- 264701 <br />
&nbsp;19.02.2009 11:51&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ_61655.tmp --------- 251224 <br />
&nbsp;19.02.2009 11:51&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\IUJ_61653.tmp --------- 240959 <br />
&nbsp;18.02.2009 13:57&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\WLZ34ED.tmp --------- 0 <br />
&nbsp;16.02.2009 14:23&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\kvv_ws_2008_09.pdf --------- 192455 <br />
&nbsp;16.02.2009 12:05&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-9 --------- 0 <br />
&nbsp;14.02.2009 16:56&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-8 --------- 0 <br />
&nbsp;12.02.2009 13:54&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Blizzard Launcher Temporary - d0b007e8 --------- 0 <br />
&nbsp;12.02.2009 10:37&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_5jds7gLsM1NYWfyaVk8F --------- 41000 <br />
&nbsp;11.02.2009 20:51&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\FILMABEND2.doc --------- 93696 <br />
&nbsp;08.02.2009 23:23&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_kwpPmhODfxEtmsqqip0h-journal --------- 1544 <br />
&nbsp;08.02.2009 23:23&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_kwpPmhODfxEtmsqqip0h --------- 1024 <br />
&nbsp;01.02.2009 12:08&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_dc0.dat --------- 16384 <br />
&nbsp;01.02.2009 12:08&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_dc8.dat --------- 16384 <br />
&nbsp;31.01.2009 01:08&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-7 --------- 0 <br />
&nbsp;30.01.2009 20:42&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\rd2A8.tmp --------- 0 <br />
&nbsp;30.01.2009 20:27&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Quest3D0 --------- 0 <br />
&nbsp;24.01.2009 14:50&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-6 --------- 0 <br />
&nbsp;24.01.2009 12:57&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_FZLGdYoBQxmpgrfQVf25 --------- 36900 <br />
&nbsp;16.01.2009 11:17&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_ac0.dat --------- 16384 <br />
&nbsp;16.01.2009 11:17&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_abc.dat --------- 16384 <br />
&nbsp;16.01.2009 11:16&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_638.dat --------- 16384 <br />
&nbsp;16.01.2009 11:09&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_iCBa4MwsAPArvX4WYGeZ-journal --------- 1544 <br />
&nbsp;16.01.2009 11:09&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_iCBa4MwsAPArvX4WYGeZ --------- 1024 <br />
&nbsp;14.01.2009 16:14&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-5 --------- 0 <br />
&nbsp;14.01.2009 15:24&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_3utYA2ZmL9LEJIgrb48g --------- 45100 <br />
&nbsp;11.01.2009 16:36&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Compatibility Pack for the 2007 Office system (0).log --------- 1318226 <br />
&nbsp;11.01.2009 16:29&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_f60.dat --------- 16384 <br />
&nbsp;11.01.2009 16:29&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_46c.dat --------- 16384 <br />
&nbsp;11.01.2009 16:24&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Microsoft Office Word Viewer (0).log --------- 656700 <br />
&nbsp;11.01.2009 15:00&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\CacheInfo.dnl --------- 0 <br />
&nbsp;11.01.2009 13:13&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_PccjVNi20DvaAPS81jct --------- 12304 <br />
&nbsp;11.01.2009 13:13&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_828.dat --------- 16384 <br />
&nbsp;11.01.2009 13:12&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_a8c.dat --------- 16384 <br />
&nbsp;10.01.2009 21:38&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_1d8.dat --------- 16384 <br />
&nbsp;10.01.2009 21:38&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_11c.dat --------- 16384 <br />
&nbsp;10.01.2009 21:36&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_b44.dat --------- 16384 <br />
&nbsp;10.01.2009 21:28&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_2Tez5GrCtnTqo0nLiHjo --------- 12304 <br />
&nbsp;10.01.2009 15:53&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_374.dat --------- 16384 <br />
&nbsp;10.01.2009 15:52&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_73c.dat --------- 16384 <br />
&nbsp;06.01.2009 17:43&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\utt4A.tmp.bat --------- 72 <br />
&nbsp;06.01.2009 17:43&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\utt4A.tmp --------- 0 <br />
&nbsp;06.01.2009 17:43&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\utt49.tmp --------- 0 <br />
&nbsp;06.01.2009 17:42&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\utt44.tmp.exe --------- 667848 <br />
&nbsp;06.01.2009 17:42&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\utt44.tmp --------- 0 <br />
&nbsp;06.01.2009 17:24&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_cfc.dat --------- 16384 <br />
&nbsp;06.01.2009 17:24&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_cd0.dat --------- 16384 <br />
&nbsp;06.01.2009 17:24&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_a2c.dat --------- 16384 <br />
&nbsp;06.01.2009 17:19&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\{2755845B-832B-4278-B7C0-FAF7B9ADE0A3} --------- 0 <br />
&nbsp;06.01.2009 17:18&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\byeAE.tmp --------- 0 <br />
&nbsp;06.01.2009 17:17&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\{09DA05E8-1B79-4DF2-A9E4-663FB4D886D5} --------- 0 <br />
&nbsp;06.01.2009 17:16&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\{82682BB0-933D-401B-AF75-536D27F9FC55} --------- 0 <br />
&nbsp;06.01.2009 17:04&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Twunk002.MTX --------- 0 <br />
&nbsp;06.01.2009 17:00&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\{D1DA8CE9-95DC-455D-AD08-593F48BAAF6B} --------- 0 <br />
&nbsp;06.01.2009 17:00&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\{4666A8DF-3B9C-4403-806D-78492BFCFEC6} --------- 0 <br />
&nbsp;06.01.2009 16:43&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\_isEF --------- 0 <br />
&nbsp;06.01.2009 16:35&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\_is30 --------- 0 <br />
&nbsp;06.01.2009 15:27&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\plugtmp-4 --------- 0 <br />
&nbsp;06.01.2009 15:25&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_uLjvBdcjpJD0yWoL5KlZ --------- 12304 <br />
&nbsp;04.01.2009 17:14&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\7b51.rra --------- 425984 <br />
&nbsp;04.01.2009 17:12&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\{fc053571-8507-44e4-8b6d-aaceab8ca57c} --------- 0 <br />
&nbsp;04.01.2009 16:47&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~SansaPackage_01-04-2009_16-46-41 --------- 0 <br />
&nbsp;04.01.2009 16:43&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\SansaUpdaterInstall --------- 0 <br />
&nbsp;04.01.2009 16:39&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\{57AA371D-1E0C-4FF9-80ED-936D506BD355} --------- 0 <br />
&nbsp;04.01.2009 14:18&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~WRS0679.tmp --------- 32128 <br />
&nbsp;31.12.2008 10:03&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DF6915.tmp --------- 512 <br />
&nbsp;29.12.2008 14:32&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_7a0.dat --------- 16384 <br />
&nbsp;29.12.2008 14:32&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_8c8.dat --------- 16384 <br />
&nbsp;29.12.2008 14:30&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_9cc.dat --------- 16384 <br />
&nbsp;29.12.2008 13:00&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_LtwvXKic6idlhvfD8d5C --------- 28700 <br />
&nbsp;29.12.2008 12:59&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_ef8.dat --------- 16384 <br />
&nbsp;29.12.2008 12:59&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_f04.dat --------- 16384 <br />
&nbsp;29.12.2008 12:58&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_840.dat --------- 16384 <br />
&nbsp;29.12.2008 12:56&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Blizzard --------- 0 <br />
&nbsp;29.12.2008 10:54&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\etilqs_HDWgRLxLBC4hoNYhWeB1 --------- 28700 <br />
&nbsp;29.12.2008 10:19&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\~DFC43C.tmp --------- 512 <br />
&nbsp;26.12.2008 11:36&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_83c.dat --------- 16384 <br />
&nbsp;26.12.2008 11:36&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_95c.dat --------- 16384 <br />
&nbsp;26.12.2008 11:35&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\Perflib_Perfdata_878.dat --------- 16384 <br />
&nbsp;25.12.2008 21:07&nbsp; &nbsp; &nbsp; C:\DOKUME~1\CLARIS~1\LOKALE~1\Temp\TempCover2 --------- 0 <br />
----------------------------------------<br />
<br />
&nbsp;<br />
C:\Programme<br />
<br />
&nbsp;24.01.2010 21:16&nbsp; &nbsp;  C:\Programme\HijackThis --------- 0 <br />
&nbsp;24.01.2010 21:09&nbsp; &nbsp;  C:\Programme\DNA --------- 0 <br />
&nbsp;24.01.2010 20:36&nbsp; &nbsp;  C:\Programme\Mozilla Firefox --------- 0 <br />
&nbsp;22.01.2010 20:32&nbsp; &nbsp;  C:\Programme\QuickTime --------- 0 <br />
&nbsp;22.01.2010 20:29&nbsp; &nbsp;  C:\Programme\Gemeinsame Dateien --------- 0 <br />
&nbsp;22.01.2010 20:29&nbsp; &nbsp;  C:\Programme\Apple Software Update --------- 0 <br />
&nbsp;22.01.2010 20:22&nbsp; &nbsp;  C:\Programme\Adobe --------- 0 <br />
&nbsp;17.01.2010 16:02&nbsp; &nbsp;  C:\Programme\World of Warcraft --------- 0 <br />
&nbsp;05.01.2010 16:01&nbsp; &nbsp;  C:\Programme\LRZ VPN Client --------- 0 <br />
&nbsp;28.12.2009 11:29&nbsp; &nbsp;  C:\Programme\Internet Explorer --------- 0 <br />
&nbsp;27.12.2009 18:40&nbsp; &nbsp;  C:\Programme\InstallShield Installation Information --------- 0 <br />
&nbsp;27.12.2009 18:40&nbsp; &nbsp;  C:\Programme\Ahead --------- 0 <br />
&nbsp;27.12.2009 12:50&nbsp; &nbsp;  C:\Programme\FRITZBox --------- 0 <br />
&nbsp;27.12.2009 12:50&nbsp; &nbsp;  C:\Programme\FRITZBoxPrint --------- 0 <br />
&nbsp;04.12.2009 22:20&nbsp; &nbsp;  C:\Programme\Aldi Sued Fotoservice --------- 0 <br />
&nbsp;16.11.2009 10:39&nbsp; &nbsp;  C:\Programme\Java --------- 0 <br />
&nbsp;14.09.2009 16:17&nbsp; &nbsp;  C:\Programme\DIFX --------- 0 <br />
&nbsp;14.09.2009 16:10&nbsp; &nbsp;  C:\Programme\Windows Media-Komponenten --------- 0 <br />
&nbsp;14.09.2009 16:08&nbsp; &nbsp;  C:\Programme\Ulead Systems --------- 0 <br />
&nbsp;11.09.2009 09:36&nbsp; &nbsp;  C:\Programme\NOS --------- 0 <br />
&nbsp;09.09.2009 10:29&nbsp; &nbsp;  C:\Programme\Family Tree Maker 2009 --------- 0 <br />
&nbsp;08.09.2009 18:05&nbsp; &nbsp;  C:\Programme\BCL Technologies --------- 0 <br />
&nbsp;04.09.2009 12:30&nbsp; &nbsp;  C:\Programme\phonostar --------- 0 <br />
&nbsp;23.08.2009 20:02&nbsp; &nbsp;  C:\Programme\LizardTech --------- 0 <br />
&nbsp;23.08.2009 15:51&nbsp; &nbsp;  C:\Programme\Outlook Express --------- 0 <br />
&nbsp;09.08.2009 23:26&nbsp; &nbsp;  C:\Programme\MFInstall --------- 0 <br />
&nbsp;20.06.2009 15:08&nbsp; &nbsp;  C:\Programme\Google --------- 0 <br />
&nbsp;10.06.2009 17:37&nbsp; &nbsp;  C:\Programme\Sonic --------- 0 <br />
&nbsp;10.06.2009 15:28&nbsp; &nbsp;  C:\Programme\Electronic Arts --------- 0 <br />
&nbsp;10.06.2009 15:27&nbsp; &nbsp;  C:\Programme\Microsoft WSE --------- 0 <br />
&nbsp;01.06.2009 13:53&nbsp; &nbsp;  C:\Programme\Sony Ericsson --------- 0 <br />
&nbsp;19.05.2009 11:11&nbsp; &nbsp;  C:\Programme\FLVPlayer --------- 0 <br />
&nbsp;07.04.2009 10:38&nbsp; &nbsp;  C:\Programme\Avira --------- 0 <br />
&nbsp;10.03.2009 21:31&nbsp; &nbsp;  C:\Programme\ICQToolbar --------- 0 <br />
&nbsp;19.02.2009 14:35&nbsp; &nbsp;  C:\Programme\Winamp --------- 0 <br />
&nbsp;11.01.2009 16:35&nbsp; &nbsp;  C:\Programme\Microsoft Office --------- 0 <br />
&nbsp;11.01.2009 16:35&nbsp; &nbsp;  C:\Programme\MSECache --------- 0 <br />
&nbsp;06.01.2009 17:18&nbsp; &nbsp;  C:\Programme\Reallusion --------- 0 <br />
&nbsp;06.01.2009 16:49&nbsp; &nbsp;  C:\Programme\Brother --------- 0 <br />
&nbsp;04.01.2009 17:13&nbsp; &nbsp;  C:\Programme\Sandisk --------- 0 <br />
&nbsp;13.12.2008 22:23&nbsp; &nbsp;  C:\Programme\Ipswitch --------- 0 <br />
&nbsp;13.11.2008 13:35&nbsp; &nbsp;  C:\Programme\mwn-vpnclient-win-5.0.0.340 --------- 0 <br />
&nbsp;18.10.2008 11:58&nbsp; &nbsp;  C:\Programme\ATI Technologies --------- 0 <br />
&nbsp;18.10.2008 08:55&nbsp; &nbsp;  C:\Programme\Messenger --------- 0 <br />
&nbsp;18.10.2008 08:50&nbsp; &nbsp;  C:\Programme\Movie Maker --------- 0 <br />
&nbsp;18.10.2008 08:46&nbsp; &nbsp;  C:\Programme\NetMeeting --------- 0 <br />
&nbsp;18.10.2008 08:46&nbsp; &nbsp;  C:\Programme\Windows Media Player --------- 0 <br />
&nbsp;18.10.2008 08:46&nbsp; &nbsp;  C:\Programme\Windows NT --------- 0 <br />
&nbsp;02.10.2008 17:14&nbsp; &nbsp;  C:\Programme\BitTorrent --------- 0 <br />
&nbsp;18.09.2008 14:14&nbsp; &nbsp;  C:\Programme\WinRAR --------- 0 <br />
&nbsp;08.09.2008 09:46&nbsp; &nbsp;  C:\Programme\AGEIA Technologies --------- 0 <br />
&nbsp;08.09.2008 09:32&nbsp; &nbsp;  C:\Programme\Ubisoft --------- 0 <br />
&nbsp;04.07.2008 13:59&nbsp; &nbsp;  C:\Programme\DivX --------- 0 <br />
&nbsp;06.04.2008 19:45&nbsp; &nbsp;  C:\Programme\Microsoft ActiveSync --------- 0 <br />
&nbsp;19.03.2008 10:21&nbsp; &nbsp;  C:\Programme\Sansa Media Converter 2 --------- 0 <br />
&nbsp;24.02.2008 19:58&nbsp; &nbsp;  C:\Programme\GIMP-2.0 --------- 0 <br />
&nbsp;16.09.2007 13:06&nbsp; &nbsp;  C:\Programme\Disc2Phone --------- 0 <br />
&nbsp;07.09.2007 11:33&nbsp; &nbsp;  C:\Programme\MSBuild --------- 0 <br />
&nbsp;07.09.2007 11:29&nbsp; &nbsp;  C:\Programme\Reference Assemblies --------- 0 <br />
&nbsp;29.08.2007 22:48&nbsp; &nbsp;  C:\Programme\NetObjects --------- 0 <br />
&nbsp;26.08.2007 20:25&nbsp; &nbsp;  C:\Programme\ClayJar Networks --------- 0 <br />
&nbsp;10.08.2007 08:40&nbsp; &nbsp;  C:\Programme\SoundSpectrum --------- 0 <br />
&nbsp;11.06.2007 11:32&nbsp; &nbsp;  C:\Programme\ICQLite --------- 0 <br />
&nbsp;29.03.2007 18:24&nbsp; &nbsp;  C:\Programme\AWS --------- 0 <br />
&nbsp;29.03.2007 18:19&nbsp; &nbsp;  C:\Programme\Liquid Entertainment --------- 0 <br />
&nbsp;07.01.2007 22:40&nbsp; &nbsp;  C:\Programme\Windows Media Connect 2 --------- 0 <br />
&nbsp;03.01.2007 13:55&nbsp; &nbsp;  C:\Programme\Microsoft Works --------- 0 <br />
&nbsp;03.01.2007 13:55&nbsp; &nbsp;  C:\Programme\Microsoft Visual Studio --------- 0 <br />
&nbsp;24.11.2006 15:34&nbsp; &nbsp;  C:\Programme\MSN --------- 0 <br />
&nbsp;25.08.2006 17:08&nbsp; &nbsp;  C:\Programme\Surreal --------- 0 <br />
&nbsp;14.08.2006 08:52&nbsp; &nbsp;  C:\Programme\DVD Shrink --------- 0 <br />
&nbsp;28.07.2006 22:40&nbsp; &nbsp;  C:\Programme\Zero G Registry --------- 0 <br />
&nbsp;06.07.2006 19:18&nbsp; &nbsp;  C:\Programme\Toshiba --------- 0 <br />
&nbsp;05.07.2006 18:22&nbsp; &nbsp;  C:\Programme\Digital --------- 0 <br />
&nbsp;01.07.2006 21:28&nbsp; &nbsp;  C:\Programme\Real --------- 0 <br />
&nbsp;25.06.2006 10:04&nbsp; &nbsp;  C:\Programme\Stardock --------- 0 <br />
&nbsp;11.06.2006 16:15&nbsp; &nbsp;  C:\Programme\Purplehills --------- 0 <br />
&nbsp;09.06.2006 13:53&nbsp; &nbsp;  C:\Programme\DVD-RAM --------- 0 <br />
&nbsp;08.06.2006 21:41&nbsp; &nbsp;  C:\Programme\Intel --------- 0 <br />
&nbsp;08.06.2006 21:41&nbsp; &nbsp;  C:\Programme\InterVideo --------- 0 <br />
&nbsp;07.02.2006 12:36&nbsp; &nbsp;  C:\Programme\xerox --------- 0 <br />
&nbsp;07.02.2006 12:35&nbsp; &nbsp;  C:\Programme\Synaptics --------- 0 <br />
&nbsp;07.02.2006 12:34&nbsp; &nbsp;  C:\Programme\Realtek --------- 0 <br />
&nbsp;07.02.2006 12:34&nbsp; &nbsp;  C:\Programme\Online-Dienste --------- 0 <br />
&nbsp;07.02.2006 12:34&nbsp; &nbsp;  C:\Programme\Online Services --------- 0 <br />
&nbsp;07.02.2006 12:34&nbsp; &nbsp;  C:\Programme\MSN Gaming Zone --------- 0 <br />
&nbsp;07.02.2006 12:34&nbsp; &nbsp;  C:\Programme\Microsoft.NET --------- 0 <br />
&nbsp;07.02.2006 12:32&nbsp; &nbsp;  C:\Programme\microsoft frontpage --------- 0 <br />
&nbsp;16.01.2006 13:16&nbsp; &nbsp;  C:\Programme\Uninstall Information --------- 0 <br />
&nbsp;16.01.2006 12:52&nbsp; &nbsp;  C:\Programme\WindowsUpdate --------- 0 <br />
----------------------------------------<br />
<br />
&nbsp;<br />
C:\Dokumente und Einstellungen\All Users\.. <br />
<br />
Clarissa Thalmaier&nbsp; &nbsp; <br />
Administrator&nbsp; &nbsp; <br />
LocalService&nbsp; &nbsp; <br />
Gast&nbsp; &nbsp; <br />
8.292-038742C-SAN10G-M5x-MCE-WHQL&nbsp; &nbsp; <br />
All Users&nbsp; &nbsp; <br />
Besitzer&nbsp; &nbsp; <br />
Default User&nbsp; &nbsp; <br />
NetworkService&nbsp; &nbsp; <br />
----------------------------------------<br />
<br />
&nbsp;<br />
C:\WINDOWS\system32\drivers\etc\hosts<br />
<br />
<br />
----------------------------------------<br />
<br />
&nbsp;<br />
<br />
Abbildname&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; PID Sitzungsname&nbsp; &nbsp; &nbsp; Sitz.-Nr. Speichernutzung<br />
========================= ===== ================ ========== ===============<br />
System Idle Process&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 16 K<br />
System&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 4 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  220 K<br />
smss.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  1188 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  404 K<br />
csrss.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 1240 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  4.512 K<br />
winlogon.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  1288 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  3.528 K<br />
services.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  1332 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  4.924 K<br />
lsass.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 1344 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  6.728 K<br />
ati2evxx.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  1560 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  2.980 K<br />
svchost.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 1576 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  7.572 K<br />
svchost.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 1720 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  4.636 K<br />
svchost.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 1780 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp; 29.108 K<br />
svchost.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 1832 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  3.536 K<br />
ati2evxx.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  1860 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  3.716 K<br />
EvtEng.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  2016 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  7.668 K<br />
S24EvMon.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 128 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  5.572 K<br />
svchost.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  272 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  3.780 K<br />
svchost.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  444 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  6.588 K<br />
spoolsv.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  804 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  5.588 K<br />
sched.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  868 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  1.160 K<br />
svchost.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  908 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  3.972 K<br />
avguard.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 1124 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  1.664 K<br />
CFSvcs.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  1136 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  888 K<br />
cvpnd.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 1184 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  5.708 K<br />
DVDRAMSV.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 244 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  1.776 K<br />
jqs.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  504 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  1.384 K<br />
MDM.EXE&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  656 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  3.120 K<br />
RegSrvc.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  724 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  3.132 K<br />
svchost.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  544 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  4.492 K<br />
TAPPSRV.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  608 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  1.792 K<br />
wbload.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  1016 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  1.492 K<br />
ctfmon.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  1100 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  4.708 K<br />
explorer.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  2072 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp; 43.736 K<br />
wmiapsrv.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  2800 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  4.676 K<br />
Generic.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 3080 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  9.836 K<br />
epmworker.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 3216 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  7.748 K<br />
alg.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 3180 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  3.656 K<br />
SynTPEnh.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 416 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  6.268 K<br />
RTHDCPL.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 1056 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp; 19.232 K<br />
agrsmmsg.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  1844 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  4.140 K<br />
THotkey.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 1816 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  6.508 K<br />
TPSMain.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 2248 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  5.448 K<br />
Toshiba.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  596 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  4.480 K<br />
NDSTray.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 2332 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  5.992 K<br />
SmoothView.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  2340 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  3.160 K<br />
TFncKy.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  2216 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  5.572 K<br />
TDispVol.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  2172 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  5.048 K<br />
TvsTray.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 2436 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  4.268 K<br />
TPSBattM.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  1384 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  4.204 K<br />
svchost.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  960 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  3.692 K<br />
ZCfgSvc.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 2872 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  9.704 K<br />
iFrmewrk.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  2880 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp; 14.216 K<br />
CFSServ.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 3360 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  6.800 K<br />
avgnt.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 3784 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  1.820 K<br />
CLI.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 2696 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  6.272 K<br />
tfswctrl.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  3792 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  5.108 K<br />
Dot1XCfg.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  1748 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  9.352 K<br />
jusched.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 3952 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  6.864 K<br />
TOSCDSPD.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  2116 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  4.200 K<br />
GoogleToolbarNotifier.exe&nbsp; 1684 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  1.132 K<br />
SansaDispatch.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 2972 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  4.388 K<br />
btdna.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  744 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  9.632 K<br />
CLI.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 2992 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp; 11.664 K<br />
CLI.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 3004 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp; 12.592 K<br />
iexplore.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  3660 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  7.072 K<br />
iexplore.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  2372 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp; 74.280 K<br />
iexplore.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  3708 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp; 59.504 K<br />
iexplore.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  1236 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp; 55.008 K<br />
cmd.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; 3400 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  2.648 K<br />
tasklist.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  3752 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  5.992 K<br />
wmiprvse.exe&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  3908 Console&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  0&nbsp; &nbsp; &nbsp; &nbsp;  5.904 K<br />
<br />
&nbsp;<br />
***** Ende des Scans 24.01.2010 um 21:43:39,20 ***</code><hr />
</div> </div>

 ]]></content:encoded>
			<category domain="http://www.hijackthis-forum.de/archiv/">Archiv</category>
			<dc:creator>Lethe</dc:creator>
			<guid isPermaLink="true">http://www.hijackthis-forum.de/archiv/42046-sauber.html</guid>
		</item>
		<item>
			<title>Dateisystemüberprüfung, Defragmentierung bleibt beides bei 50% immer stehen</title>
			<link>http://www.hijackthis-forum.de/archiv/42029-dateisystemueberpruefung-defragmentierung-bleibt-beides-bei-50-immer-stehen.html</link>
			<pubDate>Sun, 24 Jan 2010 10:29:23 GMT</pubDate>
			<description>Hey wäre froh wenn jemand mein Logfile anschauen könnte danke. 
 
 
Code: 
--------- 
Logfile of Trend Micro HijackThis v2.0.2 
Scan saved at 11:28:10, on 24.01.2010 
Platform: Windows Vista SP2 (WinNT 6.00.1906) 
MSIE: Internet Explorer v8.00 (8.00.6001.18882) 
Boot mode: Normal</description>
			<content:encoded><![CDATA[<div>Hey wäre froh wenn jemand mein Logfile anschauen könnte danke.<br />
<br />
<div class="bbcode_container">
	<div class="bbcode_description">Code:</div>
	<hr /><code class="bbcode_code">Logfile of Trend Micro HijackThis v2.0.2<br />
Scan saved at 11:28:10, on 24.01.2010<br />
Platform: Windows Vista SP2 (WinNT 6.00.1906)<br />
MSIE: Internet Explorer v8.00 (8.00.6001.18882)<br />
Boot mode: Normal<br />
<br />
Running processes:<br />
C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe<br />
C:\Windows\system32\taskeng.exe<br />
C:\Windows\system32\Dwm.exe<br />
C:\Windows\Explorer.EXE<br />
C:\Program Files\ASUS\SmartLogon\sensorsrv.exe<br />
C:\Program Files\ASUS\ASUS Live Update\ALU.exe<br />
C:\Program files\P4G\BatteryLife.exe<br />
C:\Program Files\Windows Defender\MSASCui.exe<br />
C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe<br />
C:\Program Files\ATKOSD2\ATKOSD2.exe<br />
C:\Windows\System32\igfxtray.exe<br />
C:\Windows\System32\hkcmd.exe<br />
C:\Windows\System32\igfxpers.exe<br />
C:\Windows\system32\igfxsrvc.exe<br />
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe<br />
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe<br />
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe<br />
C:\Program Files\Windows Sidebar\sidebar.exe<br />
C:\Program Files\Windows Sidebar\sidebar.exe<br />
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe<br />
C:\Program Files\Internet Explorer\iexplore.exe<br />
C:\Program Files\Internet Explorer\iexplore.exe<br />
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe<br />
C:\Windows\system32\SearchProtocolHost.exe<br />
C:\Program Files\Internet Explorer\iexplore.exe<br />
C:\Program Files\Internet Explorer\iexplore.exe<br />
C:\Windows\system32\SearchFilterHost.exe<br />
<br />
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.asus.com<br />
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896<br />
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.sancocos.com/<br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.asus.com<br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896<br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896<br />
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157<br />
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = <br />
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = <br />
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local<br />
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = <br />
O1 - Hosts: ::1 localhost<br />
O2 - BHO: Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll<br />
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll<br />
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - (no file)<br />
O2 - BHO: Windows Live Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll<br />
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll<br />
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll<br />
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll<br />
O3 - Toolbar: (no name) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - (no file)<br />
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll<br />
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide<br />
O4 - HKLM\..\Run: [HControlUser] C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe<br />
O4 - HKLM\..\Run: [ATKOSD2] &quot;C:\Program Files\ATKOSD2\ATKOSD2.exe&quot;<br />
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe<br />
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe<br />
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe<br />
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe<br />
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe<br />
O4 - HKLM\..\Run: [avgnt] &quot;C:\Program Files\Avira\AntiVir Desktop\avgnt.exe&quot; /min<br />
O4 - HKCU\..\Run: [\\BLACKPEARL\EPSON Stylus Photo RX560 Series] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIBPE.EXE /FU &quot;C:\Users\SANINO~1\AppData\Local\Temp\E_S9CFE.tmp&quot; /EF &quot;HKCU&quot;<br />
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun<br />
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOKALER DIENST')<br />
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOKALER DIENST')<br />
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETZWERKDIENST')<br />
O8 - Extra context menu item: An vorhandene PDF-Datei anfügen - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html<br />
O8 - Extra context menu item: An vorhandenes PDF anfügen - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html<br />
O8 - Extra context menu item: In Adobe PDF konvertieren - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html<br />
O8 - Extra context menu item: Linkziel an vorhandene PDF-Datei anhängen - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html<br />
O8 - Extra context menu item: Linkziel in Adobe PDF konvertieren - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html<br />
O8 - Extra context menu item: Verknüpfungsziel in Adobe PDF konvertieren - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html<br />
O8 - Extra context menu item: Verknüpfungsziel in vorhandene PDF-Datei konvertieren - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html<br />
O13 - Gopher Prefix: <br />
O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/2009.07.28_v5.5.8.1/FacebookPhotoUploader55.cab<br />
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab<br />
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll<br />
O23 - Service: Adobe Version Cue CS4 - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4.exe<br />
O23 - Service: Avira AntiVir Planer (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe<br />
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe<br />
O23 - Service: ASLDR Service (ASLDRService) - Unknown owner - C:\Program Files\ASUS\ATK Hotkey\ASLDRSrv.exe<br />
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - Unknown owner - C:\Program Files\ATKGFNEX\GFNEXSrv.exe<br />
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe<br />
O23 - Service: FsUsbExService - Teruten - C:\Windows\system32\FsUsbExService.Exe<br />
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe<br />
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe<br />
O23 - Service: LVCOMSer - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe<br />
O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe<br />
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe<br />
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe<br />
O23 - Service: Symantec Core LC - Unknown owner - C:\PROGRA~1\COMMON~1\SYMANT~1\CCPD-LC\symlcsvc.exe<br />
O23 - Service: @%SystemRoot%\System32\TuneUpDefragService.exe,-1 (TuneUp.Defrag) - TuneUp Software - C:\Windows\System32\TuneUpDefragService.exe<br />
O23 - Service: @%SystemRoot%\System32\TUProgSt.exe,-1 (TuneUp.ProgramStatisticsSvc) - TuneUp Software - C:\Windows\System32\TUProgSt.exe<br />
<br />
--<br />
End of file - 8637 bytes</code><hr />
</div> </div>

 ]]></content:encoded>
			<category domain="http://www.hijackthis-forum.de/archiv/">Archiv</category>
			<dc:creator>BamboOo92</dc:creator>
			<guid isPermaLink="true">http://www.hijackthis-forum.de/archiv/42029-dateisystemueberpruefung-defragmentierung-bleibt-beides-bei-50-immer-stehen.html</guid>
		</item>
		<item>
			<title>rok: Unbekannte Malware setzt Virenprogramme und Windows Security ausser Kraft</title>
			<link>http://www.hijackthis-forum.de/archiv/42016-rok-unbekannte-malware-setzt-virenprogramme-und-windows-security-ausser-kraft.html</link>
			<pubDate>Sat, 23 Jan 2010 14:14:08 GMT</pubDate>
			<description>Hallo! 
 
Sorry, wenn ich mich hier einfach so dran hänge. Mein Problem scheint wohl das selbe zu sein. Bei mir gibt es auch die \windows\system32\krl32mainweq.dll 
Ebenfalls wird ständig versucht, URLs zu öffnen. HijackThis lässt sich nur starten, wenn ich es umbenenne. Genauso Combofix....</description>
			<content:encoded><![CDATA[<div>Hallo!<br />
<br />
Sorry, wenn ich mich hier einfach so dran hänge. Mein Problem scheint wohl das selbe zu sein. Bei mir gibt es auch die \windows\system32\krl32mainweq.dll<br />
Ebenfalls wird ständig versucht, URLs zu öffnen. HijackThis lässt sich nur starten, wenn ich es umbenenne. Genauso Combofix. Allerdings habe ich noch ein dicken Unterschied zum OT: ich setze Windows 2008 (Server) ein. Insofern lässt sich Combofix z.B. nicht starten. Und sicherlich sind auch ein paar andere Tipps notwendig.<br />
Ein Systembackup gibt es noch nicht. Das Ding läuft erst seit 2 Monaten und die komplette Konfig war bis jetzt noch nicht durch (gab noch einiges zu erledigen). Zur Not wird das Ding halt nochmal neu aufgesetzt, ist aber eben Schade um die ganze Arbeit.<br />
<br />
<br />
<b><font color="Red">Edit Moderation (Petra):</font></b> Ich werde diesen Beitrag in einen eigenen Thread verschieben, da hier jeder Computer einen separaten Thread haben muss.<br />
Ex =&gt; <a href="!41263!http://www.hijackthis-forum.de/hijackthis-logfiles/41263-unbekannte-malware-setzt-virenprogramme-und-windows-security-ausser-kraft.html" target="_blank">http://www.hijackthis-forum.de/hijac...ser-kraft.html</a></div>

 ]]></content:encoded>
			<category domain="http://www.hijackthis-forum.de/archiv/">Archiv</category>
			<dc:creator>rok°!</dc:creator>
			<guid isPermaLink="true">http://www.hijackthis-forum.de/archiv/42016-rok-unbekannte-malware-setzt-virenprogramme-und-windows-security-ausser-kraft.html</guid>
		</item>
		<item>
			<title><![CDATA[DCOM Server Process System Shutdown & Trojaner gefunden]]></title>
			<link>http://www.hijackthis-forum.de/archiv/42013-dcom-server-process-system-shutdown-trojaner-gefunden.html</link>
			<pubDate>Sat, 23 Jan 2010 11:50:32 GMT</pubDate>
			<description>(dann halt nicht)</description>
			<content:encoded><![CDATA[<div>(dann halt nicht)</div>

 ]]></content:encoded>
			<category domain="http://www.hijackthis-forum.de/archiv/">Archiv</category>
			<dc:creator>Schorrsch</dc:creator>
			<guid isPermaLink="true">http://www.hijackthis-forum.de/archiv/42013-dcom-server-process-system-shutdown-trojaner-gefunden.html</guid>
		</item>
		<item>
			<title>neues Logfile, bitte prüfen......</title>
			<link>http://www.hijackthis-forum.de/archiv/41980-neues-logfile-bitte-google-page-rankinguefen.html</link>
			<pubDate>Sat, 23 Jan 2010 08:49:43 GMT</pubDate>
			<description>Hi....bin neu.... 
hab ein Problem mit dem Laptop meiner Eltern....über Arbeitsplatz kann nicht auf die Lokalefestplatte (Laufwerk C) zugegriffen werden. 
Es geht aber ohne Probleme per Explorer. 
 
Über Arbeitsplatz erscheint folgende Fehlermeldung: 
Windows Script Host 
Die Skriptdatei...</description>
			<content:encoded><![CDATA[<div>Hi....bin neu....<br />
hab ein Problem mit dem Laptop meiner Eltern....über Arbeitsplatz kann nicht auf die Lokalefestplatte (Laufwerk C) zugegriffen werden.<br />
Es geht aber ohne Probleme per Explorer.<br />
<br />
Über Arbeitsplatz erscheint folgende Fehlermeldung:<br />
Windows Script Host<br />
Die Skriptdatei &quot;C:\xxx.vbs&quot; wurde nicht gefunden<br />
<br />
Beim Suchen im Internet bin ich immer wieder auf euer Forum gestossen iund hoffe jetzt, das ihr mir helfen könnt.......<br />
Habe bereits HijackThis runtergeldaen und ein Logfile erstellt.....<br />
<br />
<div class="bbcode_container">
	<div class="bbcode_description">Code:</div>
	<hr /><code class="bbcode_code">Logfile of Trend Micro HijackThis v2.0.2<br />
Scan saved at 08:53:23, on 23.01.2010<br />
Platform: Windows XP SP3 (WinNT 5.01.2600)<br />
MSIE: Internet Explorer v8.00 (8.00.6001.18702)<br />
Boot mode: Normal<br />
<br />
Running processes:<br />
C:\WINDOWS\System32\smss.exe<br />
C:\WINDOWS\system32\winlogon.exe<br />
C:\WINDOWS\system32\services.exe<br />
C:\WINDOWS\system32\lsass.exe<br />
C:\WINDOWS\system32\ibmpmsvc.exe<br />
C:\WINDOWS\system32\svchost.exe<br />
C:\WINDOWS\System32\svchost.exe<br />
C:\Programme\Intel\Wireless\Bin\EvtEng.exe<br />
C:\Programme\Intel\Wireless\Bin\S24EvMon.exe<br />
C:\WINDOWS\system32\spoolsv.exe<br />
C:\Programme\Avira\AntiVir Desktop\sched.exe<br />
C:\WINDOWS\system32\IPSSVC.EXE<br />
C:\Programme\ThinkPad\ConnectUtilities\AcPrfMgrSvc.exe<br />
C:\Programme\Avira\AntiVir Desktop\avguard.exe<br />
C:\Programme\ThinkPad\Bluetooth Software\bin\btwdins.exe<br />
C:\Programme\Diskeeper Corporation\Diskeeper\DkService.exe<br />
C:\Programme\Intel\Wireless\Bin\RegSrvc.exe<br />
C:\WINDOWS\system32\svchost.exe<br />
C:\Programme\IBM ThinkVantage\Rescue and Recovery\rrservice.exe<br />
C:\Programme\IBM ThinkVantage\Common\Scheduler\tvtsched.exe<br />
C:\Programme\ThinkVantage\SystemUpdate\UCLauncherService.exe<br />
C:\Programme\ThinkPad\ConnectUtilities\AcSvc.exe<br />
C:\WINDOWS\system32\wbem\wmiapsrv.exe<br />
C:\Programme\IBM ThinkVantage\Common\Logger\logmon.exe<br />
C:\Programme\ThinkPad\ConnectUtilities\SvcGuiHlpr.exe<br />
C:\WINDOWS\Explorer.EXE<br />
C:\PROGRA~1\Intel\Wireless\Bin\Dot1XCfg.exe<br />
C:\WINDOWS\system32\tp4serv.exe<br />
C:\WINDOWS\system32\igfxtray.exe<br />
C:\WINDOWS\system32\hkcmd.exe<br />
C:\WINDOWS\system32\igfxpers.exe<br />
C:\PROGRA~1\ThinkPad\UTILIT~1\EzEjMnAp.Exe<br />
C:\PROGRA~1\Lenovo\PkgMgr\HOTKEY\TPHKMGR.exe<br />
C:\Programme\Lenovo\PkgMgr\HOTKEY\TPONSCR.exe<br />
C:\Programme\Analog Devices\Core\smax4pnp.exe<br />
C:\Programme\Lenovo\PkgMgr\HOTKEY_1\TpScrex.exe<br />
C:\PROGRA~1\THINKV~1\PrdCtr\LPMGR.exe<br />
C:\WINDOWS\System32\DLA\DLACTRLW.EXE<br />
C:\Programme\Gemeinsame Dateien\InstallShield\UpdateService\issch.exe<br />
C:\Programme\Lenovo\AwayTask\AwaySch.EXE<br />
C:\Programme\IBM ThinkVantage\Client Security Solution\cssauthe.exe<br />
C:\Programme\IBM ThinkVantage\SafeGuard PrivateDisk\pdservice.exe<br />
C:\Programme\ThinkPad\ConnectUtilities\ACTray.exe<br />
C:\Programme\ThinkPad\ConnectUtilities\ACWLIcon.exe<br />
C:\WINDOWS\system32\rundll32.exe<br />
C:\Programme\Avira\AntiVir Desktop\avgnt.exe<br />
C:\WINDOWS\system32\ctfmon.exe<br />
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIEFE.EXE<br />
C:\Programme\ThinkPad\Bluetooth Software\BTTray.exe<br />
C:\PROGRA~1\ThinkPad\BLUETO~1\BTSTAC~1.EXE<br />
C:\Programme\Internet Explorer\iexplore.exe<br />
C:\Programme\Internet Explorer\iexplore.exe<br />
C:\Programme\Internet Explorer\iexplore.exe<br />
C:\Programme\Trend Micro\HijackThis\HijackThis.exe<br />
<br />
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://web.de/<br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157<br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896<br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896<br />
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157<br />
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = <br />
R3 - URLSearchHook: &amp;Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)<br />
R3 - URLSearchHook: (no name) -&nbsp; - (no file)<br />
O2 - BHO: XTTBPos00 - {055FD26D-3A88-4e15-963D-DC8493744B1D} - (no file)<br />
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Programme\Gemeinsame Dateien\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll<br />
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\System32\DLA\DLASHX_W.DLL<br />
O2 - BHO: EWPBrowseObject Class - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Programme\Canon\Easy-WebPrint\EWPBrowseLoader.dll<br />
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Programme\Google\Google Toolbar\GoogleToolbar_32.dll<br />
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Programme\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll<br />
O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Programme\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll<br />
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Programme\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll<br />
O2 - BHO: (no name) - {ee1babcf-cbe2-4c07-8e18-dfe6fc08c30a}&nbsp; - (no file)<br />
O3 - Toolbar: (no name) - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - (no file)<br />
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Programme\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll<br />
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Programme\Google\Google Toolbar\GoogleToolbar_32.dll<br />
O4 - HKLM\..\Run: [TrackPointSrv] tp4serv.exe<br />
O4 - HKLM\..\Run: [TPKMAPHELPER] C:\Programme\ThinkPad\Utilities\TpKmapAp.exe -helper<br />
O4 - HKLM\..\Run: [TP4EX] tp4ex.exe<br />
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe<br />
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe<br />
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe<br />
O4 - HKLM\..\Run: [EZEJMNAP] C:\PROGRA~1\ThinkPad\UTILIT~1\EzEjMnAp.Exe<br />
O4 - HKLM\..\Run: [TPHOTKEY] C:\PROGRA~1\Lenovo\PkgMgr\HOTKEY\TPHKMGR.exe<br />
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Programme\Analog Devices\Core\smax4pnp.exe<br />
O4 - HKLM\..\Run: [SoundMAX] C:\Programme\Analog Devices\SoundMAX\Smax4.exe /tray<br />
O4 - HKLM\..\Run: [suScheduler] C:\Programme\ThinkVantage\SystemUpdate\UCLauncher.exe /SCHEDULER<br />
O4 - HKLM\..\Run: [LPManager] C:\PROGRA~1\THINKV~1\PrdCtr\LPMGR.exe<br />
O4 - HKLM\..\Run: [DLA] C:\WINDOWS\System32\DLA\DLACTRLW.EXE<br />
O4 - HKLM\..\Run: [ISUSPM Startup] c:\PROGRA~1\GEMEIN~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup<br />
O4 - HKLM\..\Run: [ISUSScheduler] &quot;c:\Programme\Gemeinsame Dateien\InstallShield\UpdateService\issch.exe&quot; -start<br />
O4 - HKLM\..\Run: [AwaySch] C:\Programme\Lenovo\AwayTask\AwaySch.EXE<br />
O4 - HKLM\..\Run: [cssauthe] &quot;C:\Programme\IBM ThinkVantage\Client Security Solution\cssauthe.exe&quot; silent<br />
O4 - HKLM\..\Run: [PDService.exe] &quot;C:\Programme\IBM ThinkVantage\SafeGuard PrivateDisk\pdservice.exe&quot;<br />
O4 - HKLM\..\Run: [DiskeeperSystray] &quot;C:\Programme\Diskeeper Corporation\Diskeeper\DkIcon.exe&quot;<br />
O4 - HKLM\..\Run: [ACTray] C:\Programme\ThinkPad\ConnectUtilities\ACTray.exe<br />
O4 - HKLM\..\Run: [ACWLIcon] C:\Programme\ThinkPad\ConnectUtilities\ACWLIcon.exe<br />
O4 - HKLM\..\Run: [PWRMGRTR] rundll32 C:\PROGRA~1\ThinkPad\UTILIT~1\PWRMGRTR.DLL,PwrMgrBkGndMonitor<br />
O4 - HKLM\..\Run: [BLOG] rundll32 C:\PROGRA~1\ThinkPad\UTILIT~1\BatLogEx.DLL,StartBattLog<br />
O4 - HKLM\..\Run: [avgnt] &quot;C:\Programme\Avira\AntiVir Desktop\avgnt.exe&quot; /min<br />
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] &quot;C:\Programme\Adobe\Reader 9.0\Reader\Reader_sl.exe&quot;<br />
O4 - HKLM\..\Run: [Adobe ARM] &quot;C:\Programme\Gemeinsame Dateien\Adobe\ARM\1.0\AdobeARM.exe&quot;<br />
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe<br />
O4 - HKCU\..\Run: [EPSON Stylus SX200 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIEFE.EXE /FU &quot;C:\WINDOWS\TEMP\E_SF4.tmp&quot; /EF &quot;HKCU&quot;<br />
O4 - HKCU\..\Run: [swg] C:\Programme\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe<br />
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOKALER DIENST')<br />
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETZWERKDIENST')<br />
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')<br />
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')<br />
O4 - Global Startup: BTTray.lnk = ?<br />
O8 - Extra context menu item: Add to Google Photos Screensa&amp;ver - res://C:\WINDOWS\system32\GPhotos.scr/200<br />
O8 - Extra context menu item: Senden an &amp;Bluetooth-Gerät... - C:\Programme\ThinkPad\Bluetooth Software\btsendto_ie_ctx.htm<br />
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\IBM\Java142\jre\bin\NPJPI142.dll<br />
O9 - Extra 'Tools' menuitem: IBM Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\IBM\Java142\jre\bin\NPJPI142.dll<br />
O9 - Extra button: ThinkPad-Software - Aktualisierung - {D1A4DEBD-C2EE-449f-B9FB-E8409F9A0BC5} - C:\Programme\Lenovo\PkgMgr\\PkgMgr.exe<br />
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe<br />
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe<br />
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe<br />
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe<br />
O11 - Options group: [JAVA_IBM] Java (IBM)<br />
O14 - IERESET.INF: START_PAGE_URL=http://www.lenovo.com/de/de<br />
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1162995202468<br />
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab<br />
O20 - Winlogon Notify: ACNotify - ACNotify.dll (file missing)<br />
O20 - Winlogon Notify: AwayNotify - C:\Programme\Lenovo\AwayTask\AwayNotify.dll<br />
O23 - Service: Ac Profile Manager Service (AcPrfMgrSvc) - Unknown owner - C:\Programme\ThinkPad\ConnectUtilities\AcPrfMgrSvc.exe<br />
O23 - Service: Access Connections Main Service (AcSvc) - Lenovo - C:\Programme\ThinkPad\ConnectUtilities\AcSvc.exe<br />
O23 - Service: Avira AntiVir Planer (AntiVirSchedulerService) - Avira GmbH - C:\Programme\Avira\AntiVir Desktop\sched.exe<br />
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Programme\Avira\AntiVir Desktop\avguard.exe<br />
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Programme\ThinkPad\Bluetooth Software\bin\btwdins.exe<br />
O23 - Service: Diskeeper - Diskeeper Corporation - C:\Programme\Diskeeper Corporation\Diskeeper\DkService.exe<br />
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Programme\Intel\Wireless\Bin\EvtEng.exe<br />
O23 - Service: Google Software Updater (gusvc) - Google - C:\Programme\Google\Common\Google Updater\GoogleUpdaterService.exe<br />
O23 - Service: ThinkPad PM Service (IBMPMSVC) - Unknown owner - C:\WINDOWS\system32\ibmpmsvc.exe<br />
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programme\Gemeinsame Dateien\InstallShield\Driver\1050\Intel 32\IDriverT.exe<br />
O23 - Service: IPS-Basisservice (IPSSVC) - Lenovo Group Limited - C:\WINDOWS\system32\IPSSVC.EXE<br />
O23 - Service: IBM PSA Access Driver Control (PsaSrv) - Unknown owner - C:\WINDOWS\system32\PsaSrv.exe (file missing)<br />
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Programme\Intel\Wireless\Bin\RegSrvc.exe<br />
O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation&nbsp; - C:\Programme\Intel\Wireless\Bin\S24EvMon.exe<br />
O23 - Service: TVT Backup Service - Unknown owner - C:\Programme\IBM ThinkVantage\Rescue and Recovery\rrservice.exe<br />
O23 - Service: TVT Scheduler - Unknown owner - C:\Programme\IBM ThinkVantage\Common\Scheduler\tvtsched.exe<br />
O23 - Service: ThinkVantage System Update (UCLauncherService) - Unknown owner - C:\Programme\ThinkVantage\SystemUpdate\UCLauncherService.exe<br />
<br />
--<br />
End of file - 11453 bytes</code><hr />
</div> Bitte helfen.......<br />
DANKE<br />
<br />
PC-Blondie</div>

 ]]></content:encoded>
			<category domain="http://www.hijackthis-forum.de/archiv/">Archiv</category>
			<dc:creator>PC-Blondie</dc:creator>
			<guid isPermaLink="true">http://www.hijackthis-forum.de/archiv/41980-neues-logfile-bitte-google-page-rankinguefen.html</guid>
		</item>
		<item>
			<title>habe ich gestohlene Software laufen?</title>
			<link>http://www.hijackthis-forum.de/archiv/41977-habe-ich-gestohlene-software-laufen.html</link>
			<pubDate>Sat, 23 Jan 2010 00:53:28 GMT</pubDate>
			<description><![CDATA[hier mein HJ Code 
 
vllt kann mir wer sagen, ob was hier falsch läuft? 
 
und vllt. kann ich davon etwas "entsorgen" von den Autostart-Sachen ? 
 
 
Code: 
--------- 
Logfile of Trend Micro HijackThis v2.0.2]]></description>
			<content:encoded><![CDATA[<div>hier mein HJ Code<br />
<br />
vllt kann mir wer sagen, ob was hier falsch läuft?<br />
<br />
und vllt. kann ich davon etwas &quot;entsorgen&quot; von den Autostart-Sachen ?<br />
<br />
<div class="bbcode_container">
	<div class="bbcode_description">Code:</div>
	<hr /><code class="bbcode_code">Logfile of Trend Micro HijackThis v2.0.2<br />
Scan saved at 01:38:18, on 23.01.2010<br />
Platform: Unknown Windows (WinNT 6.01.3504)<br />
MSIE: Internet Explorer v8.00 (8.00.7600.16385)<br />
Boot mode: Normal<br />
<br />
Running processes:<br />
C:\Windows\system32\Dwm.exe<br />
C:\Windows\Explorer.EXE<br />
C:\Windows\system32\taskhost.exe<br />
C:\Windows\system32\taskeng.exe<br />
C:\Program Files\ASUS\EPU-6 Engine\SixEngine.exe<br />
C:\Program Files\Analog Devices\Core\smax4pnp.exe<br />
C:\Program Files\Analog Devices\SoundMAX\SoundMAX.exe<br />
C:\Program Files\Windows Sidebar\sidebar.exe<br />
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe<br />
C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesApp32.exe<br />
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe<br />
C:\Program Files\BOINC\boincmgr.exe<br />
C:\Program Files\BOINC\boinc.exe<br />
C:\Windows\system32\conhost.exe<br />
C:\Program Files\BOINC\projects\setiathome.berkeley.edu\setiathome_6.03_windows_intelx86.exe<br />
C:\Program Files\BOINC\projects\boinc.bakerlab.org_rosetta\minirosetta_2.05_windows_intelx86.exe<br />
C:\Program Files\Windows Media Player\wmplayer.exe<br />
C:\Windows\explorer.exe<br />
C:\Program Files\Mozilla Firefox\firefox.exe<br />
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe<br />
<br />
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896<br />
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157<br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157<br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896<br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896<br />
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157<br />
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = <br />
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = <br />
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = <br />
O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO.dll<br />
O4 - HKLM\..\Run: [StartCCC] &quot;C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe&quot; MSRun<br />
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe<br />
O4 - HKLM\..\Run: [SoundMAX] C:\Program Files\Analog Devices\SoundMAX\soundmax.exe /tray<br />
O4 - HKLM\..\Run: [avgnt] &quot;C:\Program Files\Avira\AntiVir Desktop\avgnt.exe&quot; /min<br />
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun<br />
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOKALER DIENST')<br />
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOKALER DIENST')<br />
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETZWERKDIENST')<br />
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETZWERKDIENST')<br />
O4 - Startup: BOINC Manager.lnk = C:\Program Files\BOINC\boincmgr.exe<br />
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe<br />
O8 - Extra context menu item: Download all links using BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm<br />
O8 - Extra context menu item: Download all videos using BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm<br />
O8 - Extra context menu item: Download link using &amp;BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm<br />
O8 - Extra context menu item: Nach Microsoft E&amp;xel exportieren - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000<br />
O9 - Extra button: An OneNote senden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll<br />
O9 - Extra 'Tools' menuitem: An OneNote s&amp;enden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll<br />
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL<br />
O13 - Gopher Prefix: <br />
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab<br />
O23 - Service: Adobe Active File Monitor (AdobeActiveFileMonitor) - Unknown owner - C:\Program Files\Adobe\Photoshop Elements 3.0\PhotoshopElementsFileAgent.exe<br />
O23 - Service: Andrea ADI Filters Service (AEADIFilters) - Andrea Electronics Corporation - C:\Windows\system32\AEADISRV.EXE<br />
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe<br />
O23 - Service: Avira Firewall (AntiVirFirewallService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avfwsvc.exe<br />
O23 - Service: Avira AntiVir MailGuard (AntiVirMailService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avmailc.exe<br />
O23 - Service: Avira AntiVir Planer (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe<br />
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe<br />
O23 - Service: Avira AntiVir WebGuard (AntiVirWebService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE<br />
O23 - Service: ASUS System Control Service (AsSysCtrlService) - Unknown owner - C:\Program Files\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe<br />
O23 - Service: DeviceVM Meta Data Export Service (DvmMDES) - DeviceVM - C:\ASUS.SYS\config\DVMExportService.exe<br />
O23 - Service: Photoshop Elements Device Connect (PhotoshopElementsDeviceConnect) - Unknown owner - C:\Program Files\Adobe\Photoshop Elements 3.0\PhotoshopElementsDeviceConnect.exe<br />
O23 - Service: @C:\Program Files\TuneUp Utilities 2010\TuneUpDefragService.exe,-1 (TuneUp.Defrag) - TuneUp Software - C:\Program Files\TuneUp Utilities 2010\TuneUpDefragService.exe<br />
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe<br />
<br />
--<br />
End of file - 6135 bytes</code><hr />
</div> Danke für Hilfen</div>

 ]]></content:encoded>
			<category domain="http://www.hijackthis-forum.de/archiv/">Archiv</category>
			<dc:creator>kambotscha</dc:creator>
			<guid isPermaLink="true">http://www.hijackthis-forum.de/archiv/41977-habe-ich-gestohlene-software-laufen.html</guid>
		</item>
		<item>
			<title>Unerwünschte Tabs beim öffnen von Webseiten.</title>
			<link>http://www.hijackthis-forum.de/archiv/41973-unerwuenschte-tabs-beim-oeffnen-von-webseiten.html</link>
			<pubDate>Fri, 22 Jan 2010 19:10:28 GMT</pubDate>
			<description>Hallo 
Ich habe das problem da wenn ich Webseiten aufrufe bei manchen ein Tab mit aufgeht mit einer Webseite die eine netzwerk zeitüberschreitung anzeigt. 
Mein Antivir kann nix finden und langsam habe ich Angst um meine Daten da ich sehr sensible Sachen mit meinem PC mache. 
Hier mal das Logfile 
...</description>
			<content:encoded><![CDATA[<div>Hallo<br />
Ich habe das problem da wenn ich Webseiten aufrufe bei manchen ein Tab mit aufgeht mit einer Webseite die eine netzwerk zeitüberschreitung anzeigt.<br />
Mein Antivir kann nix finden und langsam habe ich Angst um meine Daten da ich sehr sensible Sachen mit meinem PC mache.<br />
Hier mal das Logfile<br />
<div class="bbcode_container">
	<div class="bbcode_description">Code:</div>
	<hr /><code class="bbcode_code">Logfile of Trend Micro HijackThis v2.0.2<br />
Scan saved at 19:53:00, on 22.01.2010<br />
Platform: Windows XP SP3 (WinNT 5.01.2600)<br />
MSIE: Internet Explorer v8.00 (8.00.6001.18702)<br />
Boot mode: Normal<br />
<br />
Running processes:<br />
C:\WINDOWS\System32\smss.exe<br />
C:\WINDOWS\system32\winlogon.exe<br />
C:\WINDOWS\system32\services.exe<br />
C:\WINDOWS\system32\lsass.exe<br />
C:\WINDOWS\system32\svchost.exe<br />
C:\WINDOWS\System32\svchost.exe<br />
C:\Programme\Sygate\SPF\smc.exe<br />
C:\Programme\AVG\AVG9\avgchsvx.exe<br />
C:\Programme\AVG\AVG9\avgrsx.exe<br />
C:\Programme\AVG\AVG9\avgcsrvx.exe<br />
C:\WINDOWS\system32\spoolsv.exe<br />
C:\WINDOWS\Explorer.EXE<br />
C:\WINDOWS\System32\svchost.exe<br />
C:\Programme\Java\jre6\bin\jqs.exe<br />
C:\Programme\Canon\MultiPASS4\MPSERVIC.EXE<br />
C:\WINDOWS\Mixer.exe<br />
C:\Programme\CDBurnerXP\NMSAccessU.exe<br />
C:\WINDOWS\system32\ctfmon.exe<br />
C:\Programme\Windows Live\Messenger\msnmsgr.exe<br />
C:\WINDOWS\system32\nvsvc32.exe<br />
C:\WINDOWS\system32\svchost.exe<br />
C:\Programme\Virtual CD v9\System\vc9secs.exe<br />
C:\WINDOWS\system32\wuauclt.exe<br />
C:\WINDOWS\system32\wscntfy.exe<br />
C:\Programme\Trend Micro\HijackThis\HijackThis.exe<br />
<br />
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.plusnetwork.com<br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157<br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896<br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896<br />
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157<br />
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\WINDOWS\system32\sdra64.exe,<br />
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Programme\Gemeinsame Dateien\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll<br />
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Programme\AVG\AVG9\avgssie.dll<br />
O2 - BHO: Babylon IE plugin - {9CFACCB6-2F3F-4177-94EA-0D2B72D384C1} - C:\Programme\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll<br />
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programme\Java\jre6\bin\jp2ssv.dll<br />
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Programme\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll<br />
O4 - HKLM\..\Run: [C-Media Mixer] Mixer.exe /startup<br />
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k<br />
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup<br />
O4 - HKLM\..\Run: [SmcService] C:\PROGRA~1\Sygate\SPF\smc.exe -startgui<br />
O4 - HKLM\..\Run: [Babylon Client] C:\Programme\Babylon\Babylon-Pro\Babylon.exe -AutoStart<br />
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe<br />
O4 - HKCU\..\Run: [msnmsgr] &quot;C:\Programme\Windows Live\Messenger\msnmsgr.exe&quot; /background<br />
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOKALER DIENST')<br />
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETZWERKDIENST')<br />
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')<br />
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')<br />
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present<br />
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Control Panel present<br />
O8 - Extra context menu item: Nach Microsoft E&amp;xel exportieren - res://D:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000<br />
O8 - Extra context menu item: Translate this web page with Babylon - res://C:\Programme\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/ActionTU.htm<br />
O8 - Extra context menu item: Translate with Babylon - res://C:\Programme\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/Action.htm<br />
O9 - Extra button: Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe<br />
O9 - Extra 'Tools' menuitem: Windows Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe<br />
O9 - Extra button: An OneNote senden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\PROGRA~1\Microsoft Office\Office12\ONBttnIE.dll<br />
O9 - Extra 'Tools' menuitem: An OneNote s&amp;enden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\PROGRA~1\Microsoft Office\Office12\ONBttnIE.dll<br />
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\PROGRA~1\Microsoft Office\Office12\REFIEBAR.DLL<br />
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe<br />
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe<br />
O9 - Extra button: Translate this web page with Babylon - {F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} - C:\Programme\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll<br />
O9 - Extra 'Tools' menuitem: Translate this web page with Babylon - {F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} - C:\Programme\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll<br />
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1240440288846<br />
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - D:\Programme\Microsoft Office\Office12\GrooveSystemServices.dll<br />
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Programme\AVG\AVG9\avgpp.dll<br />
O20 - Winlogon Notify: avgrsstarter - C:\WINDOWS\SYSTEM32\avgrsstx.dll<br />
O20 - Winlogon Notify: xxop81 - C:\WINDOWS\SYSTEM32\xxop81.dll<br />
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Programme\Java\jre6\bin\jqs.exe<br />
O23 - Service: MpService - Canon Inc. - C:\Programme\Canon\MultiPASS4\MPSERVIC.EXE<br />
O23 - Service: Nero BackItUp Scheduler 4.0 - Unknown owner - C:\Programme\Gemeinsame Dateien\Nero\Nero BackItUp 4\NBService.exe (file missing)<br />
O23 - Service: NMSAccessU - Unknown owner - C:\Programme\CDBurnerXP\NMSAccessU.exe<br />
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe<br />
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe<br />
O23 - Service: Sygate Personal Firewall (SmcService) - Sygate Technologies, Inc. - C:\Programme\Sygate\SPF\smc.exe<br />
O23 - Service: Virtual CD v9 Management Service (VC9SecS) - H+H Software GmbH - C:\Programme\Virtual CD v9\System\vc9secs.exe<br />
<br />
--<br />
End of file - 6502 bytes</code><hr />
</div> MFG: M.F.</div>

 ]]></content:encoded>
			<category domain="http://www.hijackthis-forum.de/archiv/">Archiv</category>
			<dc:creator>Marissi</dc:creator>
			<guid isPermaLink="true">http://www.hijackthis-forum.de/archiv/41973-unerwuenschte-tabs-beim-oeffnen-von-webseiten.html</guid>
		</item>
	</channel>
</rss>
