Thema geschlossen
Seite 1 von 7
1 2 3 ... LetzteLetzte
Zeige Ergebnis 1 bis 10 von 69

Thema: Computer programme hängen:keine Rückmeldung

  1. #1
    Forenbenutzer
    Registriert seit
    13.01.2010
    Beiträge
    34

    Unglücklich Computer programme hängen:keine Rückmeldung

    hallo,
    ich habe mal mein acer aspire 5720zgseit gut einem Jahr gekauft und jetzt erlebe ich die seit dieser Zeit einzige von mir unlösbare Schwierigkeit.habe schon mal virenprobleme gehabt,wo ich dann nur die Systemwiederherstellung gemacht habe.aber jetzt seit ein paar Monaten ist es eher schwieriger alle Programme zeigen mal plötzlich ohne transparenter Grund :keine Rückmeldung sei es firefox, windows media player oder was sonstiges .also im allgemeinen , starte ich mal den Computer beim direkt ausschalten weil auch unter "start" wird mir nix zugelassen ich drücke dann den ausschalten button und dann darf ich mal wieder 10 bis 30 minuten was machen bevor plötzlich wieder alles hängt.komisch ist manchmal verbringe 1 oder 2 Tage ohne das Problem zu haben.bitte hilfe !!!! ich freue mich auf euch und hoffe der obige roman euch hilft hier poste ich auch meine logfile
    Code:
     Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 06:26:26, on 13.01.2010
    Platform: Windows Vista SP2 (WinNT 6.00.1906)
    MSIE: Internet Explorer v8.00 (8.00.6001.18865)
    Boot mode: Normal
    
    Running processes:
    C:\Windows\system32\Dwm.exe
    C:\Windows\system32\taskeng.exe
    C:\Windows\Explorer.EXE
    C:\Windows\RtHDVCpl.exe
    C:\Acer\Empowering Technology\eDataSecurity\x86\eDSLoader.exe
    C:\Windows\System32\rundll32.exe
    C:\Windows\PLFSetI.exe
    C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
    C:\Users\esso\AppData\Local\Temp\RtkBtMnt.exe
    C:\Program Files\Launch Manager\LManager.exe
    C:\Program Files\Acer Arcade Deluxe\Play Movie\PMVService.exe
    C:\Program Files\Apoint2K\Apoint.exe
    C:\Acer\Empowering Technology\eAudio\eAudio.exe
    C:\Program Files\iTunes\iTunesHelper.exe
    C:\Program Files\AVG\AVG9\avgtray.exe
    C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
    C:\Program Files\Windows Sidebar\sidebar.exe
    C:\Windows\ehome\ehtray.exe
    C:\Program Files\Windows Live\Messenger\msnmsgr.exe
    C:\Program Files\Veoh Networks\VeohWebPlayer\veohwebplayer.exe
    C:\Program Files\Skype\Phone\Skype.exe
    C:\Program Files\Apoint2K\ApMsgFwd.exe
    C:\Program Files\Apoint2K\Apntex.exe
    C:\Windows\Speech\Common\sapisvr.exe
    C:\Windows\ehome\ehmsas.exe
    C:\Program Files\ICQ6.5\ICQ.exe
    C:\Program Files\Windows Media Player\wmpnscfg.exe
    C:\Program Files\Windows Sidebar\sidebar.exe
    C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
    C:\Acer\Empowering Technology\ENET\ENMTRAY.EXE
    C:\Acer\Empowering Technology\EPOWER\EPOWER_DMC.EXE
    C:\Acer\Empowering Technology\ACER.EMPOWERING.FRAMEWORK.SUPERVISOR.EXE
    C:\Acer\Empowering Technology\eRecovery\ERAGENT.EXE
    C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe
    C:\Program Files\Skype\Plugin Manager\skypePM.exe
    C:\Windows\Microsoft.NET\Framework\v2.0.50727\dw20.exe
    C:\Windows\system32\wuauclt.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
    C:\Windows\system32\SearchFilterHost.exe
    
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.shareazaweb.com/sidebar.html?src=ssb
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource=10&ctid=CT1392740
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://de.intl.acer.yahoo.com
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://fr.rd.yahoo.com/customize/ie/defaults/su/msgr9/*http://fr.search.yahoo.com
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://fr.rd.yahoo.com/customize/ie/defaults/sp/msgr9/*http://fr.search.yahoo.com
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://de.intl.acer.yahoo.com
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = 
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = 
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = www-cache.fh-worms.de:3128
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = 
    R3 - URLSearchHook: MyPlayCity Toolbar - {4724c5d8-dfa7-417a-a2f5-1eabfee9b4ac} - C:\Program Files\MyPlayCity\tbMyPl.dll
    O1 - Hosts: ::1 localhost
    O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
    O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
    O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll
    O2 - BHO: MyPlayCity Toolbar - {4724c5d8-dfa7-417a-a2f5-1eabfee9b4ac} - C:\Program Files\MyPlayCity\tbMyPl.dll
    O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
    O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
    O2 - BHO: Windows Live Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: UrlHelper Class - {CFC4F59B-A2DA-4e12-B337-52A4F871E10C} - C:\Program Files\Shareaza Applications\Shareaza MediaBar\ShareazaIEHelper.dll (file missing)
    O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll
    O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll
    O3 - Toolbar: MyPlayCity Toolbar - {4724c5d8-dfa7-417a-a2f5-1eabfee9b4ac} - C:\Program Files\MyPlayCity\tbMyPl.dll
    O3 - Toolbar: Shareaza MediaBar - {196C3A46-4758-433D-A600-802C804AF39C} - C:\Program Files\Shareaza Applications\Shareaza MediaBar\ShareazaMediaBar.dll (file missing)
    O3 - Toolbar: Veoh Web Player Video Finder - {0FBB9689-D3D7-4f7a-A2E2-585B10099BFC} - C:\Program Files\Veoh Networks\VeohWebPlayer\VeohIEToolbar.dll
    O3 - Toolbar: Veoh Video Compass - {52836EB0-631A-47B1-94A6-61F9D9112DAE} - C:\Program Files\Veoh Networks\Veoh Video Compass\SearchRecsPlugin.dll
    O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
    O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
    O4 - HKLM\..\Run: [ALaunch] C:\Acer\ALaunch\AlaunchClient.exe
    O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
    O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
    O4 - HKLM\..\Run: [PLFSetL] C:\Windows\PLFSetL.exe
    O4 - HKLM\..\Run: [PLFSetI] C:\Windows\PLFSetI.exe
    O4 - HKLM\..\Run: [IAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
    O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\LManager.exe
    O4 - HKLM\..\Run: [PlayMovie] "C:\Program Files\Acer Arcade Deluxe\Play Movie\PMVService.exe"
    O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
    O4 - HKLM\..\Run: [WarReg_PopUp] C:\Program Files\Acer\WR_PopUp\WarReg_PopUp.exe
    O4 - HKLM\..\Run: [Acer Tour Reminder] C:\Acer\AcerTour\Reminder.exe
    O4 - HKLM\..\Run: [eAudio] "C:\Acer\Empowering Technology\eAudio\eAudio.exe"
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "D:\Reader\Reader_sl.exe"
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
    O4 - HKLM\..\Run: [AVG9_TRAY] C:\PROGRA~1\AVG\AVG9\avgtray.exe
    O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
    O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
    O4 - HKLM\..\Run: [Skytel] Skytel.exe
    O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
    O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
    O4 - HKCU\..\Run: [Messenger (Yahoo!)] "C:\PROGRA~1\Yahoo!\MESSEN~1\YahooMessenger.exe" -quiet
    O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
    O4 - HKCU\..\Run: [VeohPlugin] "C:\Program Files\Veoh Networks\VeohWebPlayer\veohwebplayer.exe"
    O4 - HKCU\..\Run: [aqasumo] "c:\users\esso\appdata\local\aqasumo.exe" aqasumo
    O4 - HKCU\..\Run: [SmartVoip] "C:\Program Files\SmartVoip.com\SmartVoip\SmartVoip.exe" -nosplash -minimized
    O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
    O4 - HKCU\..\Run: [Speech Recognition] "C:\Windows\Speech\Common\sapisvr.exe" -SpeechUX -Startup
    O4 - HKCU\..\Run: [ICQ] "C:\Program Files\ICQ6.5\ICQ.exe" silent
    O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
    O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOKALER DIENST')
    O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOKALER DIENST')
    O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETZWERKDIENST')
    O4 - Startup: Orion.lnk = C:\Convesoft\Orion\Messenger.exe
    O4 - Global Startup: Empowering Technology Launcher.lnk = ?
    O4 - Global Startup: Logiciel Kodak EasyShare.lnk = C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
    O4 - Global Startup: VPN Client.lnk = ?
    O8 - Extra context menu item: Nach Microsoft E&xel exportieren - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
    O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
    O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
    O9 - Extra button: An OneNote senden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
    O9 - Extra 'Tools' menuitem: An OneNote s&enden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
    O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
    O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
    O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
    O13 - Gopher Prefix: 
    O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
    O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll
    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
    O20 - AppInit_DLLs: avgrsstx.dll
    O23 - Service: ALaunch Service (ALaunchService) - Unknown owner - C:\Acer\ALaunch\ALaunchSvc.exe
    O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    O23 - Service: AVG Free WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgwdsvc.exe
    O23 - Service: Bonjour-Dienst (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
    O23 - Service: Cisco Systems, Inc. VPN Service (CVPND) - Cisco Systems, Inc. - C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe
    O23 - Service: eDataSecurity Service - Egis Incorporated - C:\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe
    O23 - Service: eLock Service (eLockService) - Acer Inc. - C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe
    O23 - Service: eNet Service - Acer Inc. - C:\Acer\Empowering Technology\eNet\eNet Service.exe
    O23 - Service: eRecovery Service (eRecoveryService) - Acer Inc. - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe
    O23 - Service: eSettings Service (eSettingsService) - Unknown owner - C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe
    O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
    O23 - Service: iPod-Dienst (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
    O23 - Service: MobilityService - Unknown owner - C:\Acer\Mobility Center\MobilityService.exe
    O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
    O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
    O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
    O23 - Service: ePower Service (WMIService) - acer - C:\Acer\Empowering Technology\ePower\ePowerSvc.exe
    O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
    O23 - Service: Yahoo! Updater (YahooAUService) - Yahoo! Inc. - C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
    
    --
    End of file - 12915 bytes
    .

  2. #2
    Moderator (global) Team-Mitglied Benutzerbild von Petra
    Registriert seit
    03.05.2007
    Ort
    Nähe Düsseldorf
    Beiträge
    24.805

    AW: Computer programme hängen:keine Rückmeldung

    Willkommen im HijackThis-Supportforum tonykenzo09,

    zunächst bitte anklicken und aufmerksam durchlesen: Worauf muss ich während der Bereinigung achten?

    Anschließend die folgenden Punkte unbedingt in der vorgegebenen Reihenfolge abarbeiten.

    Berichte mir zu jedem Punkt, dass Du ihn erledigt hast.

    Stoppe und frage, wenn etwas nicht funktioniert.

    Poste Logfiles sofern angefordert und/oder antworte auf gestellte Fragen.

    Benutze ausschließlich Programme und Tools, die in der Anleitung angegeben sind.
    Installiere während unserer Bereinigung nichts Neues ohne Absprache.


    ===== Punkt 1 =====

    Systemdetails mit RSIT prüfen
    • Lade Random's System Information Tool (RSIT) von random/random herunter,
    • speichere es auf Deinem Desktop.
    • Schließe alle Fenster und Programme inkl. Browser.
    • Starte mit Doppelklick die RSIT.exe.
    • Klicke auf Continue, um die Nutzungsbedingungen zu akzeptieren.
    • Wenn Du HijackThis nicht installiert hast, wird RSIT das für Dich herunterladen und installieren.
    • In dem Fall bitte auch die Nutzungsbedingungen von Trend Micro für HJT akzeptieren I accept.
    • Wenn Deine Firewall fragt, bitte RSIT erlauben, ins Netz zu gehen.
    • Der Scan startet automatisch, RSIT checkt nun einige wichtige System-Bereiche und produziert Logfiles als Analyse-Grundlage.
    • Wenn der Scan beendet ist, werden zwei Logfiles erstellt und in Deinem Editor geöffnet.
    • Bitte poste den Inhalt von C:\rsit\log.txt und C:\rsit\info.txt (<= wird minimiert in der Taskleiste dargestellt) hier in den Thread.
    ===== Punkt 2 =====

    Dateiliste mit HJTscanlist.bat erstellen

    Falls Du WindowsXP Home hast, bitte zunächst tasklist.zip downloaden und nach C:\Windows\system32 entpacken, damit die HJTscanlist.bat eine Taskliste erstellen kann. Zur Erklärung: das Tool tasklist.exe ist nur in Windows Professional und Vista enthalten und muss bei Windows XP Home nachinstalliert werden. Unter Windows 2000 funktioniert das leider nicht.

    Da ein HJT-Logfile nur bedingt aussagekräftig ist, möchten wir den Inhalt einiger kritischer Verzeichnisse auf Deinem System ansehen. Dazu lade folgende Datei herunter HJTscanlist.zip. Entpacke die Datei auf Deinen Desktop. Auf dem Desktop befindet sich nun die Datei HJTscanlist.bat, diese doppelklicken, um sie zu starten. Wähle Dein Betriebssystem aus (bei Windows 2000 wähle XP). Bei Abfrage der Einstellung benutze bitte die Auswahl Nr. 1 (Scanlist). Nun wird die Dateiliste erstellt und in Deinem Editor geöffnet und als hjtscanlist.txt auf Deinem Desktop gespeichert. Poste mir den Inhalt der Dateiliste hier in den Thread. Bei diesem Log brauchst Du keine Code-Tags setzen, da sie im Log schon enthalten sind

    ===== Punkt 3 =====

    Wenn Dein Antiviren-Programm Malware gefunden hat, schreibe uns möglichst genau die Namen der Funde auf, und in welchem Pfad sie sich befinden/befanden. An die nötigen Informationen kommst Du über die Logs/Berichte bzw. den Quarantäne-Ordner Deines Antiviren-Programms.

    Berichte, welche Programme Du evtl. schon genutzt hast, um das Problem zu lösen und poste nach Möglichkeit die Logfiles.

    ===== Punkt 4 =====

    Kannst Du auf Deinem Computer alle Dateien und Datei-Endungen sehen? Falls nein, bitte diese Einstellungen in den Ordneroptionen vornehmen.

    ===== Punkt 5 =====

    Datei-Überprüfung

    Folgende Datei/en (siehe Codebox) bei VirusTotal online überprüfen lassen. Dafür musst Du jede Datei einzeln über den Button "Durchsuchen" und "Senden der Datei" nach VirusTotal hochladen und prüfen lassen. Wenn VirusTotal die Datei empfangen hat, wird sie diese mit mehreren Anti-Virus-Scannern prüfen und die Ergebnisse anzeigen. Sollte VirusTotal melden, dass die Datei bereits überpüft wurde, lasse sie trotzdem über den Button "Analysiere die Datei" erneut prüfen.

    Wenn das Ergebnis vorliegt, den kleinen Button "Filter" links oberhalb der Ergebnisse drücken, dann das Ergebnis (egal wie es aussieht und dabei auch die Zeilen mit Namen und Größe der Datei, MD5 und SHA1 kopieren) hier posten. Solltest Du die Datei/en nicht finden oder hochladen können, dann teile uns das ebenfalls mit. Solltest Du die Datei/en nicht finden, überprüfe, ob folgende Einstellungen richtig gesetzt sind.

    Code:
    c:\users\esso\appdata\local\aqasumo.exe

  3. #3
    Forenbenutzer
    Registriert seit
    13.01.2010
    Beiträge
    34
    schritt eins:
    log file war:
    Code:
    Logfile of random's system information tool 1.06 (written by random/random)
    Run by esso at 2010-01-13 15:48:09
    Microsoft® Windows Vista™ Home Premium  Service Pack 2
    System drive C: has 24 GB (17%) free of 147 GB
    Total RAM: 3069 MB (53% free)
    
    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 15:49:09, on 13.01.2010
    Platform: Windows Vista SP2 (WinNT 6.00.1906)
    MSIE: Internet Explorer v8.00 (8.00.6001.18865)
    Boot mode: Normal
    
    Running processes:
    C:\Windows\system32\taskeng.exe
    C:\Windows\system32\Dwm.exe
    C:\Windows\Explorer.EXE
    C:\Windows\RtHDVCpl.exe
    C:\Acer\Empowering Technology\eDataSecurity\x86\eDSLoader.exe
    C:\Windows\PLFSetI.exe
    C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
    C:\Users\esso\AppData\Local\Temp\RtkBtMnt.exe
    C:\Program Files\Launch Manager\LManager.exe
    C:\Program Files\Acer Arcade Deluxe\Play Movie\PMVService.exe
    C:\Program Files\Apoint2K\Apoint.exe
    C:\Acer\Empowering Technology\eAudio\eAudio.exe
    C:\Program Files\Apoint2K\ApMsgFwd.exe
    C:\Program Files\iTunes\iTunesHelper.exe
    C:\Program Files\AVG\AVG9\avgtray.exe
    C:\Program Files\Apoint2K\Apntex.exe
    C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
    C:\Program Files\Windows Sidebar\sidebar.exe
    C:\Windows\ehome\ehtray.exe
    C:\Program Files\Windows Live\Messenger\msnmsgr.exe
    C:\Windows\ehome\ehmsas.exe
    C:\Program Files\Veoh Networks\VeohWebPlayer\veohwebplayer.exe
    C:\Program Files\Skype\Phone\Skype.exe
    C:\Program Files\ICQ6.5\ICQ.exe
    C:\Program Files\Windows Media Player\wmpnscfg.exe
    C:\Program Files\Windows Sidebar\sidebar.exe
    C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
    C:\Acer\Empowering Technology\EPOWER\EPOWER_DMC.EXE
    C:\Acer\Empowering Technology\ACER.EMPOWERING.FRAMEWORK.SUPERVISOR.EXE
    C:\Acer\Empowering Technology\eRecovery\ERAGENT.EXE
    C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe
    C:\Program Files\Skype\Plugin Manager\skypePM.exe
    C:\Windows\system32\wuauclt.exe
    C:\Users\esso\Desktop\RSIT.exe
    C:\Program Files\Trend Micro\HijackThis\esso.exe
    
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.shareazaweb.com/sidebar.html?src=ssb
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource=10&ctid=CT1392740
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://de.intl.acer.yahoo.com
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://fr.rd.yahoo.com/customize/ie/defaults/su/msgr9/*http://fr.search.yahoo.com
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://fr.rd.yahoo.com/customize/ie/defaults/sp/msgr9/*http://fr.search.yahoo.com
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://de.intl.acer.yahoo.com
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = 
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = 
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = www-cache.fh-worms.de:3128
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = 
    R3 - URLSearchHook: MyPlayCity Toolbar - {4724c5d8-dfa7-417a-a2f5-1eabfee9b4ac} - C:\Program Files\MyPlayCity\tbMyPl.dll
    O1 - Hosts: ::1 localhost
    O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
    O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
    O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll
    O2 - BHO: MyPlayCity Toolbar - {4724c5d8-dfa7-417a-a2f5-1eabfee9b4ac} - C:\Program Files\MyPlayCity\tbMyPl.dll
    O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
    O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
    O2 - BHO: Windows Live Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: UrlHelper Class - {CFC4F59B-A2DA-4e12-B337-52A4F871E10C} - C:\Program Files\Shareaza Applications\Shareaza MediaBar\ShareazaIEHelper.dll (file missing)
    O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll
    O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll
    O3 - Toolbar: MyPlayCity Toolbar - {4724c5d8-dfa7-417a-a2f5-1eabfee9b4ac} - C:\Program Files\MyPlayCity\tbMyPl.dll
    O3 - Toolbar: Shareaza MediaBar - {196C3A46-4758-433D-A600-802C804AF39C} - C:\Program Files\Shareaza Applications\Shareaza MediaBar\ShareazaMediaBar.dll (file missing)
    O3 - Toolbar: Veoh Web Player Video Finder - {0FBB9689-D3D7-4f7a-A2E2-585B10099BFC} - C:\Program Files\Veoh Networks\VeohWebPlayer\VeohIEToolbar.dll
    O3 - Toolbar: Veoh Video Compass - {52836EB0-631A-47B1-94A6-61F9D9112DAE} - C:\Program Files\Veoh Networks\Veoh Video Compass\SearchRecsPlugin.dll
    O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
    O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
    O4 - HKLM\..\Run: [ALaunch] C:\Acer\ALaunch\AlaunchClient.exe
    O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
    O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
    O4 - HKLM\..\Run: [PLFSetL] C:\Windows\PLFSetL.exe
    O4 - HKLM\..\Run: [PLFSetI] C:\Windows\PLFSetI.exe
    O4 - HKLM\..\Run: [IAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
    O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\LManager.exe
    O4 - HKLM\..\Run: [PlayMovie] "C:\Program Files\Acer Arcade Deluxe\Play Movie\PMVService.exe"
    O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
    O4 - HKLM\..\Run: [WarReg_PopUp] C:\Program Files\Acer\WR_PopUp\WarReg_PopUp.exe
    O4 - HKLM\..\Run: [Acer Tour Reminder] C:\Acer\AcerTour\Reminder.exe
    O4 - HKLM\..\Run: [eAudio] "C:\Acer\Empowering Technology\eAudio\eAudio.exe"
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "D:\Reader\Reader_sl.exe"
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
    O4 - HKLM\..\Run: [AVG9_TRAY] C:\PROGRA~1\AVG\AVG9\avgtray.exe
    O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
    O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
    O4 - HKLM\..\Run: [Skytel] Skytel.exe
    O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
    O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
    O4 - HKCU\..\Run: [Messenger (Yahoo!)] "C:\PROGRA~1\Yahoo!\MESSEN~1\YahooMessenger.exe" -quiet
    O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
    O4 - HKCU\..\Run: [VeohPlugin] "C:\Program Files\Veoh Networks\VeohWebPlayer\veohwebplayer.exe"
    O4 - HKCU\..\Run: [aqasumo] "c:\users\esso\appdata\local\aqasumo.exe" aqasumo
    O4 - HKCU\..\Run: [SmartVoip] "C:\Program Files\SmartVoip.com\SmartVoip\SmartVoip.exe" -nosplash -minimized
    O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
    O4 - HKCU\..\Run: [Speech Recognition] "C:\Windows\Speech\Common\sapisvr.exe" -SpeechUX -Startup
    O4 - HKCU\..\Run: [ICQ] "C:\Program Files\ICQ6.5\ICQ.exe" silent
    O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
    O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOKALER DIENST')
    O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOKALER DIENST')
    O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETZWERKDIENST')
    O4 - Startup: Orion.lnk = C:\Convesoft\Orion\Messenger.exe
    O4 - Global Startup: Empowering Technology Launcher.lnk = ?
    O4 - Global Startup: Logiciel Kodak EasyShare.lnk = C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
    O4 - Global Startup: VPN Client.lnk = ?
    O8 - Extra context menu item: Nach Microsoft E&xel exportieren - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
    O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
    O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
    O9 - Extra button: An OneNote senden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
    O9 - Extra 'Tools' menuitem: An OneNote s&enden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
    O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
    O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
    O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
    O13 - Gopher Prefix: 
    O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
    O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll
    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
    O20 - AppInit_DLLs: avgrsstx.dll
    O23 - Service: ALaunch Service (ALaunchService) - Unknown owner - C:\Acer\ALaunch\ALaunchSvc.exe
    O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    O23 - Service: AVG Free WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgwdsvc.exe
    O23 - Service: Bonjour-Dienst (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
    O23 - Service: Cisco Systems, Inc. VPN Service (CVPND) - Cisco Systems, Inc. - C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe
    O23 - Service: eDataSecurity Service - Egis Incorporated - C:\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe
    O23 - Service: eLock Service (eLockService) - Acer Inc. - C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe
    O23 - Service: eNet Service - Acer Inc. - C:\Acer\Empowering Technology\eNet\eNet Service.exe
    O23 - Service: eRecovery Service (eRecoveryService) - Acer Inc. - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe
    O23 - Service: eSettings Service (eSettingsService) - Unknown owner - C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe
    O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
    O23 - Service: iPod-Dienst (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
    O23 - Service: MobilityService - Unknown owner - C:\Acer\Mobility Center\MobilityService.exe
    O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
    O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
    O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
    O23 - Service: ePower Service (WMIService) - acer - C:\Acer\Empowering Technology\ePower\ePowerSvc.exe
    O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
    O23 - Service: Yahoo! Updater (YahooAUService) - Yahoo! Inc. - C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
    
    --
    End of file - 12677 bytes
    
    ======Scheduled tasks folder======
    
    C:\Windows\tasks\EasyShare Registration Task.job
    C:\Windows\tasks\User_Feed_Synchronization-{91F5B642-A907-4121-9A85-9C15FFF97E0D}.job
    
    ======Registry dump======
    
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}]
    &Yahoo! Toolbar Helper - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll [2009-09-20 1172280]
    
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
    Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]
    
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22BF413B-C6D2-4d91-82A9-A0F997BA588C}]
    Skype add-on (mastermind) - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2009-06-02 1082880]
    
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
    AVG Safe Search - C:\Program Files\AVG\AVG9\avgssie.dll [2009-12-13 1484056]
    
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4724c5d8-dfa7-417a-a2f5-1eabfee9b4ac}]
    MyPlayCity Toolbar - C:\Program Files\MyPlayCity\tbMyPl.dll [2008-11-23 1784856]
    
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]
    
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
    Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2007-08-24 2212224]
    
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
    Windows Live Anmelde-Hilfsprogramm - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440]
    
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CFC4F59B-A2DA-4e12-B337-52A4F871E10C}]
    UrlHelper Class - C:\Program Files\Shareaza Applications\Shareaza MediaBar\ShareazaIEHelper.dll []
    
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FDAD4DA1-61A2-4FD8-9C17-86F7AC245081}]
    SingleInstance Class - C:\Program Files\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll [2009-09-20 158008]
    
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
    {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - Acer eDataSecurity Management - C:\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll [2008-03-05 142896]
    {4724c5d8-dfa7-417a-a2f5-1eabfee9b4ac} - MyPlayCity Toolbar - C:\Program Files\MyPlayCity\tbMyPl.dll [2008-11-23 1784856]
    {196C3A46-4758-433D-A600-802C804AF39C} - Shareaza MediaBar - C:\Program Files\Shareaza Applications\Shareaza MediaBar\ShareazaMediaBar.dll []
    {0FBB9689-D3D7-4f7a-A2E2-585B10099BFC} - Veoh Web Player Video Finder - C:\Program Files\Veoh Networks\VeohWebPlayer\VeohIEToolbar.dll [2009-02-24 429816]
    {52836EB0-631A-47B1-94A6-61F9D9112DAE} - Veoh Video Compass - C:\Program Files\Veoh Networks\Veoh Video Compass\SearchRecsPlugin.dll [2009-02-14 404216]
    {EF99BD32-C1FB-11D2-892F-0090271D4F88} - Yahoo! Toolbar - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll [2009-09-20 1172280]
    
    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    "Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-21 1008184]
    "ALaunch"=C:\Acer\ALaunch\AlaunchClient.exe []
    "RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2007-09-03 4702208]
    "eDataSecurity Loader"=C:\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe [2008-03-05 525360]
    "NvCplDaemon"=C:\Windows\system32\NvCpl.dll [2008-04-03 13535776]
    "NvMediaCenter"=C:\Windows\system32\NvMcTray.dll [2008-04-03 92704]
    "PLFSetL"=C:\Windows\PLFSetL.exe [2007-07-05 94208]
    "PLFSetI"=C:\Windows\PLFSetI.exe [2007-10-23 200704]
    "IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe [2007-07-12 178712]
    "LManager"=C:\PROGRA~1\LAUNCH~1\LManager.exe [2008-01-04 768520]
    "PlayMovie"=C:\Program Files\Acer Arcade Deluxe\Play Movie\PMVService.exe [2008-01-22 200704]
    "Apoint"=C:\Program Files\Apoint2K\Apoint.exe [2007-07-21 159744]
    "eRecoveryService"= []
    "WarReg_PopUp"=C:\Program Files\Acer\WR_PopUp\WarReg_PopUp.exe [2008-01-29 303104]
    "Acer Tour Reminder"=C:\Acer\AcerTour\Reminder.exe []
    "eAudio"=C:\Acer\Empowering Technology\eAudio\eAudio.exe [2007-10-10 1286144]
    "QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2009-01-05 413696]
    "Adobe Reader Speed Launcher"=D:\Reader\Reader_sl.exe [2009-10-03 35696]
    "iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2009-03-12 342312]
    "AVG9_TRAY"=C:\PROGRA~1\AVG\AVG9\avgtray.exe [2010-01-02 2033432]
    "Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2009-09-04 935288]
    "GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2007-08-24 33648]
    "Skytel"=C:\Windows\Skytel.exe [2007-08-03 1826816]
    
    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    "Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-04-11 1233920]
    "ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-21 125952]
    "Messenger (Yahoo!)"=C:\PROGRA~1\Yahoo!\MESSEN~1\YahooMessenger.exe [2009-11-10 5244216]
    "MsnMsgr"=C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe [2009-07-26 3883856]
    "VeohPlugin"=C:\Program Files\Veoh Networks\VeohWebPlayer\veohwebplayer.exe [2009-02-24 3558136]
    "aqasumo"=c:\users\esso\appdata\local\aqasumo.exe aqasumo []
    "SmartVoip"=C:\Program Files\SmartVoip.com\SmartVoip\SmartVoip.exe -nosplash -minimized []
    "Skype"=C:\Program Files\Skype\Phone\Skype.exe [2009-06-02 24264488]
    "Speech Recognition"=C:\Windows\Speech\Common\sapisvr.exe [2008-01-21 49664]
    "ICQ"=C:\Program Files\ICQ6.5\ICQ.exe [2009-11-16 172792]
    "WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-21 202240]
    
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
    Empowering Technology Launcher.lnk - C:\Acer\Empowering Technology\eAPLauncher.exe
    Logiciel Kodak EasyShare.lnk - C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
    VPN Client.lnk - C:\Windows\Installer\{CCBAA1F7-E5E1-48B2-9ED9-A79C6A37CE78}\Icon3E5562ED7.ico
    
    C:\Users\esso\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
    Orion.lnk - C:\Convesoft\Orion\Messenger.exe
    
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
    "AppInit_DLLS"="avgrsstx.dll"
    
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
    "{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2007-08-24 2212224]
    
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
    
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
    
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
    
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
    
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
    
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
    
    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
    "dontdisplaylastusername"=0
    "legalnoticecaption"=
    "legalnoticetext"=
    "shutdownwithoutlogon"=1
    "undockwithoutlogon"=1
    "EnableUIADesktopToggle"=0
    
    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
    "BindDirectlyToPropertySetStorage"=
    
    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
    "C:\Acer\Empowering Technology\eDataSecurity\x86\eDSfsu.exe"="C:\Acer\Empowering Technology\eDataSecurity\x86\eDSfsu.exe:*:Enabled:eDSfsu"
    "C:\Acer\Empowering Technology\eDataSecurity\x86\encryption.exe"="C:\Acer\Empowering Technology\eDataSecurity\x86\encryption.exe:*:Enabled:encryption"
    "C:\Acer\Empowering Technology\eDataSecurity\x86\decryption.exe"="C:\Acer\Empowering Technology\eDataSecurity\x86\decryption.exe:*:Enabled:decryption"
    "C:\Acer\Empowering Technology\eDataSecurity\x86\eDSMgr.exe"="C:\Acer\Empowering Technology\eDataSecurity\x86\eDSMgr.exe:*:Enabled:eDSMgr"
    "C:\Acer\Empowering Technology\eDataSecurity\x86\eDStbmngr.exe"="C:\Acer\Empowering Technology\eDataSecurity\x86\eDStbmngr.exe:*:Enabled:eDStbmngr"
    "C:\Acer\Empowering Technology\eDataSecurity\x64\eDSfsu.exe"="C:\Acer\Empowering Technology\eDataSecurity\x64\eDSfsu.exe:*:Enabled:eDSfsu"
    "C:\Acer\Empowering Technology\eDataSecurity\x64\encryption.exe"="C:\Acer\Empowering Technology\eDataSecurity\x64\encryption.exe:*:Enabled:encryption"
    "C:\Acer\Empowering Technology\eDataSecurity\x64\decryption.exe"="C:\Acer\Empowering Technology\eDataSecurity\x64\decryption.exe:*:Enabled:decryption"
    "C:\Acer\Empowering Technology\eDataSecurity\x64\eDSMgr.exe"="C:\Acer\Empowering Technology\eDataSecurity\x64\eDSMgr.exe:*:Enabled:eDSMgr"
    "C:\Acer\Empowering Technology\eDataSecurity\x64\eDStbmngr.exe"="C:\Acer\Empowering Technology\eDataSecurity\x64\eDStbmngr.exe:*:Enabled:eDStbmngr"
    
    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
    
    ======File associations======
    
    .js - edit - C:\Windows\System32\Notepad.exe %1
    .js - open - C:\Windows\System32\WScript.exe "%1" %*
    
    ======List of files/folders created in the last 3 months======
    
    2010-01-13 15:48:09 ----D---- C:\rsit
    2010-01-13 06:15:12 ----D---- C:\Program Files\Trend Micro
    2010-01-05 13:28:21 ----D---- C:\Program Files\Microsoft Office Outlook Connector
    2010-01-05 13:26:15 ----A---- C:\Windows\system32\d3dx9_32.dll
    2010-01-05 13:24:26 ----D---- C:\Program Files\Windows Live SkyDrive
    2010-01-02 14:20:09 ----SHD---- C:\found.013
    2010-01-02 09:58:28 ----SHD---- C:\found.012
    2010-01-02 01:20:18 ----D---- C:\Program Files\Microsoft Silverlight
    2010-01-02 01:18:28 ----D---- C:\Program Files\Microsoft Sync Framework
    2010-01-02 01:13:43 ----D---- C:\Program Files\Microsoft
    2010-01-02 01:06:04 ----D---- C:\Program Files\Common Files\Windows Live
    2009-12-30 14:29:41 ----SHD---- C:\found.011
    2009-12-28 16:27:41 ----SHD---- C:\found.010
    2009-12-28 06:34:43 ----SHD---- C:\found.009
    2009-12-28 05:55:54 ----D---- C:\Windows\pss
    2009-12-28 05:03:27 ----SHD---- C:\found.008
    2009-12-24 19:10:05 ----D---- C:\Program Files\Windows Portable Devices
    2009-12-23 15:50:53 ----A---- C:\Windows\system32\UIRibbonRes.dll
    2009-12-23 15:50:53 ----A---- C:\Windows\system32\UIRibbon.dll
    2009-12-23 15:50:53 ----A---- C:\Windows\system32\UIAnimation.dll
    2009-12-23 15:50:14 ----A---- C:\Windows\system32\WMPhoto.dll
    2009-12-23 15:50:14 ----A---- C:\Windows\system32\cdd.dll
    2009-12-23 15:50:13 ----A---- C:\Windows\system32\XpsRasterService.dll
    2009-12-23 15:50:13 ----A---- C:\Windows\system32\XpsGdiConverter.dll
    2009-12-23 15:50:13 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
    2009-12-23 15:50:13 ----A---- C:\Windows\system32\d3d10warp.dll
    2009-12-23 15:50:12 ----A---- C:\Windows\system32\xpsservices.dll
    2009-12-23 15:50:12 ----A---- C:\Windows\system32\XpsPrint.dll
    2009-12-23 15:50:12 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
    2009-12-23 15:50:12 ----A---- C:\Windows\system32\WindowsCodecs.dll
    2009-12-23 15:50:12 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
    2009-12-23 15:50:12 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
    2009-12-23 15:50:12 ----A---- C:\Windows\system32\OpcServices.dll
    2009-12-23 15:50:12 ----A---- C:\Windows\system32\FntCache.dll
    2009-12-23 15:50:12 ----A---- C:\Windows\system32\dxgi.dll
    2009-12-23 15:50:12 ----A---- C:\Windows\system32\dxdiagn.dll
    2009-12-23 15:50:12 ----A---- C:\Windows\system32\dxdiag.exe
    2009-12-23 15:50:12 ----A---- C:\Windows\system32\DWrite.dll
    2009-12-23 15:50:12 ----A---- C:\Windows\system32\d3d11.dll
    2009-12-23 15:50:12 ----A---- C:\Windows\system32\d3d10level9.dll
    2009-12-23 15:50:12 ----A---- C:\Windows\system32\d3d10core.dll
    2009-12-23 15:50:12 ----A---- C:\Windows\system32\d3d10_1core.dll
    2009-12-23 15:50:12 ----A---- C:\Windows\system32\d3d10_1.dll
    2009-12-23 15:50:12 ----A---- C:\Windows\system32\d2d1.dll
    2009-12-23 15:50:11 ----A---- C:\Windows\system32\d3d10.dll
    2009-12-23 15:49:35 ----A---- C:\Windows\system32\WPDShextAutoplay.exe
    2009-12-23 15:49:35 ----A---- C:\Windows\system32\wpdbusenum.dll
    2009-12-23 15:49:35 ----A---- C:\Windows\system32\BthMtpContextHandler.dll
    2009-12-23 15:49:26 ----A---- C:\Windows\system32\PortableDeviceConnectApi.dll
    2009-12-23 15:49:23 ----A---- C:\Windows\system32\WPDShServiceObj.dll
    2009-12-23 15:49:23 ----A---- C:\Windows\system32\wpdshext.dll
    2009-12-23 15:49:23 ----A---- C:\Windows\system32\WpdMtpUS.dll
    2009-12-23 15:49:23 ----A---- C:\Windows\system32\WpdMtp.dll
    2009-12-23 15:49:23 ----A---- C:\Windows\system32\WpdConns.dll
    2009-12-23 15:49:23 ----A---- C:\Windows\system32\wpd_ci.dll
    2009-12-23 15:49:23 ----A---- C:\Windows\system32\PortableDeviceTypes.dll
    2009-12-23 15:49:23 ----A---- C:\Windows\system32\PortableDeviceApi.dll
    2009-12-23 15:49:22 ----A---- C:\Windows\system32\WPDSp.dll
    2009-12-23 15:49:22 ----A---- C:\Windows\system32\PortableDeviceWMDRM.dll
    2009-12-23 15:49:22 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll
    2009-12-23 15:47:53 ----A---- C:\Windows\system32\UIAutomationCore.dll
    2009-12-23 15:47:53 ----A---- C:\Windows\system32\oleaccrc.dll
    2009-12-23 15:47:53 ----A---- C:\Windows\system32\oleacc.dll
    2009-12-18 22:22:59 ----D---- C:\Users\esso\AppData\Roaming\Opera
    2009-12-18 22:22:16 ----D---- C:\Program Files\Opera
    2009-12-17 08:17:16 ----SHD---- C:\found.007
    2009-12-16 11:34:36 ----D---- C:\Windows\system32\eu-ES
    2009-12-16 11:34:36 ----D---- C:\Windows\system32\ca-ES
    2009-12-16 11:34:32 ----D---- C:\Windows\system32\vi-VN
    2009-12-16 10:38:29 ----SHD---- C:\found.006
    2009-12-15 22:52:13 ----SHD---- C:\found.005
    2009-12-15 12:29:15 ----D---- C:\Windows\system32\EventProviders
    2009-12-15 12:29:13 ----D---- C:\9ee3abbed71879af59910580498c16
    2009-12-14 15:16:12 ----A---- C:\Windows\system32\winhttp.dll
    2009-12-14 15:16:12 ----A---- C:\Windows\system32\jscript.dll
    2009-12-13 14:35:43 ----A---- C:\Windows\system32\nshhttp.dll
    2009-12-13 14:35:42 ----A---- C:\Windows\system32\httpapi.dll
    2009-12-13 14:26:26 ----A---- C:\Windows\system32\occache.dll
    2009-12-13 14:26:25 ----A---- C:\Windows\system32\msfeeds.dll
    2009-12-13 14:26:25 ----A---- C:\Windows\system32\jsproxy.dll
    2009-12-13 14:26:25 ----A---- C:\Windows\system32\iepeers.dll
    2009-12-13 14:26:24 ----A---- C:\Windows\system32\msfeedsbs.dll
    2009-12-13 14:26:24 ----A---- C:\Windows\system32\ieui.dll
    2009-12-13 14:26:23 ----A---- C:\Windows\system32\iesetup.dll
    2009-12-13 14:26:22 ----A---- C:\Windows\system32\wininet.dll
    2009-12-13 14:26:22 ----A---- C:\Windows\system32\msfeedssync.exe
    2009-12-13 14:26:22 ----A---- C:\Windows\system32\iernonce.dll
    2009-12-13 14:26:22 ----A---- C:\Windows\system32\ie4uinit.exe
    2009-12-13 14:26:21 ----A---- C:\Windows\system32\urlmon.dll
    2009-12-13 14:26:21 ----A---- C:\Windows\system32\ieUnatt.exe
    2009-12-13 14:26:21 ----A---- C:\Windows\system32\iesysprep.dll
    2009-12-13 14:26:21 ----A---- C:\Windows\system32\iertutil.dll
    2009-12-13 14:26:21 ----A---- C:\Windows\system32\iedkcs32.dll
    2009-12-13 14:26:19 ----A---- C:\Windows\system32\ieframe.dll
    2009-12-13 14:26:18 ----A---- C:\Windows\system32\mshtml.dll
    2009-12-13 14:23:40 ----A---- C:\Windows\system32\mshtmled.dll
    2009-12-13 14:23:39 ----A---- C:\Windows\system32\mshtmler.dll
    2009-12-13 14:23:39 ----A---- C:\Windows\system32\icardie.dll
    2009-12-13 14:23:39 ----A---- C:\Windows\system32\admparse.dll
    2009-12-13 14:23:37 ----A---- C:\Windows\system32\msls31.dll
    2009-12-13 14:23:37 ----A---- C:\Windows\system32\ieakeng.dll
    2009-12-13 14:23:37 ----A---- C:\Windows\system32\corpol.dll
    2009-12-13 14:23:36 ----A---- C:\Windows\system32\imgutil.dll
    2009-12-13 14:23:36 ----A---- C:\Windows\system32\dxtrans.dll
    2009-12-13 14:23:36 ----A---- C:\Windows\system32\dxtmsft.dll
    2009-12-13 14:23:35 ----A---- C:\Windows\system32\msrating.dll
    2009-12-13 14:23:35 ----A---- C:\Windows\system32\licmgr10.dll
    2009-12-13 14:23:35 ----A---- C:\Windows\system32\inseng.dll
    2009-12-13 14:23:35 ----A---- C:\Windows\system32\ieaksie.dll
    2009-12-13 14:23:34 ----A---- C:\Windows\system32\WinFXDocObj.exe
    2009-12-13 14:23:34 ----A---- C:\Windows\system32\wextract.exe
    2009-12-13 14:23:34 ----A---- C:\Windows\system32\webcheck.dll
    2009-12-13 14:23:34 ----A---- C:\Windows\system32\mstime.dll
    2009-12-13 14:23:34 ----A---- C:\Windows\system32\ieakui.dll
    2009-12-13 14:23:33 ----A---- C:\Windows\system32\pngfilt.dll
    2009-12-13 14:23:33 ----A---- C:\Windows\system32\advpack.dll
    2009-12-13 14:23:32 ----A---- C:\Windows\system32\vbscript.dll
    2009-12-13 14:23:32 ----A---- C:\Windows\system32\ieapfltr.dll
    2009-12-13 14:23:31 ----A---- C:\Windows\system32\url.dll
    2009-12-13 14:23:30 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
    2009-12-13 14:23:30 ----A---- C:\Windows\system32\SetDepNx.exe
    2009-12-13 14:23:30 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
    2009-12-13 14:23:30 ----A---- C:\Windows\system32\PDMSetup.exe
    2009-12-13 14:23:30 ----A---- C:\Windows\system32\mshta.exe
    2009-12-13 14:23:30 ----A---- C:\Windows\system32\iexpress.exe
    2009-12-13 14:22:12 ----A---- C:\Windows\system32\schannel.dll
    2009-12-13 14:22:12 ----A---- C:\Windows\system32\kerberos.dll
    2009-12-13 13:25:09 ----SHD---- C:\found.004
    2009-12-12 14:54:51 ----A---- C:\Windows\system32\rastls.dll
    2009-12-11 19:10:13 ----D---- C:\ProgramData\Yahoo! Companion
    2009-12-07 01:57:00 ----D---- C:\Program Files\Microsoft Visual Studio
    2009-12-07 01:56:59 ----D---- C:\Program Files\Common Files\DESIGNER
    2009-12-07 01:52:28 ----D---- C:\Program Files\Microsoft.NET
    2009-12-03 03:00:54 ----D---- C:\Program Files\Microsoft Office
    2009-11-29 10:58:39 ----SHD---- C:\found.003
    2009-11-28 03:01:41 ----D---- C:\Windows\CheckSur
    2009-11-26 14:21:33 ----D---- C:\Program Files\SAP
    2009-11-26 08:44:15 ----A---- C:\Windows\system32\icu_license.txt
    2009-11-26 08:35:06 ----RA---- C:\Windows\saproute.ini
    2009-11-26 08:35:06 ----A---- C:\Windows\saplogon.ini
    2009-11-26 06:01:56 ----N---- C:\Windows\system32\MpSigStub.exe
    2009-11-25 15:49:59 ----A---- C:\Windows\system32\msxml6.dll
    2009-11-25 15:49:58 ----A---- C:\Windows\system32\msxml3.dll
    2009-11-25 12:40:52 ----A---- C:\Windows\system32\tzres.dll
    2009-11-25 00:59:25 ----D---- C:\Program Files\Atmosphere Lite
    2009-11-25 00:52:44 ----HD---- C:\$AVG
    2009-11-25 00:52:42 ----A---- C:\Windows\system32\avgrsstx.dll
    2009-11-25 00:52:23 ----D---- C:\ProgramData\avg9
    2009-11-25 00:52:23 ----D---- C:\Program Files\AVG
    2009-11-24 19:51:23 ----D---- C:\Users\esso\AppData\Roaming\live-player
    2009-11-24 19:16:56 ----D---- C:\Program Files\TVAnts
    2009-11-23 14:47:53 ----D---- C:\Windows\INI-Dateien
    2009-11-22 23:19:24 ----A---- C:\Windows\system32\h5tool32.dll
    2009-11-22 23:19:24 ----A---- C:\Windows\system32\h5rtf32.dll
    2009-11-22 23:19:24 ----A---- C:\Windows\system32\h5menu32.dll
    2009-11-22 23:19:24 ----A---- C:\Windows\system32\h5krnl32.dll
    2009-11-22 23:19:24 ----A---- C:\Windows\system32\h5icon32.dll
    2009-11-22 23:19:24 ----A---- C:\Windows\system32\h5dlg32.dll
    2009-11-22 23:19:20 ----A---- C:\Windows\system32\SAPbtmp.dll
    2009-11-22 23:19:19 ----A---- C:\Windows\system32\vtssm32.dll
    2009-11-22 23:19:19 ----A---- C:\Windows\system32\vtssdl32.dll
    2009-11-22 23:19:19 ----A---- C:\Windows\system32\mfcans32.dll
    2009-11-22 23:18:55 ----A---- C:\Windows\system32\msstkprp.dll
    2009-11-22 23:18:49 ----A---- C:\Windows\system32\tlbinf32.dll
    2009-11-22 23:18:48 ----A---- C:\Windows\system32\msvbvm50.dll
    2009-11-20 16:24:28 ----D---- C:\Program Files\Common Files\ESRI
    2009-11-20 16:24:27 ----A---- C:\Windows\system32\wdba.dll
    2009-11-20 16:17:01 ----A---- C:\Windows\system32\libsapu16vc80.dll
    2009-11-20 16:17:01 ----A---- C:\Windows\system32\librfc32u.dll
    2009-11-20 16:17:01 ----A---- C:\Windows\system32\icuuc34.dll
    2009-11-20 16:17:01 ----A---- C:\Windows\system32\icuin34.dll
    2009-11-20 16:17:01 ----A---- C:\Windows\system32\icudt34.dll
    2009-11-20 15:35:22 ----A---- C:\Windows\system32\librfc32.dll
    2009-11-13 10:24:01 ----A---- C:\Windows\system32\NlsLexicons0007.dll
    2009-11-13 10:23:58 ----A---- C:\Windows\system32\SLsvc.exe
    2009-11-13 10:23:58 ----A---- C:\Windows\system32\SLCExt.dll
    2009-11-13 10:23:56 ----A---- C:\Windows\system32\FunctionDiscoveryFolder.dll
    2009-11-13 10:23:56 ----A---- C:\Windows\system32\DevicePairingWizard.exe
    2009-11-13 10:23:55 ----A---- C:\Windows\system32\NlsLexicons0009.dll
    2009-11-13 10:23:53 ----A---- C:\Windows\system32\mssrch.dll
    2009-11-13 10:23:51 ----A---- C:\Windows\system32\tquery.dll
    2009-11-13 10:23:50 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
    2009-11-13 10:23:49 ----A---- C:\Windows\system32\scavenge.dll
    2009-11-13 10:23:49 ----A---- C:\Windows\system32\RMActivate_isv.exe
    2009-11-13 10:23:49 ----A---- C:\Windows\system32\RMActivate.exe
    2009-11-13 10:23:48 ----A---- C:\Windows\system32\msi.dll
    2009-11-13 10:23:47 ----A---- C:\Windows\system32\imapi2fs.dll
    2009-11-13 10:23:46 ----A---- C:\Windows\system32\WscEapPr.dll
    2009-11-13 10:23:46 ----A---- C:\Windows\system32\wcnwiz2.dll
    2009-11-13 10:23:46 ----A---- C:\Windows\system32\sysmain.dll
    2009-11-13 10:23:46 ----A---- C:\Windows\system32\secproc_isv.dll
    2009-11-13 10:23:45 ----A---- C:\Windows\system32\icardagt.exe
    2009-11-13 10:23:44 ----A---- C:\Windows\system32\EhStorShell.dll
    2009-11-13 10:23:44 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
    2009-11-13 10:23:42 ----A---- C:\Windows\system32\spreview.exe
    2009-11-13 10:23:42 ----A---- C:\Windows\system32\spinstall.exe
    2009-11-13 10:23:42 ----A---- C:\Windows\system32\drmv2clt.dll
    2009-11-13 10:23:41 ----A---- C:\Windows\system32\spwizui.dll
    2009-11-13 10:23:41 ----A---- C:\Windows\system32\shell32.dll
    2009-11-13 10:23:41 ----A---- C:\Windows\system32\secproc.dll
    2009-11-13 10:23:41 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
    2009-11-13 10:23:40 ----A---- C:\Windows\system32\SearchIndexer.exe
    2009-11-13 10:23:40 ----A---- C:\Windows\system32\p2psvc.dll
    2009-11-13 10:23:39 ----A---- C:\Windows\system32\mssvp.dll
    2009-11-13 10:23:39 ----A---- C:\Windows\system32\mscoree.dll
    2009-11-13 10:23:38 ----A---- C:\Windows\system32\mssphtb.dll
    2009-11-13 10:23:38 ----A---- C:\Windows\system32\mssph.dll
    2009-11-13 10:23:38 ----A---- C:\Windows\system32\MSMPEG2VDEC.DLL
    2009-11-13 10:23:38 ----A---- C:\Windows\system32\imapi2.dll
    2009-11-13 10:23:37 ----A---- C:\Windows\system32\sdohlp.dll
    2009-11-13 10:23:37 ----A---- C:\Windows\system32\esent.dll
    2009-11-13 10:23:36 ----A---- C:\Windows\system32\sperror.dll
    2009-11-13 10:23:36 ----A---- C:\Windows\system32\RMActivate_ssp.exe
    2009-11-13 10:23:36 ----A---- C:\Windows\system32\korwbrkr.dll
    2009-11-13 10:23:36 ----A---- C:\Windows\system32\IMJP10K.DLL
    2009-11-13 10:23:36 ----A---- C:\Windows\system32\DevicePairing.dll
    2009-11-13 10:23:35 ----A---- C:\Windows\system32\wevtsvc.dll
    2009-11-13 10:23:35 ----A---- C:\Windows\system32\SLC.dll
    2009-11-13 10:23:35 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
    2009-11-13 10:23:35 ----A---- C:\Windows\system32\PresentationHostProxy.dll
    2009-11-13 10:23:35 ----A---- C:\Windows\system32\msshsq.dll
    2009-11-13 10:23:35 ----A---- C:\Windows\system32\IasMigReader.exe
    2009-11-13 10:23:33 ----A---- C:\Windows\system32\msjet40.dll
    2009-11-13 10:23:33 ----A---- C:\Windows\system32\MPSSVC.dll
    2009-11-13 10:23:32 ----A---- C:\Windows\system32\Query.dll
    2009-11-13 10:23:32 ----A---- C:\Windows\system32\qmgr.dll
    2009-11-13 10:23:32 ----A---- C:\Windows\system32\msexch40.dll
    2009-11-13 10:23:31 ----A---- C:\Windows\system32\srchadmin.dll
    2009-11-13 10:23:31 ----A---- C:\Windows\system32\P2PGraph.dll
    2009-11-13 10:23:31 ----A---- C:\Windows\system32\ole32.dll
    2009-11-13 10:23:31 ----A---- C:\Windows\system32\ntdll.dll
    2009-11-13 10:23:31 ----A---- C:\Windows\system32\diagperf.dll
    2009-11-13 10:23:30 ----A---- C:\Windows\system32\winload.exe
    2009-11-13 10:23:30 ----A---- C:\Windows\system32\uDWM.dll
    2009-11-13 10:23:30 ----A---- C:\Windows\system32\mmc.exe
    2009-11-13 10:23:30 ----A---- C:\Windows\system32\mblctr.exe
    2009-11-13 10:23:30 ----A---- C:\Windows\system32\EncDec.dll
    2009-11-13 10:23:30 ----A---- C:\Windows\system32\dfsr.exe
    2009-11-13 10:23:29 ----A---- C:\Windows\system32\riched20.dll
    2009-11-13 10:23:29 ----A---- C:\Windows\system32\RacEngn.dll
    2009-11-13 10:23:29 ----A---- C:\Windows\system32\IasMigPlugin.dll
    2009-11-13 10:23:29 ----A---- C:\Windows\system32\fdBth.dll
    2009-11-13 10:23:28 ----A---- C:\Windows\system32\spoolss.dll
    2009-11-13 10:23:28 ----A---- C:\Windows\system32\SearchProtocolHost.exe
    2009-11-13 10:23:28 ----A---- C:\Windows\system32\SearchFilterHost.exe
    2009-11-13 10:23:28 ----A---- C:\Windows\system32\milcore.dll
    2009-11-13 10:23:28 ----A---- C:\Windows\system32\kernel32.dll
    2009-11-13 10:23:28 ----A---- C:\Windows\system32\EhStorAPI.dll
    2009-11-13 10:23:28 ----A---- C:\Windows\system32\CertEnroll.dll
    2009-11-13 10:23:27 ----A---- C:\Windows\system32\schedsvc.dll
    2009-11-13 10:23:27 ----A---- C:\Windows\system32\NaturalLanguage6.dll
    2009-11-13 10:23:26 ----A---- C:\Windows\system32\msvcp60.dll
    2009-11-13 10:23:26 ----A---- C:\Windows\system32\msjtes40.dll
    2009-11-13 10:23:26 ----A---- C:\Windows\system32\infocardapi.dll
    2009-11-13 10:23:26 ----A---- C:\Windows\system32\gpedit.dll
    2009-11-13 10:23:26 ----A---- C:\Windows\system32\AuxiliaryDisplayDriverLib.dll
    2009-11-13 10:23:25 ----A---- C:\Windows\system32\WinSAT.exe
    2009-11-13 10:23:25 ----A---- C:\Windows\system32\PresentationSettings.exe
    2009-11-13 10:23:25 ----A---- C:\Windows\system32\es.dll
    2009-11-13 10:23:24 ----A---- C:\Windows\system32\mstext40.dll
    2009-11-13 10:23:24 ----A---- C:\Windows\system32\Magnify.exe
    2009-11-13 10:23:24 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
    2009-11-13 10:23:24 ----A---- C:\Windows\system32\advapi32.dll
    2009-11-13 10:23:23 ----A---- C:\Windows\system32\WebClnt.dll
    2009-11-13 10:23:23 ----A---- C:\Windows\system32\slwmi.dll
    2009-11-13 10:23:23 ----A---- C:\Windows\system32\msxbde40.dll
    2009-11-13 10:23:23 ----A---- C:\Windows\system32\msexcl40.dll
    2009-11-13 10:23:23 ----A---- C:\Windows\system32\comsvcs.dll
    2009-11-13 10:23:22 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeCPL.dll
    2009-11-13 10:23:22 ----A---- C:\Windows\system32\vssapi.dll
    2009-11-13 10:23:22 ----A---- C:\Windows\system32\authui.dll
    2009-11-13 10:23:21 ----A---- C:\Windows\system32\PresentationHost.exe
    2009-11-13 10:23:21 ----A---- C:\Windows\system32\newdev.dll
    2009-11-13 10:23:21 ----A---- C:\Windows\system32\NetProjW.dll
    2009-11-13 10:23:21 ----A---- C:\Windows\system32\msrepl40.dll
    2009-11-13 10:23:20 ----A---- C:\Windows\system32\rpcss.dll
    2009-11-13 10:23:20 ----A---- C:\Windows\system32\propsys.dll
    2009-11-13 10:23:20 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
    2009-11-13 10:23:20 ----A---- C:\Windows\system32\iasrecst.dll
    2009-11-13 10:23:20 ----A---- C:\Windows\system32\gpsvc.dll
    2009-11-13 10:23:20 ----A---- C:\Windows\system32\eudcedit.exe
    2009-11-13 10:23:20 ----A---- C:\Windows\system32\crypt32.dll
    2009-11-13 10:23:20 ----A---- C:\Windows\explorer.exe
    2009-11-13 10:23:19 ----A---- C:\Windows\system32\setupapi.dll
    2009-11-13 10:23:19 ----A---- C:\Windows\system32\mspbde40.dll
    2009-11-13 10:23:19 ----A---- C:\Windows\system32\d3d9.dll
    2009-11-13 10:23:18 ----A---- C:\Windows\system32\msltus40.dll
    2009-11-13 10:23:18 ----A---- C:\Windows\system32\davclnt.dll
    2009-11-13 10:23:17 ----A---- C:\Windows\system32\shlwapi.dll
    2009-11-13 10:23:17 ----A---- C:\Windows\system32\mfc42.dll
    2009-11-13 10:23:16 ----A---- C:\Windows\system32\msrd3x40.dll
    2009-11-13 10:23:16 ----A---- C:\Windows\system32\msdtctm.dll
    2009-11-13 10:23:16 ----A---- C:\Windows\system32\EhStorPwdMgr.dll
    2009-11-13 10:23:16 ----A---- C:\Windows\system32\EhStorAuthn.dll
    2009-11-13 10:23:15 ----A---- C:\Windows\system32\wevtapi.dll
    2009-11-13 10:23:15 ----A---- C:\Windows\system32\photowiz.dll
    2009-11-13 10:23:15 ----A---- C:\Windows\system32\nlhtml.dll
    2009-11-13 10:23:15 ----A---- C:\Windows\system32\browseui.dll
    2009-11-13 10:23:14 ----A---- C:\Windows\system32\user32.dll
    2009-11-13 10:23:13 ----A---- C:\Windows\system32\win32spl.dll
    2009-11-13 10:23:13 ----A---- C:\Windows\system32\WcnNetsh.dll
    2009-11-13 10:23:13 ----A---- C:\Windows\system32\SLCommDlg.dll
    2009-11-13 10:23:13 ----A---- C:\Windows\system32\samsrv.dll
    2009-11-13 10:23:13 ----A---- C:\Windows\system32\quartz.dll
    2009-11-13 10:23:13 ----A---- C:\Windows\system32\oleaut32.dll
    2009-11-13 10:23:13 ----A---- C:\Windows\system32\ci.dll
    2009-11-13 10:23:12 ----A---- C:\Windows\system32\netshell.dll
    2009-11-13 10:23:12 ----A---- C:\Windows\system32\IKEEXT.DLL
    2009-11-13 10:23:12 ----A---- C:\Windows\system32\compcln.exe
    2009-11-13 10:23:12 ----A---- C:\Windows\system32\apds.dll
    2009-11-13 10:23:11 ----A---- C:\Windows\system32\xmlfilter.dll
    2009-11-13 10:23:11 ----A---- C:\Windows\system32\mswstr10.dll
    2009-11-13 10:23:11 ----A---- C:\Windows\system32\msctf.dll
    2009-11-13 10:23:11 ----A---- C:\Windows\system32\emdmgmt.dll
    2009-11-13 10:23:11 ----A---- C:\Windows\system32\audiosrv.dll
    2009-11-13 10:23:10 ----A---- C:\Windows\system32\VSSVC.exe
    2009-11-13 10:23:10 ----A---- C:\Windows\system32\QAGENTRT.DLL
    2009-11-13 10:23:10 ----A---- C:\Windows\system32\msvcrt.dll
    2009-11-13 10:23:10 ----A---- C:\Windows\system32\iphlpsvc.dll
    2009-11-13 10:23:10 ----A---- C:\Windows\system32\gdi32.dll
    2009-11-13 10:23:09 ----A---- C:\Windows\system32\sqlsrv32.dll
    2009-11-13 10:23:09 ----A---- C:\Windows\system32\SLUI.exe
    2009-11-13 10:23:09 ----A---- C:\Windows\system32\msrd2x40.dll
    2009-11-13 10:23:09 ----A---- C:\Windows\system32\mfc42u.dll
    2009-11-13 10:23:09 ----A---- C:\Windows\system32\eapphost.dll
    2009-11-13 10:23:08 ----A---- C:\Windows\system32\winresume.exe
    2009-11-13 10:23:08 ----A---- C:\Windows\system32\shdocvw.dll
    2009-11-13 10:23:08 ----A---- C:\Windows\system32\propdefs.dll
    2009-11-13 10:23:08 ----A---- C:\Windows\system32\odbc32.dll
    2009-11-13 10:23:07 ----A---- C:\Windows\system32\wevtutil.exe
    2009-11-13 10:23:07 ----A---- C:\Windows\system32\mssitlb.dll
    2009-11-13 10:23:07 ----A---- C:\Windows\system32\dbgeng.dll
    2009-11-13 10:23:06 ----A---- C:\Windows\system32\WsmSvc.dll
    2009-11-13 10:23:06 ----A---- C:\Windows\system32\swprv.dll
    2009-11-13 10:23:06 ----A---- C:\Windows\system32\mmcndmgr.dll
    2009-11-13 10:23:05 ----A---- C:\Windows\system32\vds.exe
    2009-11-13 10:23:05 ----A---- C:\Windows\system32\usp10.dll
    2009-11-13 10:23:04 ----A---- C:\Windows\system32\netlogon.dll
    2009-11-13 10:23:04 ----A---- C:\Windows\system32\msscb.dll
    2009-11-13 10:23:04 ----A---- C:\Windows\system32\msctfp.dll
    2009-11-13 10:23:04 ----A---- C:\Windows\system32\fdBthProxy.dll
    2009-11-13 10:23:04 ----A---- C:\Windows\system32\drvinst.exe
    2009-11-13 10:23:04 ----A---- C:\Windows\system32\devmgr.dll
    2009-11-13 10:23:04 ----A---- C:\Windows\system32\DevicePairingProxy.dll
    2009-11-13 10:23:04 ----A---- C:\Windows\system32\BFE.DLL
    2009-11-13 10:23:04 ----A---- C:\Windows\system32\adsldpc.dll
    2009-11-13 10:23:03 ----A---- C:\Windows\system32\WMVSDECD.DLL
    2009-11-13 10:23:03 ----A---- C:\Windows\system32\Wldap32.dll
    2009-11-13 10:23:03 ----A---- C:\Windows\system32\wcnwiz.dll
    2009-11-13 10:23:03 ----A---- C:\Windows\system32\evr.dll
    2009-11-13 10:23:02 ----A---- C:\Windows\system32\wercon.exe
    2009-11-13 10:23:02 ----A---- C:\Windows\system32\services.exe
    2009-11-13 10:23:02 ----A---- C:\Windows\system32\mimefilt.dll
    2009-11-13 10:23:02 ----A---- C:\Windows\system32\comdlg32.dll
    2009-11-13 10:23:02 ----A---- C:\Windows\system32\adtschema.dll
    2009-11-13 10:23:01 ----A---- C:\Windows\system32\wcncsvc.dll
    2009-11-13 10:23:01 ----A---- C:\Windows\system32\taskeng.exe
    2009-11-13 10:23:01 ----A---- C:\Windows\system32\rtffilt.dll
    2009-11-13 10:23:01 ----A---- C:\Windows\system32\reg.exe
    2009-11-13 10:23:01 ----A---- C:\Windows\system32\mswdat10.dll
    2009-11-13 10:23:01 ----A---- C:\Windows\system32\msjter40.dll
    2009-11-13 10:23:01 ----A---- C:\Windows\system32\msdtcprx.dll
    2009-11-13 10:23:01 ----A---- C:\Windows\system32\msdrm.dll
    2009-11-13 10:23:01 ----A---- C:\Windows\system32\ipsmsnap.dll
    2009-11-13 10:23:01 ----A---- C:\Windows\system32\certcli.dll
    2009-11-13 10:23:00 ----A---- C:\Windows\system32\WMNetMgr.dll
    2009-11-13 10:23:00 ----A---- C:\Windows\system32\w32time.dll
    2009-11-13 10:23:00 ----A---- C:\Windows\system32\umpnpmgr.dll
    2009-11-13 10:23:00 ----A---- C:\Windows\system32\IPSECSVC.DLL
    2009-11-13 10:23:00 ----A---- C:\Windows\system32\dnsapi.dll
    2009-11-13 10:23:00 ----A---- C:\Windows\system32\certutil.exe
    2009-11-13 10:22:59 ----A---- C:\Windows\system32\TsWpfWrp.exe
    2009-11-13 10:22:59 ----A---- C:\Windows\system32\rsaenh.dll
    2009-11-13 10:22:59 ----A---- C:\Windows\system32\msstrc.dll
    2009-11-13 10:22:59 ----A---- C:\Windows\system32\msshooks.dll
    2009-11-13 10:22:59 ----A---- C:\Windows\system32\msscntrs.dll
    2009-11-13 10:22:59 ----A---- C:\Windows\system32\msihnd.dll
    2009-11-13 10:22:59 ----A---- C:\Windows\system32\MMDevAPI.dll
    2009-11-13 10:22:59 ----A---- C:\Windows\system32\bthserv.dll
    2009-11-13 10:22:59 ----A---- C:\Windows\system32\bcrypt.dll
    2009-11-13 10:22:58 ----A---- C:\Windows\system32\netapi32.dll
    2009-11-13 10:22:58 ----A---- C:\Windows\system32\mtxclu.dll
    2009-11-13 10:22:58 ----A---- C:\Windows\system32\inetpp.dll
    2009-11-13 10:22:58 ----A---- C:\Windows\system32\inetcomm.dll
    2009-11-13 10:22:58 ----A---- C:\Windows\system32\fundisc.dll
    2009-11-13 10:22:58 ----A---- C:\Windows\system32\dfshim.dll
    2009-11-13 10:22:58 ----A---- C:\Windows\system32\cryptsvc.dll
    2009-11-13 10:22:57 ----A---- C:\Windows\system32\wmicmiplugin.dll
    2009-11-13 10:22:57 ----A---- C:\Windows\system32\termsrv.dll
    2009-11-13 10:22:57 ----A---- C:\Windows\system32\profsvc.dll
    2009-11-13 10:22:57 ----A---- C:\Windows\system32\mscories.dll
    2009-11-13 10:22:57 ----A---- C:\Windows\system32\hidserv.dll
    2009-11-13 10:22:57 ----A---- C:\Windows\system32\dhcpcsvc6.dll
    2009-11-13 10:22:56 ----A---- C:\Windows\system32\wdc.dll
    2009-11-13 10:22:56 ----A---- C:\Windows\system32\shsvcs.dll
    2009-11-13 10:22:56 ----A---- C:\Windows\system32\msiexec.exe
    2009-11-13 10:22:56 ----A---- C:\Windows\system32\imapi.dll
    2009-11-13 10:22:55 ----A---- C:\Windows\system32\rasmans.dll
    2009-11-13 10:22:55 ----A---- C:\Windows\system32\pnidui.dll
    2009-11-13 10:22:55 ----A---- C:\Windows\system32\icardres.dll
    2009-11-13 10:22:55 ----A---- C:\Windows\system32\iassdo.dll
    2009-11-13 10:22:55 ----A---- C:\Windows\system32\chsbrkr.dll
    2009-11-13 10:22:54 ----A---- C:\Windows\system32\wersvc.dll
    2009-11-13 10:22:54 ----A---- C:\Windows\system32\spoolsv.exe
    2009-11-13 10:22:54 ----A---- C:\Windows\system32\slmgr.vbs
    2009-11-13 10:22:54 ----A---- C:\Windows\system32\scrrun.dll
    2009-11-13 10:22:54 ----A---- C:\Windows\system32\PSHED.DLL
    2009-11-13 10:22:54 ----A---- C:\Windows\system32\autofmt.exe
    2009-11-13 10:22:53 ----A---- C:\Windows\system32\wmpmde.dll
    2009-11-13 10:22:53 ----A---- C:\Windows\system32\pidgenx.dll
    2009-11-13 10:22:53 ----A---- C:\Windows\system32\pdh.dll
    2009-11-13 10:22:53 ----A---- C:\Windows\system32\dhcpcsvc.dll
    2009-11-13 10:22:53 ----A---- C:\Windows\system32\CertEnrollUI.dll
    2009-11-13 10:22:53 ----A---- C:\Windows\system32\azroles.dll
    2009-11-13 10:22:52 ----A---- C:\Windows\system32\winlogon.exe
    2009-11-13 10:22:52 ----A---- C:\Windows\system32\SyncCenter.dll
    2009-11-13 10:22:51 ----A---- C:\Windows\system32\SLUINotify.dll
    2009-11-13 10:22:51 ----A---- C:\Windows\system32\sethc.exe
    2009-11-13 10:22:51 ----A---- C:\Windows\system32\ncrypt.dll
    2009-11-13 10:22:51 ----A---- C:\Windows\system32\msjetoledb40.dll
    2009-11-13 10:22:51 ----A---- C:\Windows\system32\kd1394.dll
    2009-11-13 10:22:51 ----A---- C:\Windows\system32\comuid.dll
    2009-11-13 10:22:51 ----A---- C:\Windows\system32\certmgr.dll
    2009-11-13 10:22:50 ----A---- C:\Windows\system32\wisptis.exe
    2009-11-13 10:22:50 ----A---- C:\Windows\system32\untfs.dll
    2009-11-13 10:22:50 ----A---- C:\Windows\system32\taskcomp.dll
    2009-11-13 10:22:50 ----A---- C:\Windows\system32\spp.dll
    2009-11-13 10:22:50 ----A---- C:\Windows\system32\scrobj.dll
    2009-11-13 10:22:50 ----A---- C:\Windows\system32\rtutils.dll
    2009-11-13 10:22:50 ----A---- C:\Windows\system32\iassam.dll
    2009-11-13 10:22:50 ----A---- C:\Windows\system32\dwm.exe
    2009-11-13 10:22:49 ----A---- C:\Windows\system32\printui.dll
    2009-11-13 10:22:49 ----A---- C:\Windows\system32\iasnap.dll
    2009-11-13 10:22:49 ----A---- C:\Windows\system32\autoconv.exe
    2009-11-13 10:22:49 ----A---- C:\Windows\system32\autochk.exe
    2009-11-13 10:22:48 ----A---- C:\Windows\system32\wow32.dll
    2009-11-13 10:22:48 ----A---- C:\Windows\system32\winsrv.dll
    2009-11-13 10:22:48 ----A---- C:\Windows\system32\userenv.dll
    2009-11-13 10:22:48 ----A---- C:\Windows\system32\osk.exe
    2009-11-13 10:22:48 ----A---- C:\Windows\system32\onex.dll
    2009-11-13 10:22:48 ----A---- C:\Windows\system32\kdcom.dll
    2009-11-13 10:22:48 ----A---- C:\Windows\system32\cscript.exe
    2009-11-13 10:22:48 ----A---- C:\Windows\system32\basecsp.dll
    2009-11-13 10:22:48 ----A---- C:\Windows\system32\audiodg.exe
    2009-11-13 10:22:47 ----A---- C:\Windows\system32\mswsock.dll
    2009-11-13 10:22:44 ----A---- C:\Windows\system32\winmm.dll
    2009-11-13 10:22:44 ----A---- C:\Windows\system32\spcmsg.dll
    2009-11-13 10:22:44 ----A---- C:\Windows\system32\RelMon.dll
    2009-11-13 10:22:44 ----A---- C:\Windows\system32\rdpencom.dll
    2009-11-13 10:22:44 ----A---- C:\Windows\system32\kdusb.dll
    2009-11-13 10:22:43 ----A---- C:\Windows\system32\WinSCard.dll
    2009-11-13 10:22:43 ----A---- C:\Windows\system32\WerFaultSecure.exe
    2009-11-13 10:22:43 ----A---- C:\Windows\system32\offfilt.dll
    2009-11-13 10:22:43 ----A---- C:\Windows\system32\msftedit.dll
    2009-11-13 10:22:43 ----A---- C:\Windows\system32\dnsrslvr.dll
    2009-11-13 10:22:42 ----A---- C:\Windows\system32\wsepno.dll
    2009-11-13 10:22:42 ----A---- C:\Windows\system32\wscript.exe
    2009-11-13 10:22:42 ----A---- C:\Windows\system32\wiaservc.dll
    2009-11-13 10:22:42 ----A---- C:\Windows\system32\WerFault.exe
    2009-11-13 10:22:42 ----A---- C:\Windows\system32\Utilman.exe
    2009-11-13 10:22:42 ----A---- C:\Windows\system32\ulib.dll
    2009-11-13 10:22:42 ----A---- C:\Windows\system32\sysclass.dll
    2009-11-13 10:22:42 ----A---- C:\Windows\system32\stobject.dll
    2009-11-13 10:22:42 ----A---- C:\Windows\system32\SndVol.exe
    2009-11-13 10:22:42 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
    2009-11-13 10:22:42 ----A---- C:\Windows\system32\secproc_ssp.dll
    2009-11-13 10:22:42 ----A---- C:\Windows\system32\prnntfy.dll
    2009-11-13 10:22:42 ----A---- C:\Windows\system32\odbccp32.dll
    2009-11-13 10:22:42 ----A---- C:\Windows\system32\msnetobj.dll
    2009-11-13 10:22:42 ----A---- C:\Windows\system32\mscms.dll
    2009-11-13 10:22:42 ----A---- C:\Windows\system32\mfplat.dll
    2009-11-13 10:22:42 ----A---- C:\Windows\system32\mcmde.dll
    2009-11-13 10:22:42 ----A---- C:\Windows\system32\iasdatastore.dll
    2009-11-13 10:22:42 ----A---- C:\Windows\system32\diskraid.exe
    2009-11-13 10:22:42 ----A---- C:\Windows\system32\apphelp.dll
    2009-11-13 10:22:42 ----A---- C:\Windows\system32\adsmsext.dll
    2009-11-13 10:22:41 ----A---- C:\Windows\system32\wscntfy.dll
    2009-11-13 10:22:41 ----A---- C:\Windows\system32\rastapi.dll
    2009-11-13 10:22:41 ----A---- C:\Windows\system32\pnpsetup.dll
    2009-11-13 10:22:41 ----A---- C:\Windows\system32\ipsecsnp.dll
    2009-11-13 10:22:41 ----A---- C:\Windows\system32\IPHLPAPI.DLL
    2009-11-13 10:22:41 ----A---- C:\Windows\system32\fdProxy.dll
    2009-11-13 10:22:41 ----A---- C:\Windows\system32\dsound.dll
    2009-11-13 10:22:41 ----A---- C:\Windows\system32\cryptui.dll
    2009-11-13 10:22:40 ----A---- C:\Windows\system32\wusa.exe
    2009-11-13 10:22:40 ----A---- C:\Windows\system32\wscsvc.dll
    2009-11-13 10:22:40 ----A---- C:\Windows\system32\WMVENCOD.DLL
    2009-11-13 10:22:40 ----A---- C:\Windows\system32\wlangpui.dll
    2009-11-13 10:22:40 ----A---- C:\Windows\system32\vdsdyn.dll
    2009-11-13 10:22:40 ----A---- C:\Windows\system32\regsvc.dll
    2009-11-13 10:22:40 ----A---- C:\Windows\system32\rasapi32.dll
    2009-11-13 10:22:40 ----A---- C:\Windows\system32\ntprint.dll
    2009-11-13 10:22:40 ----A---- C:\Windows\system32\mscorier.dll
    2009-11-13 10:22:40 ----A---- C:\Windows\system32\logman.exe
    2009-11-13 10:22:40 ----A---- C:\Windows\system32\iashlpr.dll
    2009-11-13 10:22:40 ----A---- C:\Windows\system32\gpapi.dll
    2009-11-13 10:22:40 ----A---- C:\Windows\system32\diskpart.exe
    2009-11-13 10:22:40 ----A---- C:\Windows\system32\brcpl.dll
    2009-11-13 10:22:39 ----A---- C:\Windows\system32\zipfldr.dll
    2009-11-13 10:22:39 ----A---- C:\Windows\system32\wshext.dll
    2009-11-13 10:22:39 ----A---- C:\Windows\system32\wpccpl.dll
    2009-11-13 10:22:39 ----A---- C:\Windows\system32\rasdlg.dll
    2009-11-13 10:22:39 ----A---- C:\Windows\system32\netcenter.dll
    2009-11-13 10:22:39 ----A---- C:\Windows\system32\iasrad.dll
    2009-11-13 10:22:39 ----A---- C:\Windows\system32\findstr.exe
    2009-11-13 10:22:38 ----A---- C:\Windows\system32\wsnmp32.dll
    2009-11-13 10:22:38 ----A---- C:\Windows\system32\wer.dll
    2009-11-13 10:22:38 ----A---- C:\Windows\system32\themecpl.dll
    2009-11-13 10:22:38 ----A---- C:\Windows\system32\iassvcs.dll
    2009-11-13 10:22:37 ----A---- C:\Windows\system32\uxsms.dll
    2009-11-13 10:22:37 ----A---- C:\Windows\system32\tsbyuv.dll
    2009-11-13 10:22:37 ----A---- C:\Windows\system32\srvsvc.dll
    2009-11-13 10:22:37 ----A---- C:\Windows\system32\slcc.dll
    2009-11-13 10:22:37 ----A---- C:\Windows\system32\scansetting.dll
    2009-11-13 10:22:37 ----A---- C:\Windows\system32\powrprof.dll
    2009-11-13 10:22:37 ----A---- C:\Windows\system32\ntmarta.dll
    2009-11-13 10:22:37 ----A---- C:\Windows\system32\networkmap.dll
    2009-11-13 10:22:37 ----A---- C:\Windows\system32\msutb.dll
    2009-11-13 10:22:37 ----A---- C:\Windows\system32\mstsc.exe
    2009-11-13 10:22:37 ----A---- C:\Windows\system32\mstlsapi.dll
    2009-11-13 10:22:37 ----A---- C:\Windows\system32\mssprxy.dll
    2009-11-13 10:22:37 ----A---- C:\Windows\system32\iasads.dll
    2009-11-13 10:22:37 ----A---- C:\Windows\system32\iasacct.dll
    2009-11-13 10:22:36 ----A---- C:\Windows\system32\systemcpl.dll
    2009-11-13 10:22:36 ----A---- C:\Windows\system32\sud.dll
    2009-11-13 10:22:36 ----A---- C:\Windows\system32\powercpl.dll
    2009-11-13 10:22:36 ----A---- C:\Windows\system32\PerfCenterCPL.dll
    2009-11-13 10:22:36 ----A---- C:\Windows\system32\newdev.exe
    2009-11-13 10:22:36 ----A---- C:\Windows\system32\dot3svc.dll
    2009-11-13 10:22:36 ----A---- C:\Windows\system32\connect.dll
    2009-11-13 10:22:36 ----A---- C:\Windows\system32\authz.dll
    2009-11-13 10:22:35 ----A---- C:\Windows\system32\wlanpref.dll
    2009-11-13 10:22:35 ----A---- C:\Windows\system32\usercpl.dll
    2009-11-13 10:22:35 ----A---- C:\Windows\system32\themeui.dll
    2009-11-13 10:22:35 ----A---- C:\Windows\system32\samlib.dll
    2009-11-13 10:22:35 ----A---- C:\Windows\system32\rpchttp.dll
    2009-11-13 10:22:35 ----A---- C:\Windows\system32\regapi.dll
    2009-11-13 10:22:35 ----A---- C:\Windows\system32\qdvd.dll
    2009-11-13 10:22:35 ----A---- C:\Windows\system32\pcaui.dll
    2009-11-13 10:22:35 ----A---- C:\Windows\system32\mmci.dll
    2009-11-13 10:22:35 ----A---- C:\Windows\system32\autoplay.dll
    2009-11-13 10:22:35 ----A---- C:\Windows\system32\accessibilitycpl.dll
    2009-11-13 10:22:34 ----A---- C:\Windows\system32\wscisvif.dll
    2009-11-13 10:22:34 ----A---- C:\Windows\system32\wpcao.dll
    2009-11-13 10:22:34 ----A---- C:\Windows\system32\vdsutil.dll
    2009-11-13 10:22:34 ----A---- C:\Windows\system32\tapisrv.dll
    2009-11-13 10:22:34 ----A---- C:\Windows\system32\sdclt.exe
    2009-11-13 10:22:34 ----A---- C:\Windows\system32\scksp.dll
    2009-11-13 10:22:34 ----A---- C:\Windows\system32\scesrv.dll
    2009-11-13 10:22:34 ----A---- C:\Windows\system32\rekeywiz.exe
    2009-11-13 10:22:34 ----A---- C:\Windows\system32\psisdecd.dll
    2009-11-13 10:22:34 ----A---- C:\Windows\system32\oleprn.dll
    2009-11-13 10:22:34 ----A---- C:\Windows\system32\msinfo32.exe
    2009-11-13 10:22:34 ----A---- C:\Windows\system32\mpr.dll
    2009-11-13 10:22:34 ----A---- C:\Windows\system32\imm32.dll
    2009-11-13 10:22:34 ----A---- C:\Windows\system32\iaspolcy.dll
    2009-11-13 10:22:34 ----A---- C:\Windows\system32\feclient.dll
    2009-11-13 10:22:34 ----A---- C:\Windows\system32\Faultrep.dll
    2009-11-13 10:22:34 ----A---- C:\Windows\system32\dpapimig.exe
    2009-11-13 10:22:34 ----A---- C:\Windows\system32\dot3msm.dll
    2009-11-13 10:22:34 ----A---- C:\Windows\system32\DeviceEject.exe
    2009-11-13 10:22:34 ----A---- C:\Windows\system32\AudioSes.dll
    2009-11-13 10:22:33 ----A---- C:\Windows\system32\whealogr.dll
    2009-11-13 10:22:33 ----A---- C:\Windows\system32\TSTheme.exe
    2009-11-13 10:22:33 ----A---- C:\Windows\system32\tcpmon.dll
    2009-11-13 10:22:33 ----A---- C:\Windows\system32\tcpipcfg.dll
    2009-11-13 10:22:33 ----A---- C:\Windows\system32\spwinsat.dll
    2009-11-13 10:22:33 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
    2009-11-13 10:22:33 ----A---- C:\Windows\system32\scecli.dll
    2009-11-13 10:22:33 ----A---- C:\Windows\system32\rasplap.dll
    2009-11-13 10:22:33 ----A---- C:\Windows\system32\rasgcw.dll
    2009-11-13 10:22:33 ----A---- C:\Windows\system32\qedit.dll
    2009-11-13 10:22:33 ----A---- C:\Windows\system32\PnPUnattend.exe
    2009-11-13 10:22:33 ----A---- C:\Windows\system32\pnpui.dll
    2009-11-13 10:22:33 ----A---- C:\Windows\system32\perfdisk.dll
    2009-11-13 10:22:33 ----A---- C:\Windows\system32\ncryptui.dll
    2009-11-13 10:22:33 ----A---- C:\Windows\system32\hdwwiz.exe
    2009-11-13 10:22:33 ----A---- C:\Windows\system32\FWPUCLNT.DLL
    2009-11-13 10:22:33 ----A---- C:\Windows\system32\fdWSD.dll
    2009-11-13 10:22:33 ----A---- C:\Windows\system32\cmmon32.exe
    2009-11-13 10:22:33 ----A---- C:\Windows\system32\certreq.exe
    2009-11-13 10:22:32 ----A---- C:\Windows\system32\WMVXENCD.DLL
    2009-11-13 10:22:32 ----A---- C:\Windows\system32\wlanui.dll
    2009-11-13 10:22:32 ----A---- C:\Windows\system32\wiaaut.dll
    2009-11-13 10:22:32 ----A---- C:\Windows\system32\srcore.dll
    2009-11-13 10:22:32 ----A---- C:\Windows\system32\SnippingTool.exe
    2009-11-13 10:22:32 ----A---- C:\Windows\system32\SCardSvr.dll
    2009-11-13 10:22:32 ----A---- C:\Windows\system32\rasppp.dll
    2009-11-13 10:22:32 ----A---- C:\Windows\system32\raschap.dll
    2009-11-13 10:22:32 ----A---- C:\Windows\system32\PnPutil.exe
    2009-11-13 10:22:32 ----A---- C:\Windows\system32\MSVidCtl.dll
    2009-11-13 10:22:32 ----A---- C:\Windows\system32\fontext.dll
    2009-11-13 10:22:32 ----A---- C:\Windows\system32\dsprop.dll
    2009-11-13 10:22:32 ----A---- C:\Windows\system32\conime.exe
    2009-11-13 10:22:32 ----A---- C:\Windows\system32\cmdial32.dll
    2009-11-13 10:22:31 ----A---- C:\Windows\system32\shwebsvc.dll
    2009-11-13 10:22:31 ----A---- C:\Windows\system32\shsetup.dll
    2009-11-13 10:22:31 ----A---- C:\Windows\system32\rasmontr.dll
    2009-11-13 10:22:31 ----A---- C:\Windows\system32\oobefldr.dll
    2009-11-13 10:22:31 ----A---- C:\Windows\system32\mscandui.dll
    2009-11-13 10:22:31 ----A---- C:\Windows\system32\modemui.dll
    2009-11-13 10:22:31 ----A---- C:\Windows\system32\dimsroam.dll
    2009-11-13 10:22:31 ----A---- C:\Windows\system32\chtbrkr.dll
    2009-11-13 10:22:30 ----A---- C:\Windows\system32\WSDMon.dll
    2009-11-13 10:22:30 ----A---- C:\Windows\system32\wpcsvc.dll
    2009-11-13 10:22:30 ----A---- C:\Windows\system32\wmpeffects.dll
    2009-11-13 10:22:30 ----A---- C:\Windows\system32\wmdrmsdk.dll
    2009-11-13 10:22:30 ----A---- C:\Windows\system32\wlgpclnt.dll
    2009-11-13 10:22:30 ----A---- C:\Windows\system32\smss.exe
    2009-11-13 10:22:30 ----A---- C:\Windows\system32\rdpwsx.dll
    2009-11-13 10:22:30 ----A---- C:\Windows\system32\networkexplorer.dll
    2009-11-13 10:22:30 ----A---- C:\Windows\system32\netplwiz.dll
    2009-11-13 10:22:30 ----A---- C:\Windows\system32\msscp.dll
    2009-11-13 10:22:30 ----A---- C:\Windows\system32\logagent.exe
    2009-11-13 10:22:30 ----A---- C:\Windows\system32\ifmon.dll
    2009-11-13 10:22:30 ----A---- C:\Windows\system32\dataclen.dll
    2009-11-13 10:22:30 ----A---- C:\Windows\system32\credui.dll
    2009-11-13 10:22:30 ----A---- C:\Windows\system32\cipher.exe
    2009-11-13 10:22:30 ----A---- C:\Windows\system32\certprop.dll
    2009-11-13 10:22:30 ----A---- C:\Windows\system32\blackbox.dll
    2009-11-13 10:22:29 ----A---- C:\Windows\system32\wscapi.dll
    2009-11-13 10:22:29 ----A---- C:\Windows\system32\thawbrkr.dll
    2009-11-13 10:22:29 ----A---- C:\Windows\system32\softkbd.dll
    2009-11-13 10:22:29 ----A---- C:\Windows\system32\sendmail.dll
    2009-11-13 10:22:29 ----A---- C:\Windows\system32\puiapi.dll
    2009-11-13 10:22:29 ----A---- C:\Windows\system32\olepro32.dll
    2009-11-13 10:22:29 ----A---- C:\Windows\system32\msimtf.dll
    2009-11-13 10:22:29 ----A---- C:\Windows\system32\msctfui.dll
    2009-11-13 10:22:29 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
    2009-11-13 10:22:29 ----A---- C:\Windows\system32\input.dll
    2009-11-13 10:22:29 ----A---- C:\Windows\system32\InkEd.dll
    2009-11-13 10:22:29 ----A---- C:\Windows\system32\gpresult.exe
    2009-11-13 10:22:29 ----A---- C:\Windows\system32\ExplorerFrame.dll
    2009-11-13 10:22:29 ----A---- C:\Windows\system32\drmmgrtn.dll
    2009-11-13 10:22:29 ----A---- C:\Windows\system32\dmsynth.dll
    2009-11-13 10:22:28 ----A---- C:\Windows\system32\wshbth.dll
    2009-11-13 10:22:28 ----A---- C:\Windows\system32\wsdchngr.dll
    2009-11-13 10:22:28 ----A---- C:\Windows\system32\version.dll
    2009-11-13 10:22:28 ----A---- C:\Windows\system32\Storprop.dll
    2009-11-13 10:22:28 ----A---- C:\Windows\system32\SMBHelperClass.dll
    2009-11-13 10:22:28 ----A---- C:\Windows\system32\SLLUA.exe
    2009-11-13 10:22:28 ----A---- C:\Windows\system32\rasdial.exe
    2009-11-13 10:22:28 ----A---- C:\Windows\system32\rasdiag.dll
    2009-11-13 10:22:28 ----A---- C:\Windows\system32\msjint40.dll
    2009-11-13 10:22:28 ----A---- C:\Windows\system32\msisip.dll
    2009-11-13 10:22:28 ----A---- C:\Windows\system32\MsCtfMonitor.dll
    2009-11-13 10:22:28 ----A---- C:\Windows\system32\mprapi.dll
    2009-11-13 10:22:28 ----A---- C:\Windows\system32\l2nacp.dll
    2009-11-13 10:22:28 ----A---- C:\Windows\system32\ftp.exe
    2009-11-13 10:22:28 ----A---- C:\Windows\system32\fdWCN.dll
    2009-11-13 10:22:28 ----A---- C:\Windows\system32\fdSSDP.dll
    2009-11-13 10:22:28 ----A---- C:\Windows\system32\fc.exe
    2009-11-13 10:22:28 ----A---- C:\Windows\system32\eapp3hst.dll
    2009-11-13 10:22:28 ----A---- C:\Windows\system32\dot3cfg.dll
    2009-11-13 10:22:28 ----A---- C:\Windows\system32\dmusic.dll
    2009-11-13 10:22:28 ----A---- C:\Windows\system32\cscdll.dll
    2009-11-13 10:22:28 ----A---- C:\Windows\system32\cscapi.dll
    2009-11-13 10:22:28 ----A---- C:\Windows\system32\bthudtask.exe
    2009-11-13 10:22:28 ----A---- C:\Windows\system32\bthci.dll
    2009-11-13 10:22:27 ----A---- C:\Windows\system32\tscupgrd.exe
    2009-11-13 10:22:27 ----A---- C:\Windows\system32\slcinst.dll
    2009-11-13 10:22:27 ----A---- C:\Windows\system32\PNPXAssoc.dll
    2009-11-13 10:22:27 ----A---- C:\Windows\system32\ocsetup.exe
    2009-11-13 10:22:27 ----A---- C:\Windows\system32\nslookup.exe
    2009-11-13 10:22:27 ----A---- C:\Windows\system32\networkitemfactory.dll
    2009-11-13 10:22:27 ----A---- C:\Windows\system32\NcdProp.dll
    2009-11-13 10:22:27 ----A---- C:\Windows\system32\mmcico.dll
    2009-11-13 10:22:27 ----A---- C:\Windows\system32\iscsilog.dll
    2009-11-13 10:22:27 ----A---- C:\Windows\system32\ipconfig.exe
    2009-11-13 10:22:27 ----A---- C:\Windows\system32\hbaapi.dll
    2009-11-13 10:22:27 ----A---- C:\Windows\system32\gpupdate.exe
    2009-11-13 10:22:27 ----A---- C:\Windows\system32\FwRemoteSvr.dll
    2009-11-13 10:22:27 ----A---- C:\Windows\system32\fdeploy.dll
    2009-11-13 10:22:27 ----A---- C:\Windows\system32\eappgnui.dll
    2009-11-13 10:22:27 ----A---- C:\Windows\system32\eappcfg.dll
    2009-11-13 10:22:27 ----A---- C:\Windows\system32\csrstub.exe
    2009-11-13 10:22:27 ----A---- C:\Windows\system32\CHxReadingStringIME.dll
    2009-11-13 10:22:27 ----A---- C:\Windows\system32\cbsra.exe
    2009-11-13 10:22:27 ----A---- C:\Windows\system32\bitsigd.dll
    2009-11-13 10:22:26 ----A---- C:\Windows\system32\winrnr.dll
    2009-11-13 10:22:26 ----A---- C:\Windows\system32\vdmdbg.dll
    2009-11-13 10:22:26 ----A---- C:\Windows\system32\slwga.dll
    2009-11-13 10:22:26 ----A---- C:\Windows\system32\odbcconf.dll
    2009-11-13 10:22:26 ----A---- C:\Windows\system32\midimap.dll
    2009-11-13 10:22:26 ----A---- C:\Windows\system32\inetppui.dll
    2009-11-13 10:22:25 ----A---- C:\Windows\system32\msimsg.dll
    2009-11-13 10:22:25 ----A---- C:\Windows\system32\f3ahvoas.dll
    2009-11-13 10:22:07 ----A---- C:\Windows\system32\SmiEngine.dll
    2009-11-13 10:21:59 ----A---- C:\Windows\system32\wdscore.dll
    2009-11-13 10:21:59 ----A---- C:\Windows\system32\PkgMgr.exe
    2009-11-13 10:21:26 ----A---- C:\Windows\system32\drvstore.dll
    2009-11-11 00:02:05 ----A---- C:\Windows\system32\msv1_0.dll
    2009-11-11 00:02:05 ----A---- C:\Windows\system32\msv1_0(546).dll
    2009-11-11 00:02:05 ----A---- C:\Windows\system32\lsasrv.dll
    2009-11-11 00:02:04 ----A---- C:\Windows\system32\wdigest.dll
    2009-11-11 00:02:04 ----A---- C:\Windows\system32\wdigest(765).dll
    2009-11-11 00:02:04 ----A---- C:\Windows\system32\lsasrv(501).dll
    2009-11-11 00:02:03 ----A---- C:\Windows\system32\secur32.dll
    2009-11-11 00:02:03 ----A---- C:\Windows\system32\secur32(655).dll
    2009-11-11 00:02:03 ----A---- C:\Windows\system32\ntkrnlpa.exe
    2009-11-11 00:02:03 ----A---- C:\Windows\system32\lsass.exe
    2009-11-11 00:02:03 ----A---- C:\Windows\system32\lsass(502).exe
    2009-11-11 00:02:02 ----A---- C:\Windows\system32\ntoskrnl.exe
    2009-11-11 00:01:39 ----A---- C:\Windows\system32\gameux.dll
    2009-11-11 00:01:38 ----A---- C:\Windows\system32\Apphlpdm.dll
    2009-11-11 00:01:37 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
    2009-11-11 00:01:11 ----A---- C:\Windows\system32\WSDApi.dll
    2009-11-11 00:01:11 ----A---- C:\Windows\system32\WSDApi(822).dll
    2009-11-11 00:01:09 ----A---- C:\Windows\system32\msasn1.dll
    2009-11-11 00:01:09 ----A---- C:\Windows\system32\msasn1(521).dll
    2009-11-11 00:01:07 ----A---- C:\Windows\system32\WMSPDMOD.DLL
    2009-11-11 00:00:55 ----A---- C:\Windows\system32\wmp.dll
    2009-11-11 00:00:53 ----A---- C:\Windows\system32\wmp(809).dll
    2009-11-11 00:00:52 ----A---- C:\Windows\system32\unregmp2.exe
    2009-11-11 00:00:51 ----A---- C:\Windows\system32\wmploc.DLL
    2009-11-11 00:00:50 ----A---- C:\Windows\system32\wmploc(810).DLL
    2009-11-10 22:08:11 ----A---- C:\Windows\system32\wups2.dll
    2009-11-10 22:08:11 ----A---- C:\Windows\system32\wups2(837).dll
    2009-11-10 22:08:11 ----A---- C:\Windows\system32\wucltux.dll
    2009-11-10 22:08:11 ----A---- C:\Windows\system32\wuaueng.dll
    2009-11-10 22:08:11 ----A---- C:\Windows\system32\wuauclt.exe
    2009-11-10 22:07:38 ----A---- C:\Windows\system32\wups.dll
    2009-11-10 22:07:38 ----A---- C:\Windows\system32\wudriver.dll
    2009-11-10 22:07:38 ----A---- C:\Windows\system32\wuapi.dll
    2009-11-10 22:07:21 ----A---- C:\Windows\system32\wuwebv.dll
    2009-11-10 22:07:21 ----A---- C:\Windows\system32\wuapp.exe
    2009-11-10 21:34:40 ----D---- C:\Program Files\Common Files\PC Tools
    2009-11-10 21:34:39 ----D---- C:\Users\esso\AppData\Roaming\PC Tools
    2009-11-10 21:34:39 ----D---- C:\ProgramData\PC Tools
    2009-11-10 21:34:39 ----D---- C:\Program Files\Spyware Doctor
    2009-11-10 20:27:23 ----D---- C:\Program Files\VS Revo Group
    2009-11-10 20:24:38 ----D---- C:\Users\esso\AppData\Roaming\Malwarebytes
    2009-11-10 20:24:28 ----D---- C:\ProgramData\Malwarebytes
    2009-10-27 15:35:16 ----D---- C:\Program Files\Adobe(15)
    2009-10-14 14:31:48 ----D---- C:\Program Files\Common Files\SAP Shared
    
    ======List of files/folders modified in the last 3 months======
    
    2010-01-13 15:49:09 ----D---- C:\Windows\Temp
    2010-01-13 15:44:59 ----D---- C:\Users\esso\AppData\Roaming\Skype
    2010-01-13 15:43:50 ----D---- C:\Users\esso\AppData\Roaming\skypePM
    2010-01-13 06:44:23 ----D---- C:\Windows\System32
    2010-01-13 06:44:23 ----A---- C:\Windows\system32\PerfStringBackup.INI
    2010-01-13 06:44:22 ----D---- C:\Windows\inf
    2010-01-13 06:15:12 ----RD---- C:\Program Files
    2010-01-12 10:25:47 ----D---- C:\Windows\system32\Msdtc
    2010-01-12 10:25:42 ----D---- C:\Windows\system32\wbem
    2010-01-12 10:25:42 ----D---- C:\Windows
    2010-01-12 10:21:18 ----D---- C:\Windows\system32\config
    2010-01-12 10:21:09 ----SHD---- C:\Windows\Installer
    2010-01-12 10:21:09 ----DC---- C:\Windows\system32\DRVSTORE
    2010-01-12 10:21:09 ----D---- C:\Windows\Tasks
    2010-01-12 10:21:09 ----D---- C:\Windows\system32\spool
    2010-01-12 10:21:09 ----D---- C:\Windows\system32\drivers
    2010-01-12 10:21:09 ----D---- C:\Windows\system32\CodeIntegrity
    2010-01-12 10:21:09 ----D---- C:\Windows\system32\catroot2
    2010-01-12 10:21:06 ----D---- C:\Program Files\Windows Live
    2010-01-12 10:21:05 ----D---- C:\Program Files\Mozilla Firefox
    2010-01-12 10:21:04 ----D---- C:\Program Files\DivX
    2010-01-12 10:21:04 ----D---- C:\Program Files\Common Files\DivX Shared
    2010-01-12 10:17:29 ----SHD---- C:\System Volume Information
    2010-01-06 11:54:09 ----D---- C:\Windows\Microsoft.NET
    2010-01-05 14:55:52 ----RSD---- C:\Windows\assembly
    2010-01-05 13:27:09 ----D---- C:\Windows\winsxs
    2010-01-05 13:24:34 ----D---- C:\Windows\system32\catroot
    2010-01-03 02:08:02 ----D---- C:\Windows\Minidump
    2010-01-02 01:18:02 ----SD---- C:\ProgramData\Microsoft
    2010-01-02 01:06:04 ----D---- C:\Program Files\Common Files
    2009-12-29 21:49:09 ----D---- C:\QUARANTINE
    2009-12-28 21:52:10 ----D---- C:\Program Files\ICQ6.5
    2009-12-28 06:19:26 ----SHD---- C:\Boot
    2009-12-26 16:06:51 ----D---- C:\Windows\Prefetch
    2009-12-24 19:28:24 ----D---- C:\Windows\rescache
    2009-12-24 19:15:02 ----D---- C:\Windows\system32\Tasks
    2009-12-24 19:10:09 ----D---- C:\Windows\system32\de-DE
    2009-12-24 19:10:01 ----D---- C:\Windows\system32\zh-TW
    2009-12-24 19:10:01 ----D---- C:\Windows\system32\zh-HK
    2009-12-24 19:10:01 ----D---- C:\Windows\system32\zh-CN
    2009-12-24 19:10:01 ----D---- C:\Windows\system32\uk-UA
    2009-12-24 19:10:01 ----D---- C:\Windows\system32\tr-TR
    2009-12-24 19:10:01 ----D---- C:\Windows\system32\th-TH
    2009-12-24 19:10:01 ----D---- C:\Windows\system32\sv-SE
    2009-12-24 19:10:01 ----D---- C:\Windows\system32\sr-Latn-CS
    2009-12-24 19:10:01 ----D---- C:\Windows\system32\sl-SI
    2009-12-24 19:10:01 ----D---- C:\Windows\system32\sk-SK
    2009-12-24 19:10:01 ----D---- C:\Windows\system32\pt-PT
    2009-12-24 19:10:01 ----D---- C:\Windows\system32\pt-BR
    2009-12-24 19:10:01 ----D---- C:\Windows\system32\pl-PL
    2009-12-24 19:10:01 ----D---- C:\Windows\system32\nl-NL
    2009-12-24 19:10:01 ----D---- C:\Windows\system32\lv-LV
    2009-12-24 19:10:01 ----D---- C:\Windows\system32\lt-LT
    2009-12-24 19:10:01 ----D---- C:\Windows\system32\ko-KR
    2009-12-24 19:10:01 ----D---- C:\Windows\system32\ja-JP
    2009-12-24 19:10:01 ----D---- C:\Windows\system32\it-IT
    2009-12-24 19:10:01 ----D---- C:\Windows\system32\hu-HU
    2009-12-24 19:10:01 ----D---- C:\Windows\system32\hr-HR
    2009-12-24 19:10:01 ----D---- C:\Windows\system32\he-IL
    2009-12-24 19:10:01 ----D---- C:\Windows\system32\fr-FR
    2009-12-24 19:10:01 ----D---- C:\Windows\system32\fi-FI
    2009-12-24 19:10:01 ----D---- C:\Windows\system32\et-EE
    2009-12-24 19:10:01 ----D---- C:\Windows\system32\es-ES
    2009-12-24 19:10:01 ----D---- C:\Windows\system32\el-GR
    2009-12-24 19:10:01 ----D---- C:\Windows\system32\cs-CZ
    2009-12-24 19:10:01 ----D---- C:\Windows\system32\bg-BG
    2009-12-24 19:10:00 ----D---- C:\Windows\system32\ru-RU
    2009-12-24 19:10:00 ----D---- C:\Windows\system32\ro-RO
    2009-12-24 19:10:00 ----D---- C:\Windows\system32\nb-NO
    2009-12-24 19:10:00 ----D---- C:\Windows\system32\en-US
    2009-12-24 19:10:00 ----D---- C:\Windows\system32\da-DK
    2009-12-24 19:10:00 ----D---- C:\Windows\system32\ar-SA
    2009-12-23 15:47:37 ----D---- C:\Program Files\Windows Mail
    2009-12-23 10:05:10 ----D---- C:\ProgramData\Microsoft Help
    2009-12-16 11:38:06 ----D---- C:\Program Files\Windows Calendar
    2009-12-16 11:38:06 ----D---- C:\Program Files\Movie Maker
    2009-12-16 11:38:02 ----D---- C:\Program Files\Windows Sidebar
    2009-12-16 11:38:02 ----D---- C:\Program Files\Windows Media Player
    2009-12-16 11:38:02 ----D---- C:\Program Files\Internet Explorer
    2009-12-16 11:38:01 ----D---- C:\Program Files\Windows Collaboration
    2009-12-16 11:38:00 ----D---- C:\Program Files\Windows Journal
    2009-12-16 11:37:56 ----D---- C:\Program Files\Windows Photo Gallery
    2009-12-16 11:37:56 ----D---- C:\Program Files\Common Files\System
    2009-12-16 11:37:46 ----D---- C:\Program Files\Windows Defender
    2009-12-16 11:37:45 ----D---- C:\Windows\servicing
    2009-12-16 11:37:45 ----D---- C:\Windows\ehome
    2009-12-16 11:37:09 ----D---- C:\Windows\system32\XPSViewer
    2009-12-16 11:37:09 ----D---- C:\Windows\IME
    2009-12-16 11:37:06 ----D---- C:\Windows\system32\oobe
    2009-12-16 11:37:06 ----D---- C:\Windows\system32\migration
    2009-12-16 11:36:58 ----D---- C:\Windows\system32\AdvancedInstallers
    2009-12-16 11:36:57 ----D---- C:\Windows\system32\SLUI
    2009-12-16 11:36:57 ----D---- C:\Windows\system32\setup
    2009-12-16 11:36:56 ----D---- C:\Windows\system32\manifeststore
    2009-12-16 11:36:44 ----D---- C:\Windows\system32\migwiz
    2009-12-16 11:34:43 ----RSD---- C:\Windows\Fonts
    2009-12-16 11:34:43 ----D---- C:\Windows\AppPatch
    2009-12-16 11:34:32 ----D---- C:\Windows\system32\Boot
    2009-12-16 11:33:02 ----D---- C:\Windows\system32\RTCOM
    2009-12-13 15:12:25 ----D---- C:\Windows\PolicyDefinitions
    2009-12-11 19:18:04 ----D---- C:\Users\esso\AppData\Roaming\Yahoo!
    2009-12-11 19:10:17 ----D---- C:\ProgramData\Yahoo!
    2009-12-11 19:10:17 ----D---- C:\Program Files\Yahoo!
    2009-12-11 19:10:13 ----HD---- C:\ProgramData
    2009-12-08 03:19:09 ----A---- C:\Windows\win.ini
    2009-12-08 03:11:56 ----D---- C:\Program Files\Common Files\microsoft shared
    2009-12-07 02:00:23 ----D---- C:\Program Files\Microsoft Works
    2009-12-07 01:58:35 ----D---- C:\Program Files\MSBuild
    2009-12-07 01:56:46 ----D---- C:\Windows\ShellNew
    2009-12-07 01:36:47 ----D---- C:\Program Files\Microsoft Visual Studio 8
    2009-12-02 06:43:35 ----D---- C:\Program Files\Common Files\Adobe
    2009-12-02 06:43:24 ----D---- C:\ProgramData\Adobe
    2009-12-01 16:27:33 ----D---- C:\Program Files\MSECache
    2009-12-01 12:06:20 ----A---- C:\Windows\system32\mrt.exe
    2009-11-26 07:38:46 ----D---- C:\ProgramData\McAfee
    2009-11-26 07:38:46 ----D---- C:\Program Files\Common Files\McAfee
    2009-11-25 21:29:04 ----D---- C:\Program Files\Replay Converter 3
    2009-11-25 21:29:03 ----D---- C:\Program Files\Launch Manager
    2009-11-25 21:29:03 ----D---- C:\Program Files\iTunes
    2009-11-25 21:29:03 ----D---- C:\Program Files\Common Files\LightScribe
    2009-11-25 21:29:03 ----D---- C:\Program Files\Common Files\COWON
    2009-11-25 21:29:03 ----D---- C:\Program Files\Bonjour
    2009-11-25 21:29:01 ----D---- C:\Program Files\Apoint2K
    2009-11-25 12:12:34 ----D---- C:\Program Files\Common Files\Oberon Media
    2009-11-25 12:12:33 ----D---- C:\Program Files\Common Files\Deterministic Networks
    2009-11-25 12:12:09 ----D---- C:\Program Files\PC Connectivity Solution
    2009-11-25 12:12:08 ----D---- C:\Program Files\Adobe
    2009-11-25 12:12:05 ----RD---- C:\Program Files\Skype
    2009-11-25 12:12:04 ----HD---- C:\Program Files\InstallShield Installation Information
    2009-11-25 12:12:01 ----D---- C:\Program Files\Veoh Networks
    2009-11-25 12:12:00 ----D---- C:\Program Files\WinRAR
    2009-11-25 12:12:00 ----D---- C:\Program Files\QuickTime
    2009-11-25 12:11:59 ----D---- C:\Windows\Downloaded Installations
    2009-11-25 12:11:59 ----D---- C:\Program Files\Kodak
    2009-11-25 12:11:59 ----D---- C:\Program Files\Common Files\Kodak
    2009-11-25 12:11:58 ----SHDC---- C:\Program Files\Common Files\WindowsLiveInstaller
    2009-11-25 12:11:58 ----SHD---- C:\$RECYCLE.BIN
    2009-11-25 12:11:58 ----D---- C:\Program Files\VideoLAN
    2009-11-25 12:11:58 ----D---- C:\Program Files\Microsoft SQL Server Compact Edition
    2009-11-25 12:11:58 ----D---- C:\Program Files\JetAudio
    2009-11-25 12:11:58 ----D---- C:\Program Files\Conduit
    2009-11-25 12:11:58 ----D---- C:\Program Files\Common Files\PCSuite
    2009-11-25 12:11:58 ----D---- C:\Program Files\Common Files\MSSoap
    2009-11-25 12:11:57 ----D---- C:\Program Files\Common Files\snp2uvc
    2009-11-25 12:11:57 ----D---- C:\Program Files\Acer
    2009-11-25 12:11:56 ----D---- C:\Windows\system32\IME
    2009-11-25 12:11:56 ----D---- C:\Windows\Help
    2009-11-25 12:11:48 ----D---- C:\Windows\system32\DriverStore
    2009-11-25 12:11:48 ----D---- C:\Windows\system32\com
    2009-11-25 12:11:48 ----D---- C:\Windows\Speech
    2009-11-25 12:11:48 ----D---- C:\Windows\Setup
    2009-11-25 12:11:48 ----D---- C:\Windows\ServiceProfiles
    2009-11-25 12:11:48 ----D---- C:\Windows\security
    2009-11-25 12:11:48 ----D---- C:\Windows\schemas
    2009-11-25 12:11:48 ----D---- C:\Windows\Resources
    2009-11-25 12:11:48 ----D---- C:\Windows\Provisioning
    2009-11-25 12:11:47 ----D---- C:\Windows\PLA
    2009-11-25 12:11:47 ----D---- C:\Windows\Performance
    2009-11-25 12:11:47 ----D---- C:\Windows\MSAgent
    2009-11-25 12:11:45 ----D---- C:\Windows\DigitalLocker
    2009-11-25 12:11:45 ----D---- C:\Windows\Branding
    2009-11-25 12:11:44 ----D---- C:\Windows\Boot
    2009-11-25 12:11:41 ----D---- C:\Program Files\Windows NT
    2009-11-25 12:11:41 ----D---- C:\Program Files\Reference Assemblies
    2009-11-25 12:11:41 ----D---- C:\Program Files\Realtek
    2009-11-25 12:11:40 ----D---- C:\Program Files\NewTech Infosystems
    2009-11-25 12:11:39 ----D---- C:\Program Files\Microsoft Games
    2009-11-25 12:11:38 ----D---- C:\Program Files\CyberLink
    2009-11-25 12:11:38 ----D---- C:\Program Files\CONEXANT
    2009-11-25 12:11:38 ----D---- C:\Program Files\Common Files\SpeechEngines
    2009-11-25 12:11:38 ----D---- C:\Program Files\Common Files\NewTech Infosystems
    2009-11-25 12:11:38 ----D---- C:\Program Files\Common Files\muvee Technologies
    2009-11-25 12:11:37 ----D---- C:\Program Files\Common Files\InstallShield
    2009-11-25 12:11:36 ----D---- C:\Program Files\Acer GameZone
    2009-11-25 12:11:34 ----D---- C:\Program Files\Acer Arcade Deluxe
    2009-11-10 21:35:38 ----AD---- C:\ProgramData\TEMP
    2009-11-10 21:28:25 ----D---- C:\Users\esso\AppData\Roaming\Software Informer
    2009-10-14 13:57:08 ----D---- C:\Users\esso\AppData\Roaming\Free Download Manager
    
    ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
    
    R1 AvgLdx86;AVG Free AVI Loader Driver x86; C:\Windows\System32\Drivers\avgldx86.sys [2009-11-26 333192]
    R1 AvgMfx86;AVG Free On-access Scanner Minifilter Driver x86; C:\Windows\System32\Drivers\avgmfx86.sys [2009-11-26 28424]
    R1 AvgTdiX;AVG Free Network Redirector; C:\Windows\System32\Drivers\avgtdix.sys [2009-11-26 360584]
    R1 DritekPortIO;Dritek General Port I/O; \??\C:\PROGRA~1\LAUNCH~1\DPortIO.sys [2006-11-02 20112]
    R2 {49DE1C67-83F8-4102-99E0-C16DCC7EEC796};{49DE1C67-83F8-4102-99E0-C16DCC7EEC796}; \??\C:\Program Files\Acer Arcade Deluxe\Play Movie\000.fcl [2008-01-04 41456]
    R2 CVPNDRVA;Cisco Systems Inc. IPSec Driver; \??\C:\Windows\system32\Drivers\CVPNDRVA.sys [2007-04-03 306295]
    R2 int15;int15; \??\C:\Acer\Empowering Technology\eRecovery\int15.sys [2007-07-03 15392]
    R2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2006-06-19 12672]
    R2 PSDNServ;PSDNServ; C:\Windows\system32\DRIVERS\PSDNServ.sys [2008-01-03 16432]
    R2 psdvdisk;PSDVdisk; C:\Windows\system32\DRIVERS\PSDVdisk.sys [2008-01-03 59952]
    R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2007-08-08 45568]
    R2 rimsptsk;rimsptsk; C:\Windows\system32\DRIVERS\rimsptsk.sys [2007-07-30 43008]
    R2 rismxdp;Ricoh xD-Picture Card Driver; C:\Windows\system32\DRIVERS\rixdptsk.sys [2007-07-30 38400]
    R2 XAudio;XAudio; C:\Windows\system32\DRIVERS\xaudio.sys [2007-01-30 8704]
    R3 ApfiltrService;Alps Pointing-device Filter Driver; C:\Windows\system32\DRIVERS\Apfiltr.sys [2007-12-11 163376]
    R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2009-09-30 1184768]
    R3 CmBatt;Microsoft-Netzteiltreiber; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-21 14208]
    R3 DKbFltr;Dritek Keyboard Filter Driver; C:\Windows\system32\DRIVERS\DKbFltr.sys [2006-11-02 21264]
    R3 DNE;Deterministic Network Enhancer Miniport; C:\Windows\system32\DRIVERS\dne2000.sys [2007-01-31 127376]
    R3 enecir;ENE CIR Receiver; C:\Windows\system32\DRIVERS\enecir.sys [2007-03-07 32256]
    R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2009-01-15 23848]
    R3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\HSX_DPV.sys [2007-04-26 984064]
    R3 HSXHWAZL;HSXHWAZL; C:\Windows\system32\DRIVERS\HSXHWAZL.sys [2007-04-26 208384]
    R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2007-09-05 1953944]
    R3 NTIDrvr;Upper Class Filter Driver; C:\Windows\system32\DRIVERS\NTIDrvr.sys [2008-03-25 6144]
    R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2008-04-03 7444672]
    R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2009-04-11 89088]
    R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2007-08-02 1749376]
    R3 winachsf;winachsf; C:\Windows\system32\DRIVERS\HSX_CNXT.sys [2007-04-26 660480]
    R3 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys [2008-01-21 11264]
    S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2007-07-22 180736]
    S3 CVirtA;Cisco Systems VPN Adapter; C:\Windows\system32\DRIVERS\CVirtA.sys [2007-01-18 5275]
    S3 drmkaud;Microsoft Kernel-DRM-Audioentschlüsselung; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
    S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2009-08-05 54632]
    S3 HdAudAddService;Microsoft 1.1 UAA-Funktionstreiber für High Definition Audio-Dienst; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
    S3 HSFHWAZL;HSFHWAZL; C:\Windows\system32\DRIVERS\VSTAZL3.SYS [2008-01-21 200704]
    S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
    S3 MSPCLOCK;Microsoft Proxy für Streaming Clock; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
    S3 MSPQM;Microsoft Proxy für Streaming Quality Manager; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
    S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink-Konvertierung; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
    S3 NETw3v32;Intel(R) PRO/Wireless 3945ABG-Adaptertreiber für Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\NETw3v32.sys [2008-01-21 2225664]
    S3 NETw4v32;Intel(R) Wireless WiFi Link Adaptertreiber für Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\NETw4v32.sys [2007-12-29 2252800]
    S3 nmwcd;Nokia USB Phone Parent; C:\Windows\system32\drivers\ccdcmb.sys [2008-05-02 17536]
    S3 nmwcdc;Nokia USB Generic; C:\Windows\system32\drivers\ccdcmbo.sys [2008-05-02 20864]
    S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerflt.sys [2008-05-02 8064]
    S3 usbser;Nokia USB Serial Port; C:\Windows\system32\DRIVERS\usbser.sys [2009-04-11 27648]
    S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltj.sys [2008-05-02 8064]
    S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448]
    S3 WSVD;WSVD; \??\C:\Windows\system32\drivers\WSVD.sys [2007-12-16 75776]
    S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-21 83328]
    S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656]
    S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]
    
    ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
    
    R2 ALaunchService;ALaunch Service; C:\Acer\ALaunch\ALaunchSvc.exe [2007-09-19 51200]
    R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2009-03-05 132424]
    R2 avg9wd;AVG Free WatchDog; C:\Program Files\AVG\AVG9\avgwdsvc.exe [2009-11-26 285392]
    R2 Bonjour Service;Bonjour-Dienst; C:\Program Files\Bonjour\mDNSResponder.exe [2008-12-12 238888]
    R2 CVPND;Cisco Systems, Inc. VPN Service; C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe [2007-04-03 1516584]
    R2 eDataSecurity Service;eDataSecurity Service; C:\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe [2008-03-05 497712]
    R2 eLockService;eLock Service; C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe [2007-10-01 24576]
    R2 eNet Service;eNet Service; C:\Acer\Empowering Technology\eNet\eNet Service.exe [2007-12-20 131072]
    R2 eRecoveryService;eRecovery Service; C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe [2007-09-10 57344]
    R2 eSettingsService;eSettings Service; C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe [2007-12-19 24576]
    R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe [2007-07-12 354840]
    R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2007-01-17 61440]
    R2 MobilityService;MobilityService; C:\Acer\Mobility Center\MobilityService.exe [2007-11-27 110592]
    R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2008-04-03 118784]
    R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files\CyberLink\Shared Files\RichVideo.exe [2007-12-04 266343]
    R2 WMIService;ePower Service; C:\Acer\Empowering Technology\ePower\ePowerSvc.exe [2007-09-20 167936]
    R2 XAudioService;XAudioService; C:\Windows\system32\DRIVERS\xaudio.exe [2007-01-30 386560]
    R2 YahooAUService;Yahoo! Updater; C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe [2008-11-09 602392]
    R3 iPod Service;iPod-Dienst; C:\Program Files\iPod\bin\iPodService.exe [2009-03-12 656168]
    S3 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-21 21504]
    S3 fsssvc;Service Windows Live Contrôle parental; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2009-08-05 704864]
    S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2007-08-24 68464]
    S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2007-08-24 443776]
    S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
    S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2007-02-08 212480]
    
    -----------------EOF-----------------
    und info file
    Code:
    info.txt logfile of random's system information tool 1.06 2010-01-13 15:49:17
    
    ======Uninstall list======
    
    -->C:\PROGRA~1\Yahoo!\Common\UNYT_W~1.EXE
    -->C:\Program Files\DivX\DivXConverterUninstall.exe /CONVERTER
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{31403E22-2FDB-452F-AE9E-20854633226D}\SetXX.exe"  -uninst 
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A450831D-25F6-4F42-9662-D000B25E0D82}\Setup.exe"  -uninstall
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{AA4BF92B-2AAF-11DA-9D78-000129760D75}\setup.exe"  -uninstall
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{B145EC69-66F5-11D8-9D75-000129760D75}\setup.exe"  -uninstall
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{B804C424-B66D-447A-84BD-C6B88C392C3A}\setup.exe"  -uninstall
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F79A208D-D929-11D9-9D77-000129760D75}\setup.exe"  -uninstall
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0015-0407-0000-0000000FF1CE} /uninstall {DCBECE36-8F23-4B33-925E-A1C6183C0DBD}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0016-0407-0000-0000000FF1CE} /uninstall {DCBECE36-8F23-4B33-925E-A1C6183C0DBD}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0018-0407-0000-0000000FF1CE} /uninstall {DCBECE36-8F23-4B33-925E-A1C6183C0DBD}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0019-0407-0000-0000000FF1CE} /uninstall {DCBECE36-8F23-4B33-925E-A1C6183C0DBD}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001A-0407-0000-0000000FF1CE} /uninstall {DCBECE36-8F23-4B33-925E-A1C6183C0DBD}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001B-0407-0000-0000000FF1CE} /uninstall {DCBECE36-8F23-4B33-925E-A1C6183C0DBD}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0407-0000-0000000FF1CE} /uninstall {2AB528A5-BB1B-4EBE-8E51-AD0C4CD33CA9}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {3EC77D26-799B-4CD8-914F-C1565E796173}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {430971B1-C31E-45DA-81E0-72C095BAB72C}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0410-0000-0000000FF1CE} /uninstall {58FC5E37-DD28-4D4A-A549-125744C6763C}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {BEE75E01-DD3F-4D5F-B96C-609E6538D419}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0044-0407-0000-0000000FF1CE} /uninstall {DCBECE36-8F23-4B33-925E-A1C6183C0DBD}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-006E-0407-0000-0000000FF1CE} /uninstall {888B9AC7-8F5C-456B-A27A-157A6C310E52}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-00A1-0407-0000-0000000FF1CE} /uninstall {DCBECE36-8F23-4B33-925E-A1C6183C0DBD}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-00BA-0407-0000-0000000FF1CE} /uninstall {DCBECE36-8F23-4B33-925E-A1C6183C0DBD}
    Acer Arcade Deluxe-->C:\Program Files\InstallShield Installation Information\{EFBDC2B0-FAA8-4B78-8DE1-AEBE7958FA37}\Setup.exe -uninstall
    Acer Crystal Eye webcam Ver:1.1.57.409-->C:\Program Files\InstallShield Installation Information\{D0ACE89D-EC7F-470F-80BE-4C98ED366B32}\setup.exe -runfromtemp -l0x0007 -removeonly
    Acer Crystal Eye webcam-->C:\Program Files\InstallShield Installation Information\{399C37FB-08AF-493B-BFED-20FBD85EDF7F}\setup.exe -runfromtemp -l0x0007 -removeonly -u
    Acer eAudio Management-->"C:\Program Files\InstallShield Installation Information\{57265292-228A-41FA-9AEC-4620CBCC2739}\Setup.exe" -uninstall
    Acer eDataSecurity Management-->C:\Acer\Empowering Technology\eDataSecurity\x86\eDSnstHelper.exe -Operation UNINSTALL
    Acer eLock Management-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{116FF17B-1A30-4FC2-9B01-5BC5BD46B0B3}\setup.exe" -l0x7  -removeonly
    Acer Empowering Technology-->"C:\Program Files\InstallShield Installation Information\{AB6097D9-D722-4987-BD9E-A076E2848EE2}\setup.exe" -runfromtemp -l0x0007 -removeonly
    Acer eNet Management-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C06554A1-2C1E-4D20-B613-EE62C79927CC}\setup.exe" -l0x7  -removeonly
    Acer ePower Management-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{58E5844B-7CE2-413D-83D1-99294BF6C74F}\setup.exe" -l0x7  -removeonly
    Acer ePresentation Management-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{BF839132-BD43-4056-ACBF-4377F4A88E2A}\setup.exe" -l0x7  -removeonly
    Acer eSettings Management-->"C:\Program Files\InstallShield Installation Information\{CE65A9A0-9686-45C6-9098-3C9543A412F0}\setup.exe" -runfromtemp -l0x0007 -removeonly
    Acer GameZone Console 2.0.1.1-->"C:\Program Files\Acer GameZone\GameConsole\unins000.exe"
    Acer GridVista-->C:\Windows\UnInst32.exe GridV.UNI
    Acer Mobility Center Plug-In-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{11316260-6666-467B-AC34-183FCB5D4335}\setup.exe" -l0x7  -removeonly
    Acer ScreenSaver-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{79DD56FC-DB8B-47F5-9C80-78B62E05F9BC}\setup.exe" -l0x9  -removeonly
    Adobe Flash Player 10 ActiveX-->C:\Windows\system32\Macromed\Flash\uninstall_activeX.exe
    Adobe Flash Player 10 Plugin-->C:\Windows\system32\Macromed\Flash\uninstall_plugin.exe
    Adobe Reader 9.1.1 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A91000000001}
    Adobe Reader 9.2 - Deutsch-->MsiExec.exe /I{AC76BA86-7AD7-1031-7B44-A92000000001}
    Agatha Christie Death on the Nile-->"C:\Program Files\Acer GameZone\Agatha Christie Death on the Nile\Uninstall.exe" "C:\Program Files\Acer GameZone\Agatha Christie Death on the Nile\install.log"
    Alice Greenfingers-->"C:\Program Files\Acer GameZone\Alice Greenfingers\Uninstall.exe" "C:\Program Files\Acer GameZone\Alice Greenfingers\install.log"
    ALPS Touch Pad Driver-->C:\Program Files\Apoint2K\Uninstap.exe ADDREMOVE
    Apple Mobile Device Support-->MsiExec.exe /I{162B71B8-8464-4680-A086-601D555B331D}
    Apple Software Update-->MsiExec.exe /I{6956856F-B6B3-4BE0-BA0B-8F495BE32033}
    Applian FLV Player-->"C:\Windows\Applian FLV Player\uninstall.exe" "/U:C:\Program Files\FLV Player\Uninstall\uninstall.xml"
    Atmosphere Lite v6.0-->"C:\Program Files\Atmosphere Lite\unins000.exe"
    AVG Free 9.0-->C:\Program Files\AVG\AVG9\setup.exe /UNINSTALL
    Azada-->"C:\Program Files\Acer GameZone\Azada\Uninstall.exe" "C:\Program Files\Acer GameZone\Azada\install.log"
    Backspin Billiards-->"C:\Program Files\Acer GameZone\Backspin Billiards\Uninstall.exe" "C:\Program Files\Acer GameZone\Backspin Billiards\install.log"
    Bonjour-->MsiExec.exe /I{07287123-B8AC-41CE-8346-3D777245C35B}
    Bricks of Egypt-->"C:\Program Files\Acer GameZone\Bricks of Egypt\Uninstall.exe" "C:\Program Files\Acer GameZone\Bricks of Egypt\install.log"
    Cake Mania-->"C:\Program Files\Acer GameZone\Cake Mania\Uninstall.exe" "C:\Program Files\Acer GameZone\Cake Mania\install.log"
    CCScore-->MsiExec.exe /I{B4B44FE7-41FF-4DAD-8C0A-E406DDA72992}
    Chicken Invaders 3-->"C:\Program Files\Acer GameZone\Chicken Invaders 3\Uninstall.exe" "C:\Program Files\Acer GameZone\Chicken Invaders 3\install.log"
    Chuzzle-->"C:\Program Files\Acer GameZone\Chuzzle\Uninstall.exe" "C:\Program Files\Acer GameZone\Chuzzle\install.log"
    Cisco Systems VPN Client 5.0.00.0340-->MsiExec.exe /X{CCBAA1F7-E5E1-48B2-9ED9-A79C6A37CE78}
    Diner Dash Flo on the Go-->"C:\Program Files\Acer GameZone\Diner Dash Flo on the Go\Uninstall.exe" "C:\Program Files\Acer GameZone\Diner Dash Flo on the Go\install.log"
    DivX Codec-->C:\Program Files\DivX\DivXCodecUninstall.exe /CODEC
    DivX Converter-->C:\Program Files\DivX\DivXConverterUninstall.exe /CONVERTER
    DivX Player-->C:\Program Files\DivX\DivXPlayerUninstall.exe /PLAYER
    DivX Plus DirectShow Filters-->C:\Program Files\DivX\DivXDSFiltersUninstall.exe /DSFILTERS
    DivX Web Player-->C:\Program Files\DivX\DivXWebPlayerUninstall.exe /PLUGIN
    ESSBrwr-->MsiExec.exe /I{643EAE81-920C-4931-9F0B-4B343B225CA6}
    ESSCDBK-->MsiExec.exe /I{AE1FA02D-E6A4-4EA0-8E58-6483CAC016DD}
    ESScore-->MsiExec.exe /I{42938595-0D83-404D-9F73-F8177FDD531A}
    ESSgui-->MsiExec.exe /I{91517631-A9F3-4B7C-B482-43E0068FD55A}
    ESSini-->MsiExec.exe /I{8E92D746-CD9F-4B90-9668-42B74C14F765}
    ESSPCD-->MsiExec.exe /I{14D4ED84-6A9A-45A0-96F6-1753768C3CB5}
    ESSPDock-->MsiExec.exe /I{FCDB1C92-03C6-4C76-8625-371224256091}
    ESSSONIC-->MsiExec.exe /I{073F22CE-9A5B-4A40-A604-C7270AC6BF34}
    ESSTOOLS-->MsiExec.exe /I{8A502E38-29C9-49FA-BCFA-D727CA062589}
    essvatgt-->MsiExec.exe /I{2D03B6F8-DF36-4980-B7B6-5B93D5BA3A8F}
    Favorit-->c:\users\esso\appdata\local\qmhdgdha.bat
    Galerie de photos Windows Live-->MsiExec.exe /X{B131E59D-202C-43C6-84C9-68F0C37541F1}
    HDAUDIO Soft Data Fax Modem with SmartCP-->C:\Program Files\CONEXANT\CNXT_MODEM_HDAUDIO_VEN_14F1&DEV_2BFAOR2C06_118\UIU32m.exe -U -IAcrZUn32z.inf
    HijackThis 2.0.2-->"C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall  /qb+ REBOOTPROMPT=""
    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
    ICQ6.5-->"C:\Program Files\InstallShield Installation Information\{60DE4033-9503-48D1-A483-7846BD217CA9}\setup.exe" -runfromtemp -l0x0009 -removeonly
    Installation Windows Live-->C:\Program Files\Windows Live\Installer\wlarp.exe
    Installation Windows Live-->MsiExec.exe /I{46ABBC54-1872-4AA3-95E2-F2C063A63F31}
    Intel(R) Matrix Storage Manager-->C:\Windows\System32\Imsmudlg.exe
    iTunes-->MsiExec.exe /I{C26B06A9-27BB-45B0-9873-9C623EC2BA38}
    jetAudio Basic VX-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{DF8195AF-8E6F-4487-A0EE-196F7E3F4B8A}\setup.exe" -l0x7  -removeonly
    Jewel Quest Solitaire-->"C:\Program Files\Acer GameZone\Jewel Quest Solitaire\Uninstall.exe" "C:\Program Files\Acer GameZone\Jewel Quest Solitaire\install.log"
    Junk Mail filter update-->MsiExec.exe /I{E2DFE069-083E-4631-9B6C-43C48E991DE5}
    kgcbaby-->MsiExec.exe /I{E18B549C-5D15-45DA-8D8F-8FD2BD946344}
    kgcbase-->MsiExec.exe /I{F22C222C-3CE2-4A4B-A83F-AF4681371ABE}
    kgchday-->MsiExec.exe /I{11F3F858-4131-4FFA-A560-3FE282933B6E}
    kgchlwn-->MsiExec.exe /I{03EDED24-8375-407D-A721-4643D9768BE1}
    kgcinvt-->MsiExec.exe /I{9BD54685-1496-46A5-AB62-357CD140ED8B}
    kgckids-->MsiExec.exe /I{693C08A7-9E76-43FF-B11E-9A58175474C4}
    kgcmove-->MsiExec.exe /I{A1588373-1D86-4D44-86C9-78ABD190F9CC}
    kgcvday-->MsiExec.exe /I{8A8664E1-84C8-4936-891C-BC1F07797549}
    Kick N Rush-->"C:\Program Files\Acer GameZone\Kick N Rush\Uninstall.exe" "C:\Program Files\Acer GameZone\Kick N Rush\install.log"
    Lab Enigma-->"C:\Program Files\MyPlayCity.com\Lab Enigma\unins000.exe"
    Launch Manager-->C:\Windows\UnInst32.exe LManager.UNI
    Logiciel Kodak EasyShare-->C:\ProgramData\Kodak\EasyShareSetup\$SETUP_140002_678354\Setup.exe /APR-REMOVE
    Mad Medley Battle-->"I:\nouveaux\Mad Medley Battle\unins000.exe"
    Mahjong Escape Ancient China-->"C:\Program Files\Acer GameZone\Mahjong Escape Ancient China\Uninstall.exe" "C:\Program Files\Acer GameZone\Mahjong Escape Ancient China\install.log"
    Mahjongg Artifacts-->"C:\Program Files\Acer GameZone\Mahjongg Artifacts\Uninstall.exe" "C:\Program Files\Acer GameZone\Mahjongg Artifacts\install.log"
    MediaBar 2.0-->C:\Program Files\Shareaza Applications\Shareaza MediaBar\Uninstall.exe
    Microsoft .NET Framework 3.5 Language Pack SP1 - DEU-->C:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - deu\setup.exe
    Microsoft .NET Framework 3.5 Language Pack SP1 - deu-->MsiExec.exe /I{052FDD78-A6EA-3187-8386-C82F4CA3A929}
    Microsoft .NET Framework 3.5 SP1-->C:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
    Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
    Microsoft Choice Guard-->MsiExec.exe /X{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}
    Microsoft Office Access MUI (German) 2007-->MsiExec.exe /X{90120000-0015-0407-0000-0000000FF1CE}
    Microsoft Office Enterprise 2007-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall ENTERPRISE /dll OSETUP.DLL
    Microsoft Office Enterprise 2007-->MsiExec.exe /X{90120000-0030-0000-0000-0000000FF1CE}
    Microsoft Office Excel MUI (German) 2007-->MsiExec.exe /X{90120000-0016-0407-0000-0000000FF1CE}
    Microsoft Office Groove MUI (German) 2007-->MsiExec.exe /X{90120000-00BA-0407-0000-0000000FF1CE}
    Microsoft Office InfoPath MUI (German) 2007-->MsiExec.exe /X{90120000-0044-0407-0000-0000000FF1CE}
    Microsoft Office OneNote MUI (German) 2007-->MsiExec.exe /X{90120000-00A1-0407-0000-0000000FF1CE}
    Microsoft Office Outlook Connector-->MsiExec.exe /I{95120000-0122-040C-0000-0000000FF1CE}
    Microsoft Office Outlook MUI (German) 2007-->MsiExec.exe /X{90120000-001A-0407-0000-0000000FF1CE}
    Microsoft Office PowerPoint MUI (German) 2007-->MsiExec.exe /X{90120000-0018-0407-0000-0000000FF1CE}
    Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
    Microsoft Office Proof (French) 2007-->MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
    Microsoft Office Proof (German) 2007-->MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}
    Microsoft Office Proof (Italian) 2007-->MsiExec.exe /X{90120000-001F-0410-0000-0000000FF1CE}
    Microsoft Office Proofing (German) 2007-->MsiExec.exe /X{90120000-002C-0407-0000-0000000FF1CE}
    Microsoft Office Publisher MUI (German) 2007-->MsiExec.exe /X{90120000-0019-0407-0000-0000000FF1CE}
    Microsoft Office Shared MUI (German) 2007-->MsiExec.exe /X{90120000-006E-0407-0000-0000000FF1CE}
    Microsoft Office Word MUI (German) 2007-->MsiExec.exe /X{90120000-001B-0407-0000-0000000FF1CE}
    Microsoft redistributable runtime DLLs VS2005 SP1(x86)-->MsiExec.exe /I{8E770F99-CF23-4BF9-BF4E-E3A2924FEB27}
    Microsoft redistributable runtime DLLs VS2005(x86)-->MsiExec.exe /I{C0DB380B-97B5-4BB8-AC8D-1835E61439B6}
    Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
    Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
    Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053-->MsiExec.exe /X{770657D0-A123-3C07-8E44-1C83EC895118}
    Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{837b34e3-7c30-493c-8f6a-2b0f04e2912c}
    Microsoft Works-->MsiExec.exe /I{4EA2F95F-A537-4D17-9E7F-6B3FF8D9BBE3}
    Module de compatibilité pour Microsoft Office System 2007-->MsiExec.exe /X{90120000-0020-040C-0000-0000000FF1CE}
    Mozilla Firefox (3.5.7)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
    MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
    MSXML 4.0 SP2 (KB936181)-->MsiExec.exe /I{C04E32E0-0416-434D-AFB9-6969D703A9EF}
    MSXML 4.0 SP2 (KB941833)-->MsiExec.exe /I{C523D256-313D-4866-B36A-F3DE528246EF}
    MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
    MSXML 4.0 SP2 (KB973688)-->MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
    MyPlayCity Toolbar-->C:\PROGRA~1\MYPLAY~1\UNWISE.EXE C:\PROGRA~1\MYPLAY~1\INSTALL.LOG
    Mystery Case Files - Huntsville-->"C:\Program Files\Acer GameZone\Mystery Case Files - Huntsville\Uninstall.exe" "C:\Program Files\Acer GameZone\Mystery Case Files - Huntsville\install.log"
    Mystery Solitaire - Secret Island-->"C:\Program Files\Acer GameZone\Mystery Solitaire - Secret Island\Uninstall.exe" "C:\Program Files\Acer GameZone\Mystery Solitaire - Secret Island\install.log"
    Need For Extreme 3D-->"C:\Program Files\MyPlayCity.com\Need For Extreme 3D\unins000.exe"
    netbrdg-->MsiExec.exe /I{4537EA4B-F603-4181-89FB-2953FC695AB1}
    Nokia Connectivity Cable Driver-->MsiExec.exe /X{972B1D9B-0EAD-49E8-B7D6-3B83FD5665B1}
    Nokia Connectivity Cable Driver-->RUNDLL32.EXE nsesetup.dll,DoNTUninst
    Nokia Lifeblog 2.5-->MsiExec.exe /I{E94603CA-2996-4154-8EE2-A5FCD4BFB500}
    Nokia NSeries Content Copier-->MsiExec.exe /X{F779EC8D-6703-4C4A-817C-37B07898E647}
    Nokia NSeries Multimedia Player-->MsiExec.exe /I{FA25FAF6-3097-43C9-BBB2-A77CE8AF1881}
    Nokia NSeries Music Manager-->MsiExec.exe /I{F89E5AD8-AE47-49B5-B9F9-C498791E6255}
    Nokia NSeries One Touch Access-->MsiExec.exe /I{F4EE8763-EAA8-4BC1-8594-8501F5F00414}
    Nokia NSeries System Utilities-->MsiExec.exe /X{96E94E18-54D6-42C1-8FC4-24DACEDC3395}
    NTI Backup NOW! 4.7-->C:\Program Files\InstallShield Installation Information\{1598034D-7147-432C-8CA8-888E0632D124}\setup.exe -runfromtemp -l0x0407
    NTI CD & DVD-Maker-->C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{1577A05B-EE62-4BBC-9DB7-FE748FA44EC2} /l1031 CDM7
    NVIDIA Drivers-->C:\Windows\system32\NVUNINST.EXE UninstallGUI
    OfotoXMI-->MsiExec.exe /I{B162D0A6-9A1D-4B7C-91A5-88FB48113C45}
    Opera 10.10-->MsiExec.exe /X{FB8148DD-C575-4B0A-9F6C-0CFC46937930}
    Outil de téléchargement Windows Live-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
    PC Connectivity Solution-->MsiExec.exe /I{6094AB91-4CC8-498E-9DFF-134CC0B159DE}
    PowerProducer-->"C:\Program Files\InstallShield Installation Information\{B7A0CE06-068E-11D6-97FD-0050BACBF861}\Setup.exe" -uninstall
    QuickTime-->MsiExec.exe /I{216AB108-2AE1-4130-B3D5-20B2C4C80F8F}
    Realtek High Definition Audio Driver-->RtlUpd.exe -r -m
    Replay Converter 3-->"C:\Windows\Replay Converter 3\uninstall.exe" "/U:C:\Program Files\Replay Converter 3\Uninstall\ReplayConverrter3Uninstall.xml"
    Replay Media Catcher 3.0-->"C:\Windows\Replay Media Catcher\uninstall.exe" "/U:C:\Program Files\Replay Media Catcher\Uninstall\uninstall.xml"
    RICOH R5C83x/84x Flash Media Controller Driver Ver.3.52.02-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{59F6A514-9813-47A3-948C-8A155460CC2A}\setup.exe" -l0x7 anything
    SAP GUI 7.10-->"C:\Program Files\SAP\SAPsetup\setup\NwSapSetup.exe" /product="SAPGUI710" /uninstall
    Security Update for 2007 Microsoft Office System (KB951550)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {B243E9A5-ED77-4F1B-B338-2486FD82DC85}
    Security Update for 2007 Microsoft Office System (KB951944)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {797AE457-BA17-4BBC-B501-25FB3A0103C7}
    Security Update for Microsoft Office Excel 2007 (KB959997)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {9EAC3AEC-5C81-4856-A05B-DE9DC236D740}
    Security Update for Microsoft Office OneNote 2007 (KB950130)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {F1B2401C-B610-4BF2-AA1C-52C55827A8F4}
    Security Update for Microsoft Office PowerPoint 2007 (KB951338)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {558B709B-821B-4FC5-90FC-9A8890641E77}
    Security Update for Microsoft Office Publisher 2007 (KB950114)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {F9C3CDBA-1F00-4D4D-959D-75C9D3ACDD85}
    Security Update for Microsoft Office Word 2007 (KB956358)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {4551666D-0FD6-4C69-8A81-1C6F2E64517C}
    SFR-->MsiExec.exe /I{DB02F716-6275-42E9-B8D2-83BA2BF5100B}
    SHASTA-->MsiExec.exe /I{605A4E39-613C-4A12-B56F-DEFBE6757237}
    skin0001-->MsiExec.exe /I{5316DFC9-CE99-4458-9AB3-E8726EDE0210}
    SKINXSDK-->MsiExec.exe /I{F4A2E7CC-60CA-4AFA-B67F-AD5E58173C3F}
    Skype™ 4.0-->MsiExec.exe /X{24D753CA-6AE9-4E30-8F5F-EFC93E08BF3D}
    staticcr-->MsiExec.exe /I{8943CE61-53BD-475E-90E1-A580869E98A2}
    tooltips-->MsiExec.exe /I{E79987F0-0E34-42CC-B8FF-6C860AEEB26A}
    Turbo Pizza-->"C:\Program Files\Acer GameZone\Turbo Pizza\Uninstall.exe" "C:\Program Files\Acer GameZone\Turbo Pizza\install.log"
    Update for 2007 Microsoft Office System (KB967642)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {C444285D-5E4F-48A4-91DD-47AAAA68E92D}
    Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=""
    Update for Microsoft Office Outlook 2007 (KB952142)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {4AD3A076-427C-491F-A5B7-7D1DE788A756}
    Update for Outlook 2007 Junk Email Filter (kb975960)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {F1AB1BED-7477-4D5A-BD0C-04C2109459A5}
    Update für Microsoft Office Excel 2007 Help (KB963678)-->msiexec /package {90120000-0016-0407-0000-0000000FF1CE} /uninstall {BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}
    Update für Microsoft Office Outlook 2007 Help (KB963677)-->msiexec /package {90120000-001A-0407-0000-0000000FF1CE} /uninstall {F6828576-6F79-470D-AB50-69D1BBADBD30}
    Update für Microsoft Office Powerpoint 2007 Help (KB963669)-->msiexec /package {90120000-0018-0407-0000-0000000FF1CE} /uninstall {EA160DA3-E9B5-4D03-A518-21D306665B96}
    Update für Microsoft Office Word 2007 Help (KB963665)-->msiexec /package {90120000-001B-0407-0000-0000000FF1CE} /uninstall {38472199-D7B6-4833-A949-10E4EE6365A1}
    VC80CRTRedist - 8.0.50727.762-->MsiExec.exe /I{767CC44C-9BBC-438D-BAD3-FD4595DD148B}
    Veoh Video Compass-->C:\Program Files\Veoh Networks\Veoh Video Compass\uninst.exe
    Veoh Web Player Beta-->"C:\Program Files\Veoh Networks\VeohWebPlayer\uninst.exe"
    VideoLAN VLC media player 0.8.6i-->C:\Program Files\VideoLAN\VLC\uninstall.exe
    VPRINTOL-->MsiExec.exe /I{999D43F4-9709-4887-9B1A-83EBB15A8370}
    Windows Live Anmelde-Assistent-->MsiExec.exe /I{83E2CFA9-E0EB-4E08-9F85-43E577FF3D60}
    Windows Live Call-->MsiExec.exe /I{82C7B308-0BDD-49D8-8EA5-9CD3A3F9DF41}
    Windows Live Communications Platform-->MsiExec.exe /I{ED00D08A-3C5F-488D-93A0-A04F21F23956}
    Windows Live Contrôle parental-->MsiExec.exe /X{D5D81435-B8DE-4CAF-867F-7998F2B92CFC}
    Windows Live FolderShare-->MsiExec.exe /X{2075CB0A-D26F-4DAA-B424-5079296B43BA}
    Windows Live Mail-->MsiExec.exe /I{5DD76286-9BE7-4894-A990-E905E91AC818}
    Windows Live Messenger-->MsiExec.exe /X{770F1BEC-2871-4E70-B837-FB8525FFA3B1}
    Windows Live Writer-->MsiExec.exe /X{4634B21A-CC07-4396-890C-2B8168661FEA}
    Windows Media Player Firefox Plugin-->MsiExec.exe /I{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}
    WinRAR-->C:\Program Files\WinRAR\uninstall.exe
    WIRELESS-->MsiExec.exe /I{F9593CFB-D836-49BC-BFF1-0E669A411D9F}
    Yahoo! Messenger-->C:\PROGRA~1\Yahoo!\MESSEN~1\UNWISE.EXE /U C:\PROGRA~1\Yahoo!\MESSEN~1\INSTALL.LOG
    Yahoo! Software Update-->C:\PROGRA~1\Yahoo!\SOFTWA~1\UNINST~1.EXE
    Yahoo! Toolbar-->C:\PROGRA~1\Yahoo!\Common\UNYT_W~1.EXE
    
    ======System event log======
    
    Computer Name: esso-PC
    Event Code: 51
    Message: Bei einem Auslagerungsvorgang wurde ein Fehler festgestellt. Betroffen ist Gerät \Device\Harddisk0\DR0.
    Record Number: 709064
    Source Name: disk
    Time Written: 20091228150101.148538-000
    Event Type: Warnung
    User: 
    
    Computer Name: esso-PC
    Event Code: 51
    Message: Bei einem Auslagerungsvorgang wurde ein Fehler festgestellt. Betroffen ist Gerät \Device\Harddisk0\DR0.
    Record Number: 709063
    Source Name: disk
    Time Written: 20091228150101.148538-000
    Event Type: Warnung
    User: 
    
    Computer Name: esso-PC
    Event Code: 51
    Message: Bei einem Auslagerungsvorgang wurde ein Fehler festgestellt. Betroffen ist Gerät \Device\Harddisk0\DR0.
    Record Number: 709062
    Source Name: disk
    Time Written: 20091228150101.148538-000
    Event Type: Warnung
    User: 
    
    Computer Name: esso-PC
    Event Code: 51
    Message: Bei einem Auslagerungsvorgang wurde ein Fehler festgestellt. Betroffen ist Gerät \Device\Harddisk0\DR0.
    Record Number: 709061
    Source Name: disk
    Time Written: 20091228150101.148538-000
    Event Type: Warnung
    User: 
    
    Computer Name: esso-PC
    Event Code: 51
    Message: Bei einem Auslagerungsvorgang wurde ein Fehler festgestellt. Betroffen ist Gerät \Device\Harddisk0\DR0.
    Record Number: 709060
    Source Name: disk
    Time Written: 20091228150101.147538-000
    Event Type: Warnung
    User: 
    
    =====Application event log=====
    
    Computer Name: esso-PC
    Event Code: 3013
    Message: Eintrag <C:\USERS\ESSO\VIDEOS\VEOH\VEOHD198EDD2BEA84B68B239D2F2E979B81F.VIDEOS-JOURNAL> in der Hash-Zuordnung kann nicht aktualisiert werden.
    
    Kontext:  Anwendung, SystemIndex Katalog
    
    Details:
        Ein an das System angeschlossenes Gerät funktioniert nicht.   (0x8007001f)
    
    Record Number: 21432
    Source Name: Microsoft-Windows-Search
    Time Written: 20090509062514.000000-000
    Event Type: Fehler
    User: 
    
    Computer Name: esso-PC
    Event Code: 3013
    Message: Eintrag <C:\USERS\ESSO\VIDEOS\VEOH\VEOHD198EDD2BEA84B68B239D2F2E979B81F.VIDEOS-JOURNAL> in der Hash-Zuordnung kann nicht aktualisiert werden.
    
    Kontext:  Anwendung, SystemIndex Katalog
    
    Details:
        Ein an das System angeschlossenes Gerät funktioniert nicht.   (0x8007001f)
    
    Record Number: 21431
    Source Name: Microsoft-Windows-Search
    Time Written: 20090509062510.000000-000
    Event Type: Fehler
    User: 
    
    Computer Name: esso-PC
    Event Code: 1
    Message: Nokia Software Launcher 1.6.80 (NLib 0.6.213)
    
    Das System kann die angegebene Datei nicht finden.
        errorcode:    -2147024894
        File:    c:\Images\icon_exclamation.png
    
    Stack trace:
        .\NSLauncher.cpp(266) : wWinMain
        .\NImage.cpp(51) : CNImage::Load
        .\NFileUtilities.cpp(131) : CNFileUtilities::CheckFileExists
        .\NFileUtilities.cpp(127) : CNFileUtilities::CheckFileExists
    
    Record Number: 21430
    Source Name: Nokia Software Launcher
    Time Written: 20090509062424.000000-000
    Event Type: Fehler
    User: 
    
    Computer Name: esso-PC
    Event Code: 1
    Message: Nokia Software Launcher 1.6.80 (NLib 0.6.213)
    
    Das System kann die angegebene Datei nicht finden.
        errorcode:    -2147024894
        File:    c:\Images\top_bevel.png
        Filename:    c:\Images\top_bevel.png
    
    Stack trace:
        .\NSLImageHelpers.cpp(236) : CNSLImageHelpers::LoadImageW
        .\NImage.cpp(51) : CNImage::Load
        .\NFileUtilities.cpp(131) : CNFileUtilities::CheckFileExists
        .\NFileUtilities.cpp(127) : CNFileUtilities::CheckFileExists
    
    Record Number: 21429
    Source Name: Nokia Software Launcher
    Time Written: 20090509062418.000000-000
    Event Type: Fehler
    User: 
    
    Computer Name: esso-PC
    Event Code: 7500
    Message: Intel RAID Controller: Unknown Controller
    Number of Serial ATA ports: 3
     
    RAID Option ROM Version: Unknown
    Driver Version: 7.6.0.1011
    RAID Plug-In Version: 7.6.0.1011
    Language Resource Version of the RAID Plug-In: File not found
    Create Volume Wizard Version: 7.6.0.1011
    Language Resource Version of the Create Volume Wizard: File not found
    Create Volume from Existing Hard Drive Wizard Version: 7.6.0.1011
    Language Resource Version of the Create Volume from Existing Hard Drive Wizard: File not found
    Modify Volume Wizard Version: 7.6.0.1011
    Language Resource Version of the Modify Volume Wizard: File not found
    Delete Volume Wizard Version: 7.6.0.1011
    Language Resource Version of the Delete Volume Wizard: File not found
    ISDI Library Version: 7.6.0.1011
    Event Monitor User Notification Tool Version: 7.6.0.1011
    Language Resource Version of the Event Monitor User Notification Tool: File not found
    Event Monitor Version: 7.6.0.1011
     
    Hard Drive 0
    Usage: Unknown hard drive usage
    Status: Normal
    Device Port: 0
    Device Port Location: Internal
    Current Serial ATA Transfer Mode: Generation 1
    Model: WDC WD3200BEVT-22ZCT0
    Serial Number: WD-WXE308KC9664
    Firmware: 11.01A11
    Native Command Queuing Support: Yes
    System Hard Drive: Yes
    Size: 298 GB
    Physical Sector Size: 512 Bytes
    Logical Sector Size: 512 Bytes
     
    Unused Port 0
    Device Port: 1
    Device Port Location: Internal
     
    Unused Port 1
    Device Port: 2
    Device Port Location: Internal
    
    Record Number: 21428
    Source Name: IAANTmon
    Time Written: 20090509062414.000000-000
    Event Type: Informationen
    User: 
    
    =====Security event log=====
    
    Computer Name: esso-PC
    Event Code: 5038
    Message: Die Codeintegrität hat festgestellt, dass der Abbildhash einer Datei nicht gültig ist. Die Datei wurde möglicherweise durch eine nicht autorisierte Änderung beschädigt. Dieses Problem kann auch auf einen potenziellen Fehler des Datenträgergeräts hinweisen.
    
    Dateiname:    \Device\HarddiskVolume2\Program Files\McAfee\SiteAdvisor\sahook.dll    
    Record Number: 36216
    Source Name: Microsoft-Windows-Security-Auditing
    Time Written: 20090417025334.145000-000
    Event Type: Überwachung gescheitert
    User: 
    
    Computer Name: esso-PC
    Event Code: 5038
    Message: Die Codeintegrität hat festgestellt, dass der Abbildhash einer Datei nicht gültig ist. Die Datei wurde möglicherweise durch eine nicht autorisierte Änderung beschädigt. Dieses Problem kann auch auf einen potenziellen Fehler des Datenträgergeräts hinweisen.
    
    Dateiname:    \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\ink\tiptsf.dll    
    Record Number: 36215
    Source Name: Microsoft-Windows-Security-Auditing
    Time Written: 20090417025334.129000-000
    Event Type: Überwachung gescheitert
    User: 
    
    Computer Name: esso-PC
    Event Code: 5038
    Message: Die Codeintegrität hat festgestellt, dass der Abbildhash einer Datei nicht gültig ist. Die Datei wurde möglicherweise durch eine nicht autorisierte Änderung beschädigt. Dieses Problem kann auch auf einen potenziellen Fehler des Datenträgergeräts hinweisen.
    
    Dateiname:    \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\ink\tiptsf.dll    
    Record Number: 36214
    Source Name: Microsoft-Windows-Security-Auditing
    Time Written: 20090417025334.024000-000
    Event Type: Überwachung gescheitert
    User: 
    
    Computer Name: esso-PC
    Event Code: 5038
    Message: Die Codeintegrität hat festgestellt, dass der Abbildhash einer Datei nicht gültig ist. Die Datei wurde möglicherweise durch eine nicht autorisierte Änderung beschädigt. Dieses Problem kann auch auf einen potenziellen Fehler des Datenträgergeräts hinweisen.
    
    Dateiname:    \Device\HarddiskVolume2\Windows\System32\nvd3dum.dll    
    Record Number: 36213
    Source Name: Microsoft-Windows-Security-Auditing
    Time Written: 20090417025333.920000-000
    Event Type: Überwachung gescheitert
    User: 
    
    Computer Name: esso-PC
    Event Code: 5038
    Message: Die Codeintegrität hat festgestellt, dass der Abbildhash einer Datei nicht gültig ist. Die Datei wurde möglicherweise durch eine nicht autorisierte Änderung beschädigt. Dieses Problem kann auch auf einen potenziellen Fehler des Datenträgergeräts hinweisen.
    
    Dateiname:    \Device\HarddiskVolume2\Program Files\McAfee\SiteAdvisor\sahook.dll    
    Record Number: 36212
    Source Name: Microsoft-Windows-Security-Auditing
    Time Written: 20090417025333.795000-000
    Event Type: Überwachung gescheitert
    User: 
    
    ======Environment variables======
    
    "ComSpec"=%SystemRoot%\system32\cmd.exe
    "FP_NO_HOST_CHECK"=NO
    "OS"=Windows_NT
    "Path"=C:\Program Files\PC Connectivity Solution\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Acer\Empowering Technology\eDataSecurity\;C:\Acer\Empowering Technology\eDataSecurity\x86;C:\Acer\Empowering Technology\eDataSecurity\x64;C:\Program Files\QuickTime\QTSystem\;C:\Program Files\Common Files\DivX Shared\
    "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
    "PROCESSOR_ARCHITECTURE"=x86
    "TEMP"=%SystemRoot%\TEMP
    "TMP"=%SystemRoot%\TEMP
    "USERNAME"=SYSTEM
    "windir"=%SystemRoot%
    "PROCESSOR_LEVEL"=6
    "PROCESSOR_IDENTIFIER"=x86 Family 6 Model 15 Stepping 13, GenuineIntel
    "PROCESSOR_REVISION"=0f0d
    "NUMBER_OF_PROCESSORS"=2
    "TRACE_FORMAT_SEARCH_PATH"=\\NTREL202.ntdev.corp.microsoft.com\4F18C3A5-CA09-4DBD-B6FC-219FDD4C6BE0\TraceFormat
    "DFSTRACINGON"=FALSE
    "CLASSPATH"=.;C:\Program Files\QuickTime\QTSystem\QTJava.zip
    "QTJAVA"=C:\Program Files\QuickTime\QTSystem\QTJava.zip
    
    -----------------EOF-----------------
    punkt 2:
    Code:
     
                            $$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$ 
                            º                                    º 
                                        hjtscanlist v2.0              
                            º                                    º 
                            $$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$ 
    
    Microsoft Windows [Version 6.0.6002]
     
     
    C:
    
      13.01.2010 15:49     C:\rsit --------- 0   
           C:\hiberfil.sys ---------    
           C:\pagefile.sys ---------    
      13.01.2010 06:15     C:\Program Files --------- 32768   
      12.01.2010 10:25     C:\Windows --------- 40960   
      12.01.2010 10:17     C:\System Volume Information --------- 20480   
      02.01.2010 14:20     C:\found.013 --------- 0   
      02.01.2010 09:58     C:\found.012 --------- 0   
      30.12.2009 14:29     C:\found.011 --------- 0   
      29.12.2009 21:49     C:\QUARANTINE --------- 0   
      28.12.2009 16:27     C:\found.010 --------- 0   
      28.12.2009 06:34     C:\found.009 --------- 0   
      28.12.2009 06:19     C:\Boot --------- 4096   
      28.12.2009 05:03     C:\found.008 --------- 0   
      17.12.2009 08:17     C:\found.007 --------- 0   
      16.12.2009 10:38     C:\found.006 --------- 0   
      15.12.2009 22:52     C:\found.005 --------- 0   
      15.12.2009 12:29     C:\9ee3abbed71879af59910580498c16 --------- 0   
      13.12.2009 13:25     C:\found.004 --------- 0   
      11.12.2009 19:10     C:\ProgramData --------- 12288   
      29.11.2009 10:58     C:\found.003 --------- 0   
      25.11.2009 12:11     C:\$RECYCLE.BIN --------- 4096   
      25.11.2009 11:54     C:\$AVG --------- 0   
      24.08.2009 14:10     C:\found.002 --------- 0   
      12.08.2009 16:40     C:\MSOCache --------- 0   
      04.06.2009 18:47     C:\IO.SYS --------- 0   
      04.06.2009 18:47     C:\MSDOS.SYS --------- 0   
      31.05.2009 07:01     C:\found.001 --------- 0   
      17.04.2009 07:16     C:\EGIS_Drive --------- 0   
      11.04.2009 07:36     C:\bootmgr --------- 333257   
      27.03.2009 23:28     C:\found.000 --------- 0   
      15.03.2009 13:15     C:\MinGW --------- 0   
      02.12.2008 23:26     C:\BigFishGamesCache --------- 0   
      12.09.2008 10:31     C:\Acer --------- 4096   
      26.08.2008 14:50     C:\Convesoft --------- 0   
      26.08.2008 14:49     C:\Users --------- 4096   
      26.08.2008 14:45     C:\Programme --------- 0   
      26.08.2008 14:45     C:\Dokumente und Einstellungen --------- 0   
      25.03.2008 19:21     C:\BOOTSECT.BAK --------- 8192   
      25.03.2008 19:18     C:\DRV --------- 4096   
      25.03.2008 19:18     C:\Book --------- 0   
      25.03.2008 12:06     C:\setup.log --------- 86   
      25.03.2008 12:06     C:\bknowsetup.log --------- 704046   
      25.03.2008 11:50     C:\RHDSetup.log --------- 426   
      25.03.2008 11:43     C:\Intel --------- 0   
      21.01.2008 03:32     C:\PerfLogs --------- 0   
      13.09.2007 10:56     C:\MDR.iss --------- 512   
      02.11.2006 14:02     C:\Documents and Settings --------- 0   
      18.09.2006 22:43     C:\config.sys --------- 10   
      18.09.2006 22:43     C:\autoexec.bat --------- 24   
      16.08.2005 07:49     C:\junction.exe --------- 40960   
    ----------------------------------------
    
     
    C:\Windows
    
      13.01.2010 15:52     C:\Windows\WindowsUpdate.log --------- 1175971   
      13.01.2010 15:41     C:\Windows\bootstat.dat --------- 67584   
      06.01.2010 01:42     C:\Windows\setupact.log --------- 177910   
      05.01.2010 13:26     C:\Windows\DirectX.log --------- 117607   
      03.01.2010 02:07     C:\Windows\MEMORY.DMP --------- 325897184   
      16.12.2009 16:50     C:\Windows\PFRO.log --------- 2224570   
      13.12.2009 14:23     C:\Windows\ie8_main.log --------- 36102   
      08.12.2009 03:19     C:\Windows\win.ini --------- 219   
      26.11.2009 14:22     C:\Windows\NwSapSetup_vcredist_x86.log --------- 260130   
      25.11.2009 12:40     C:\Windows\msxml4-KB973688-enu.LOG --------- 279236   
      10.11.2009 08:34     C:\Windows\DPINST.LOG --------- 36778   
      17.08.2009 13:14     C:\Windows\ntbtlog.txt --------- 194214   
      10.07.2009 13:01     C:\Windows\WLXPGSS.SCR --------- 307560   
      11.04.2009 07:27     C:\Windows\explorer.exe --------- 2926592   
      11.02.2009 13:24     C:\Windows\Freecorder Toolbar Uninstall Log.txt --------- 3050   
      06.02.2009 11:58     C:\Windows\msxml4-KB954430-enu.LOG --------- 286370   
      04.02.2009 13:54     C:\Windows\VPNInstall.MIF --------- 1594   
      29.11.2008 11:02     C:\Windows\VPNUnInstall.MIF --------- 1594   
      03.09.2008 02:02     C:\Windows\msxml4-KB941833-enu.LOG --------- 269238   
      02.09.2008 22:47     C:\Windows\Applian FLV Player Setup Log.txt --------- 7663   
      02.09.2008 22:47     C:\Windows\Freecorder Toolbar Setup Log.txt --------- 7086   
      02.09.2008 22:43     C:\Windows\Replay Converter Setup Log.txt --------- 23700   
      02.09.2008 22:01     C:\Windows\nsreg.dat --------- 0   
      01.09.2008 19:38     C:\Windows\msxml4-KB936181-enu.LOG --------- 268484   
      26.08.2008 21:32     C:\Windows\MBRWR.LOG --------- 63   
      26.08.2008 14:50     C:\Windows\Patch.log --------- 19541   
      26.08.2008 14:49     C:\Windows\MORChangeID.LOG --------- 84   
      25.06.2008 04:28     C:\Windows\CLEANUP.CMD --------- 1934   
      25.06.2008 04:28     C:\Windows\AFirst.cmd --------- 3   
      24.06.2008 20:08     C:\Windows\DtcInstall.log --------- 4506   
      24.06.2008 20:08     C:\Windows\GridV.UNI --------- 92   
      24.06.2008 20:00     C:\Windows\LManager.UNI --------- 83   
      24.06.2008 20:00     C:\Windows\BCDCFG.LOG --------- 1553   
      24.06.2008 19:53     C:\Windows\TSSysprep.log --------- 3652   
      25.03.2008 11:50     C:\Windows\DIFxAPI.dll --------- 319456   
      25.03.2008 11:49     C:\Windows\HideWin.exe --------- 315392   
      25.03.2008 11:42     C:\Windows\ocsetup_install_OEMHelpCustomization.etl --------- 15237120   
      25.03.2008 11:42     C:\Windows\ocsetup_cbs_install_OEMHelpCustomization.perf --------- 49152   
      25.03.2008 11:42     C:\Windows\ocsetup_cbs_install_OEMHelpCustomization.dpx --------- 16384   
      18.03.2008 17:24     C:\Windows\csup.txt --------- 10   
      19.02.2008 11:51     C:\Windows\eRy.exe --------- 17929096   
      21.01.2008 03:43     C:\Windows\WindowsShell.Manifest --------- 749   
      21.01.2008 03:24     C:\Windows\regedit.exe --------- 134656   
      21.01.2008 03:24     C:\Windows\bfsvc.exe --------- 58880   
      21.01.2008 03:24     C:\Windows\fveupdate.exe --------- 13312   
      21.01.2008 03:24     C:\Windows\HelpPane.exe --------- 498176   
      21.01.2008 03:23     C:\Windows\notepad.exe --------- 151040   
      09.01.2008 13:56     C:\Windows\saplogon.ini --------- 1366   
      23.10.2007 09:56     C:\Windows\PLFSetI.exe --------- 200704   
      03.09.2007 11:39     C:\Windows\RtHDVCpl.exe --------- 4702208   
      09.08.2007 16:58     C:\Windows\PidList.ini --------- 131   
      03.08.2007 06:22     C:\Windows\SkyTel.exe --------- 1826816   
      26.07.2007 11:06     C:\Windows\RtlUpd.exe --------- 1191936   
      26.07.2007 10:09     C:\Windows\RtlExUpd.dll --------- 520192   
      05.07.2007 11:35     C:\Windows\PLFSetL.exe --------- 94208   
      28.06.2007 13:45     C:\Windows\UNINST32.EXE --------- 183056   
      26.06.2007 05:48     C:\Windows\MSSFT_RB.CMD --------- 387   
      15.05.2007 11:00     C:\Windows\FixUVC.exe --------- 105984   
      03.04.2007 09:50     C:\Windows\RtDefLvl.ini --------- 775   
      15.01.2007 13:28     C:\Windows\ACERTOURREMINDERRUN.REG --------- 336   
      02.11.2006 13:52     C:\Windows\setuperr.log --------- 0   
      02.11.2006 13:47     C:\Windows\SETUPAPI.LOG --------- 94   
      02.11.2006 13:35     C:\Windows\WMSysPr9.prx --------- 316640   
      02.11.2006 13:34     C:\Windows\twunk_16.exe --------- 49680   
      02.11.2006 13:34     C:\Windows\twunk_32.exe --------- 31232   
      02.11.2006 13:34     C:\Windows\twain_32.dll --------- 50688   
      02.11.2006 13:34     C:\Windows\twain.dll --------- 94784   
      02.11.2006 10:45     C:\Windows\winhlp32.exe --------- 9216   
      02.11.2006 10:45     C:\Windows\hh.exe --------- 14848   
      02.11.2006 08:46     C:\Windows\mib.bin --------- 43131   
      19.09.2006 12:41     C:\Windows\HomePremium.xml --------- 8328   
      19.09.2006 08:49     C:\Windows\HomePremium_X86_DE_SP1.ID --------- 14   
      18.09.2006 22:46     C:\Windows\system.ini --------- 219   
      18.09.2006 22:43     C:\Windows\_default.pif --------- 707   
      18.09.2006 22:43     C:\Windows\winhelp.exe --------- 256192   
      18.09.2006 22:30     C:\Windows\msdfmap.ini --------- 1405   
      10.08.2005 13:29     C:\Windows\saproute.ini --------- 130   
      01.10.2004 21:32     C:\Windows\CLEANUP.INI --------- 92   
      14.06.2004 01:24     C:\Windows\SETPANEL.INI --------- 30   
      11.12.2002 20:11     C:\Windows\WMPrfDEU.prx --------- 33820   
      14.11.2002 15:32     C:\Windows\devcon.exe --------- 55808   
    ----------------------------------------
    
     
    C:\Windows\System
    
     02.11.2006 13:34      C:\Windows\System\mciseq.drv --------- 25264 
     02.11.2006 13:34      C:\Windows\System\mciwave.drv --------- 28160 
     02.11.2006 13:34      C:\Windows\System\avifile.dll --------- 109456 
     02.11.2006 13:34      C:\Windows\System\avicap.dll --------- 69584 
     02.11.2006 13:34      C:\Windows\System\mciavi.drv --------- 73376 
     02.11.2006 13:34      C:\Windows\System\msvideo.dll --------- 126912 
     02.11.2006 08:10      C:\Windows\System\OLESVR.DLL --------- 24064 
     02.11.2006 08:10      C:\Windows\System\WFWNET.DRV --------- 12704 
     02.11.2006 08:10      C:\Windows\System\COMMDLG.DLL --------- 32816 
     02.11.2006 08:10      C:\Windows\System\TIMER.DRV --------- 4048 
     02.11.2006 08:10      C:\Windows\System\MMSYSTEM.DLL --------- 68992 
     02.11.2006 08:10      C:\Windows\System\mmtask.tsk --------- 1152 
     02.11.2006 08:10      C:\Windows\System\mouse.drv --------- 2032 
     02.11.2006 08:10      C:\Windows\System\vga.drv --------- 2176 
     02.11.2006 08:10      C:\Windows\System\sound.drv --------- 1744 
     02.11.2006 08:10      C:\Windows\System\keyboard.drv --------- 2000 
     02.11.2006 08:10      C:\Windows\System\SHELL.DLL --------- 5120 
     02.11.2006 08:10      C:\Windows\System\system.drv --------- 3360 
     18.09.2006 22:43      C:\Windows\System\ver.dll --------- 9008 
     18.09.2006 22:43      C:\Windows\System\olecli.dll --------- 82944 
     18.09.2006 22:43      C:\Windows\System\lzexpand.dll --------- 9936 
     18.09.2006 22:35      C:\Windows\System\stdole.tlb --------- 5532 
    ----------------------------------------
    
     
    C:\Windows\System32
    
     13.01.2010 15:51     C:\Windows\system32\catroot --------- 4096  
     13.01.2010 15:49     C:\Windows\system32\catroot2 --------- 24576  
     13.01.2010 15:41     C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 --------- 3616  
     13.01.2010 15:41     C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 --------- 3616  
     13.01.2010 06:44     C:\Windows\system32\perfh009.dat --------- 587178  
     13.01.2010 06:44     C:\Windows\system32\perfc009.dat --------- 101250  
     13.01.2010 06:44     C:\Windows\system32\perfh007.dat --------- 618442  
     13.01.2010 06:44     C:\Windows\system32\perfc007.dat --------- 122842  
     13.01.2010 06:44     C:\Windows\system32\PerfStringBackup.INI --------- 1418806  
     12.01.2010 10:25     C:\Windows\system32\Msdtc --------- 4096  
     12.01.2010 10:25     C:\Windows\system32\wbem --------- 86016  
     12.01.2010 10:21     C:\Windows\system32\config --------- 12288  
     12.01.2010 10:21     C:\Windows\system32\spool --------- 4096  
     12.01.2010 10:21     C:\Windows\system32\DRVSTORE --------- 0  
     12.01.2010 10:21     C:\Windows\system32\drivers --------- 81920  
     12.01.2010 10:21     C:\Windows\system32\CodeIntegrity --------- 0  
     29.12.2009 00:36     C:\Windows\system32\umstartup.etl --------- 30720  
     24.12.2009 19:15     C:\Windows\system32\Tasks --------- 4096  
     24.12.2009 19:10     C:\Windows\system32\de-DE --------- 655360  
     24.12.2009 19:10     C:\Windows\system32\pt-BR --------- 0  
     24.12.2009 19:10     C:\Windows\system32\bg-BG --------- 0  
     24.12.2009 19:10     C:\Windows\system32\it-IT --------- 0  
     24.12.2009 19:10     C:\Windows\system32\he-IL --------- 0  
     24.12.2009 19:10     C:\Windows\system32\pt-PT --------- 0  
     24.12.2009 19:10     C:\Windows\system32\pl-PL --------- 0  
     24.12.2009 19:10     C:\Windows\system32\uk-UA --------- 0  
     24.12.2009 19:10     C:\Windows\system32\ko-KR --------- 0  
     24.12.2009 19:10     C:\Windows\system32\hu-HU --------- 0  
     24.12.2009 19:10     C:\Windows\system32\hr-HR --------- 0  
     24.12.2009 19:10     C:\Windows\system32\sl-SI --------- 0  
     24.12.2009 19:10     C:\Windows\system32\zh-HK --------- 0  
     24.12.2009 19:10     C:\Windows\system32\el-GR --------- 0  
     24.12.2009 19:10     C:\Windows\system32\nl-NL --------- 0  
     24.12.2009 19:10     C:\Windows\system32\fr-FR --------- 0  
     24.12.2009 19:10     C:\Windows\system32\fi-FI --------- 0  
     24.12.2009 19:10     C:\Windows\system32\sr-Latn-CS --------- 0  
     24.12.2009 19:10     C:\Windows\system32\tr-TR --------- 0  
     24.12.2009 19:10     C:\Windows\system32\th-TH --------- 0  
     24.12.2009 19:10     C:\Windows\system32\sv-SE --------- 0  
     24.12.2009 19:10     C:\Windows\system32\es-ES --------- 0  
     24.12.2009 19:10     C:\Windows\system32\lv-LV --------- 0  
     24.12.2009 19:10     C:\Windows\system32\lt-LT --------- 0  
     24.12.2009 19:10     C:\Windows\system32\zh-TW --------- 0  
     24.12.2009 19:10     C:\Windows\system32\sk-SK --------- 0  
     24.12.2009 19:10     C:\Windows\system32\et-EE --------- 0  
     24.12.2009 19:10     C:\Windows\system32\cs-CZ --------- 0  
     24.12.2009 19:10     C:\Windows\system32\zh-CN --------- 0  
     24.12.2009 19:10     C:\Windows\system32\ja-JP --------- 0  
     24.12.2009 19:10     C:\Windows\system32\ar-SA --------- 0  
     24.12.2009 19:10     C:\Windows\system32\ro-RO --------- 0  
     24.12.2009 19:10     C:\Windows\system32\ru-RU --------- 0  
     24.12.2009 19:10     C:\Windows\system32\nb-NO --------- 0  
     24.12.2009 19:10     C:\Windows\system32\da-DK --------- 0  
     24.12.2009 19:10     C:\Windows\system32\en-US --------- 16384  
     23.12.2009 13:25     C:\Windows\system32\FNTCACHE.DAT --------- 378488  
     16.12.2009 11:37     C:\Windows\system32\ca-ES --------- 0  
     16.12.2009 11:37     C:\Windows\system32\XPSViewer --------- 0  
     16.12.2009 11:37     C:\Windows\system32\oobe --------- 8192  
     16.12.2009 11:37     C:\Windows\system32\migration --------- 0  
     16.12.2009 11:36     C:\Windows\system32\eu-ES --------- 0  
     16.12.2009 11:36     C:\Windows\system32\AdvancedInstallers --------- 0  
     16.12.2009 11:36     C:\Windows\system32\setup --------- 0  
     16.12.2009 11:36     C:\Windows\system32\SLUI --------- 0  
     16.12.2009 11:36     C:\Windows\system32\manifeststore --------- 0  
     16.12.2009 11:36     C:\Windows\system32\vi-VN --------- 0  
     16.12.2009 11:36     C:\Windows\system32\migwiz --------- 8192  
     16.12.2009 11:34     C:\Windows\system32\Boot --------- 0  
     16.12.2009 11:33     C:\Windows\system32\RTCOM --------- 0  
     15.12.2009 12:29     C:\Windows\system32\EventProviders --------- 0  
     01.12.2009 12:06     C:\Windows\system32\mrt.exe --------- 25966024  
     25.11.2009 12:11     C:\Windows\system32\IME --------- 0  
     25.11.2009 12:11     C:\Windows\system32\DriverStore --------- 0  
     25.11.2009 12:11     C:\Windows\system32\com --------- 0  
     25.11.2009 00:52     C:\Windows\system32\avgrsstx.dll --------- 12464  
     21.11.2009 07:40     C:\Windows\system32\wininet.dll --------- 916480  
     21.11.2009 07:40     C:\Windows\system32\urlmon.dll --------- 1208832  
     21.11.2009 07:38     C:\Windows\system32\occache.dll --------- 206848  
     21.11.2009 07:35     C:\Windows\system32\mshtml.dll --------- 5940736  
     21.11.2009 07:35     C:\Windows\system32\msfeedsbs.dll --------- 55296  
     21.11.2009 07:35     C:\Windows\system32\msfeeds.dll --------- 594432  
     21.11.2009 07:34     C:\Windows\system32\jsproxy.dll --------- 25600  
     21.11.2009 07:34     C:\Windows\system32\inetcpl.cpl --------- 1469440  
     21.11.2009 07:34     C:\Windows\system32\ieui.dll --------- 164352  
     21.11.2009 07:34     C:\Windows\system32\iesysprep.dll --------- 109056  
     21.11.2009 07:34     C:\Windows\system32\iesetup.dll --------- 71680  
     21.11.2009 07:34     C:\Windows\system32\iertutil.dll --------- 1985536  
     21.11.2009 07:34     C:\Windows\system32\iernonce.dll --------- 55808  
     21.11.2009 07:34     C:\Windows\system32\iepeers.dll --------- 184320  
     21.11.2009 07:34     C:\Windows\system32\ieframe.dll --------- 11069952  
     21.11.2009 07:34     C:\Windows\system32\iedkcs32.dll --------- 387584  
     21.11.2009 05:59     C:\Windows\system32\ieUnatt.exe --------- 133632  
     21.11.2009 05:59     C:\Windows\system32\ie4uinit.exe --------- 173056  
     21.11.2009 05:59     C:\Windows\system32\msfeedssync.exe --------- 13312  
     21.11.2009 05:58     C:\Windows\system32\mshtml.tlb --------- 1638912  
     21.11.2009 04:21     C:\Windows\system32\ieuinit.inf --------- 57667  
     09.11.2009 13:31     C:\Windows\system32\nshhttp.dll --------- 24064  
     09.11.2009 13:30     C:\Windows\system32\httpapi.dll --------- 30720  
     02.11.2009 20:42     C:\Windows\system32\MpSigStub.exe --------- 195456  
     29.10.2009 10:17     C:\Windows\system32\tzres.dll --------- 2048  
     23.10.2009 18:10     C:\Windows\system32\timedate.cpl --------- 714240  
    ----------------------------------------
    
     
    C:\Windows\Prefetch
    
    ----------------------------------------
    
     
    C:\Windows\Tasks
    
     13.01.2010 16:14     C:\Windows\Tasks\User_Feed_Synchronization-{91F5B642-A907-4121-9A85-9C15FFF97E0D}.job --------- 420  
     13.01.2010 15:41     C:\Windows\Tasks\SA.DAT --------- 6  
     11.01.2010 17:49     C:\Windows\Tasks\SCHEDLGU.TXT --------- 32546  
     11.01.2010 17:45     C:\Windows\Tasks\EasyShare Registration Task.job --------- 398  
    ----------------------------------------
    
     
    C:\Windows\Temp
    
    ----------------------------------------
    
     
    C:\Users\esso\AppData\Local\Temp
    
     13.01.2010 16:07     C:\Users\esso\AppData\Local\Temp\plugtmp-428 --------- 0  
     13.01.2010 15:43     C:\Users\esso\AppData\Local\Temp\JETF008.tmp --------- 0  
     13.01.2010 15:42     C:\Users\esso\AppData\Local\Temp\WPDNSE --------- 0  
     13.01.2010 15:42     C:\Users\esso\AppData\Local\Temp\AdobeARM.log --------- 312119  
     13.01.2010 15:42     C:\Users\esso\AppData\Local\Temp\esso.bmp --------- 31832  
     13.01.2010 08:14     C:\Users\esso\AppData\Local\Temp\ea4d12ea-1bc6-4fd9-a856-ac7cc52ed42d.mht --------- 7362  
     13.01.2010 08:10     C:\Users\esso\AppData\Local\Temp\plugtmp-427 --------- 0  
     13.01.2010 08:08     C:\Users\esso\AppData\Local\Temp\JET6E6B.tmp --------- 0  
     13.01.2010 07:46     C:\Users\esso\AppData\Local\Temp\plugtmp-426 --------- 0  
     13.01.2010 07:46     C:\Users\esso\AppData\Local\Temp\flaA191.tmp --------- 3092739  
     13.01.2010 07:28     C:\Users\esso\AppData\Local\Temp\moz_media_cache-6 --------- 131072  
     13.01.2010 07:26     C:\Users\esso\AppData\Local\Temp\JETD3E1.tmp --------- 0  
     13.01.2010 07:25     C:\Users\esso\AppData\Local\Temp\eDatasecurity --------- 0  
     13.01.2010 07:19     C:\Users\esso\AppData\Local\Temp\plugtmp-425 --------- 0  
     13.01.2010 07:05     C:\Users\esso\AppData\Local\Temp\~DFBB38.tmp --------- 114688  
     13.01.2010 07:02     C:\Users\esso\AppData\Local\Temp\JETCBE5.tmp --------- 0  
     13.01.2010 06:40     C:\Users\esso\AppData\Local\Temp\JET2EC.tmp --------- 0  
     13.01.2010 06:40     C:\Users\esso\AppData\Local\Temp\WERFCF4.tmp.version.txt --------- 476  
     13.01.2010 06:40     C:\Users\esso\AppData\Local\Temp\moz_media_cache-5 --------- 131072  
     13.01.2010 06:15     C:\Users\esso\AppData\Local\Temp\~DF662.tmp --------- 114688  
     13.01.2010 06:04     C:\Users\esso\AppData\Local\Temp\WERFE89.tmp.version.txt --------- 476  
     13.01.2010 06:04     C:\Users\esso\AppData\Local\Temp\JETDEE9.tmp --------- 0  
     12.01.2010 20:57     C:\Users\esso\AppData\Local\Temp\plugtmp-424 --------- 0  
     12.01.2010 20:40     C:\Users\esso\AppData\Local\Temp\moz_media_cache-4 --------- 131072  
     12.01.2010 20:39     C:\Users\esso\AppData\Local\Temp\WER7D3A.tmp.version.txt --------- 476  
     12.01.2010 20:38     C:\Users\esso\AppData\Local\Temp\JET313C.tmp --------- 0  
     12.01.2010 20:33     C:\Users\esso\AppData\Local\Temp\fla5EF1.tmp --------- 12078715  
     12.01.2010 20:29     C:\Users\esso\AppData\Local\Temp\plugtmp-423 --------- 0  
     12.01.2010 20:14     C:\Users\esso\AppData\Local\Temp\WERDA85.tmp.version.txt --------- 476  
     12.01.2010 20:14     C:\Users\esso\AppData\Local\Temp\JET8D8F.tmp --------- 0  
     12.01.2010 20:05     C:\Users\esso\AppData\Local\Temp\fla70C0.tmp --------- 14508507  
     12.01.2010 20:01     C:\Users\esso\AppData\Local\Temp\plugtmp-422 --------- 0  
     12.01.2010 19:47     C:\Users\esso\AppData\Local\Temp\WER1FEE.tmp.version.txt --------- 476  
     12.01.2010 19:47     C:\Users\esso\AppData\Local\Temp\JETDFC3.tmp --------- 0  
     12.01.2010 17:52     C:\Users\esso\AppData\Local\Temp\plugtmp-421 --------- 0  
     12.01.2010 17:45     C:\Users\esso\AppData\Local\Temp\flaACFD.tmp --------- 18319276  
     12.01.2010 17:36     C:\Users\esso\AppData\Local\Temp\moz_media_cache-3 --------- 131072  
     12.01.2010 17:33     C:\Users\esso\AppData\Local\Temp\JETBC3.tmp --------- 0  
     12.01.2010 17:28     C:\Users\esso\AppData\Local\Temp\~DF9445.tmp --------- 512  
     12.01.2010 17:28     C:\Users\esso\AppData\Local\Temp\~DF943B.tmp --------- 507904  
     12.01.2010 17:28     C:\Users\esso\AppData\Local\Temp\~DF9423.tmp --------- 512  
     12.01.2010 17:28     C:\Users\esso\AppData\Local\Temp\~DF9419.tmp --------- 1064960  
     12.01.2010 17:28     C:\Users\esso\AppData\Local\Temp\~DF9407.tmp --------- 512  
     12.01.2010 17:28     C:\Users\esso\AppData\Local\Temp\~DF93FD.tmp --------- 131072  
     12.01.2010 17:28     C:\Users\esso\AppData\Local\Temp\~DF93EA.tmp --------- 512  
     12.01.2010 17:28     C:\Users\esso\AppData\Local\Temp\~DF93E0.tmp --------- 131072  
     12.01.2010 17:28     C:\Users\esso\AppData\Local\Temp\~DF93C7.tmp --------- 512  
     12.01.2010 17:28     C:\Users\esso\AppData\Local\Temp\~DF93BC.tmp --------- 524288  
     12.01.2010 17:26     C:\Users\esso\AppData\Local\Temp\plugtmp-420 --------- 0  
     12.01.2010 16:53     C:\Users\esso\AppData\Local\Temp\fla551.tmp --------- 25465010  
     12.01.2010 16:52     C:\Users\esso\AppData\Local\Temp\A9R18B7.tmp --------- 4096000  
     12.01.2010 16:50     C:\Users\esso\AppData\Local\Temp\A9R18B9.tmp --------- 358  
     12.01.2010 11:35     C:\Users\esso\AppData\Local\Temp\moz_media_cache-2 --------- 131072  
     12.01.2010 11:31     C:\Users\esso\AppData\Local\Temp\JET7E06.tmp --------- 0  
     12.01.2010 10:21     C:\Users\esso\AppData\Local\Temp\0105132700001524q0bjhwr8lr --------- 0  
     12.01.2010 10:14     C:\Users\esso\AppData\Local\Temp\WER8989.tmp.version.txt --------- 476  
     12.01.2010 09:35     C:\Users\esso\AppData\Local\Temp\flaDCC0.tmp --------- 90895994  
     12.01.2010 09:35     C:\Users\esso\AppData\Local\Temp\plugtmp-419 --------- 0  
     12.01.2010 09:34     C:\Users\esso\AppData\Local\Temp\flaCC2.tmp --------- 3918927  
     12.01.2010 09:28     C:\Users\esso\AppData\Local\Temp\WERC2F0.tmp.version.txt --------- 476  
     12.01.2010 09:27     C:\Users\esso\AppData\Local\Temp\JETB385.tmp --------- 0  
     12.01.2010 09:23     C:\Users\esso\AppData\Local\Temp\fla299.tmp --------- 4978220  
     12.01.2010 09:21     C:\Users\esso\AppData\Local\Temp\plugtmp-418 --------- 0  
     12.01.2010 09:04     C:\Users\esso\AppData\Local\Temp\JET368A.tmp --------- 0  
     12.01.2010 09:04     C:\Users\esso\AppData\Local\Temp\WER2B24.tmp.version.txt --------- 476  
     12.01.2010 08:56     C:\Users\esso\AppData\Local\Temp\plugtmp-417 --------- 0  
     12.01.2010 08:58     C:\Users\esso\AppData\Local\Temp\flaF733.tmp --------- 4812270  
     12.01.2010 08:31     C:\Users\esso\AppData\Local\Temp\fla700B.tmp --------- 277484  
     12.01.2010 08:22     C:\Users\esso\AppData\Local\Temp\JETEE06.tmp --------- 0  
     12.01.2010 08:22     C:\Users\esso\AppData\Local\Temp\WERE9F0.tmp.version.txt --------- 476  
     12.01.2010 08:18     C:\Users\esso\AppData\Local\Temp\flaCD52.tmp --------- 171  
     12.01.2010 08:18     C:\Users\esso\AppData\Local\Temp\plugtmp-416 --------- 0  
     12.01.2010 06:55     C:\Users\esso\AppData\Local\Temp\~DF7EB8.tmp --------- 81920  
     12.01.2010 06:51     C:\Users\esso\AppData\Local\Temp\WER77DD.tmp.version.txt --------- 476  
     12.01.2010 06:51     C:\Users\esso\AppData\Local\Temp\JET7703.tmp --------- 0  
     12.01.2010 06:31     C:\Users\esso\AppData\Local\Temp\mod5872.tmp --------- 29114  
     12.01.2010 06:31     C:\Users\esso\AppData\Local\Temp\mod55E0.tmp --------- 34  
     12.01.2010 06:31     C:\Users\esso\AppData\Local\Temp\mod55E1.tmp --------- 955  
     12.01.2010 06:24     C:\Users\esso\AppData\Local\Temp\~DF7A8F.tmp --------- 81920  
     12.01.2010 06:24     C:\Users\esso\AppData\Local\Temp\mod713F.tmp --------- 34  
     12.01.2010 06:08     C:\Users\esso\AppData\Local\Temp\plugtmp-415 --------- 0  
     12.01.2010 06:06     C:\Users\esso\AppData\Local\Temp\e224fad7-9314-413e-8b64-c8405c2f32e9.mht --------- 7362  
     12.01.2010 06:06     C:\Users\esso\AppData\Local\Temp\8c6d4e4f-cf73-4fd4-aae6-69eaba0000b6.mht --------- 7362  
     12.01.2010 06:02     C:\Users\esso\AppData\Local\Temp\WER4308.tmp.version.txt --------- 476  
     12.01.2010 06:02     C:\Users\esso\AppData\Local\Temp\JET2D46.tmp --------- 0  
     11.01.2010 21:06     C:\Users\esso\AppData\Local\Temp\~DFCFB8.tmp --------- 512  
     11.01.2010 21:06     C:\Users\esso\AppData\Local\Temp\~DFCFB3.tmp --------- 507904  
     11.01.2010 21:06     C:\Users\esso\AppData\Local\Temp\~DFCFA0.tmp --------- 512  
     11.01.2010 21:06     C:\Users\esso\AppData\Local\Temp\~DFCF9B.tmp --------- 1064960  
     11.01.2010 21:06     C:\Users\esso\AppData\Local\Temp\~DFCF8E.tmp --------- 512  
     11.01.2010 21:06     C:\Users\esso\AppData\Local\Temp\~DFCF89.tmp --------- 131072  
     11.01.2010 21:06     C:\Users\esso\AppData\Local\Temp\~DFCF7A.tmp --------- 512  
     11.01.2010 21:06     C:\Users\esso\AppData\Local\Temp\~DFCF75.tmp --------- 131072  
     11.01.2010 21:06     C:\Users\esso\AppData\Local\Temp\~DFCF61.tmp --------- 512  
     11.01.2010 21:06     C:\Users\esso\AppData\Local\Temp\~DFCF5C.tmp --------- 524288  
     11.01.2010 20:54     C:\Users\esso\AppData\Local\Temp\WERA929.tmp.version.txt --------- 476  
     11.01.2010 20:52     C:\Users\esso\AppData\Local\Temp\JET1C36.tmp --------- 0  
     11.01.2010 20:29     C:\Users\esso\AppData\Local\Temp\plugtmp-414 --------- 0  
     11.01.2010 19:32     C:\Users\esso\AppData\Local\Temp\WER7B47.tmp.version.txt --------- 476  
     11.01.2010 19:32     C:\Users\esso\AppData\Local\Temp\JET2A88.tmp --------- 0  
     11.01.2010 19:23     C:\Users\esso\AppData\Local\Temp\plugtmp-413 --------- 0  
     11.01.2010 19:18     C:\Users\esso\AppData\Local\Temp\fla9BBE.tmp --------- 6060267  
     11.01.2010 17:53     C:\Users\esso\AppData\Local\Temp\WER13ED.tmp.version.txt --------- 476  
     11.01.2010 17:52     C:\Users\esso\AppData\Local\Temp\JET241.tmp --------- 0  
     11.01.2010 11:03     C:\Users\esso\AppData\Local\Temp\plugtmp-412 --------- 0  
     11.01.2010 11:00     C:\Users\esso\AppData\Local\Temp\Bilanzierung_und_Jahresabschluss_2._Semester_SS_09_Jaeger_BA-1.pdf --------- 684212  
     11.01.2010 10:03     C:\Users\esso\AppData\Local\Temp\WERA9E5.tmp.version.txt --------- 476  
     11.01.2010 09:28     C:\Users\esso\AppData\Local\Temp\Bilanzierung_und_Jahresabschluss_2._Semester_SS_09_Jaeger_BA.pdf --------- 684212  
     11.01.2010 00:51     C:\Users\esso\AppData\Local\Temp\plugtmp-411 --------- 0  
     10.01.2010 23:53     C:\Users\esso\AppData\Local\Temp\Statistik_1_u._2._Semester_SS_09_Schocke_BA.pdf --------- 362634  
     07.01.2010 18:09     C:\Users\esso\AppData\Local\Temp\ABWL_4._Semester_WS_07-08_Redel_Otte_.pdf --------- 1147972  
     07.01.2010 18:06     C:\Users\esso\AppData\Local\Temp\ABWL_4._Semester_SS_08-2.pdf --------- 1558663  
     07.01.2010 16:17     C:\Users\esso\AppData\Local\Temp\cw0cIOYv.exe.part --------- 417664  
     07.01.2010 16:09     C:\Users\esso\AppData\Local\Temp\ABWL_4._Semester_SS_09_Feldmann_Lubritz_Dipl.pdf --------- 926234  
     07.01.2010 16:09     C:\Users\esso\AppData\Local\Temp\ABWL_4._Semester_SS_08-1.pdf --------- 1558663  
     07.01.2010 16:06     C:\Users\esso\AppData\Local\Temp\ABWL_2._Semester_WS_07-08_Schocke_Lubritz_.pdf --------- 1037644  
     07.01.2010 16:05     C:\Users\esso\AppData\Local\Temp\ABWL_2._Semester_SS_08.pdf --------- 791560  
     07.01.2010 12:45     C:\Users\esso\AppData\Local\Temp\wmplog09.sqm --------- 1902  
     07.01.2010 08:17     C:\Users\esso\AppData\Local\Temp\wmplog08.sqm --------- 1862  
     06.01.2010 23:47     C:\Users\esso\AppData\Local\Temp\Low --------- 49152  
     06.01.2010 23:33     C:\Users\esso\AppData\Local\Temp\wmsetup.log --------- 20243  
     06.01.2010 11:07     C:\Users\esso\AppData\Local\Temp\218677677.od --------- 134  
     06.01.2010 11:07     C:\Users\esso\AppData\Local\Temp\CVRC1AD.tmp.cvr --------- 0  
     06.01.2010 10:54     C:\Users\esso\AppData\Local\Temp\UserInfoSetup(201001061054511F2C).log --------- 18429  
     06.01.2010 10:54     C:\Users\esso\AppData\Local\Temp\SetupExe(201001061054491F2C).log --------- 4126  
     06.01.2010 10:51     C:\Users\esso\AppData\Local\Temp\wmplog07.sqm --------- 1666  
     06.01.2010 10:51     C:\Users\esso\AppData\Local\Temp\wmplog06.sqm --------- 1666  
     06.01.2010 02:28     C:\Users\esso\AppData\Local\Temp\wmplog05.sqm --------- 2166  
     05.01.2010 16:27     C:\Users\esso\AppData\Local\Temp\MessengerCache --------- 0  
     05.01.2010 13:28     C:\Users\esso\AppData\Local\Temp\Silverlight0.log --------- 2112  
     05.01.2010 13:28     C:\Users\esso\AppData\Local\Temp\SilverlightMSI.log --------- 563252  
     05.01.2010 13:24     C:\Users\esso\AppData\Local\Temp\0105132400001524adj2yjk8bz --------- 0  
     05.01.2010 13:18     C:\Users\esso\AppData\Local\Temp\sqqF0A1.exe --------- 36270432  
     05.01.2010 13:16     C:\Users\esso\AppData\Local\Temp\w4r8283.tmp --------- 1210368  
     04.01.2010 05:23     C:\Users\esso\AppData\Local\Temp\KoRe_4._Semester_SS_09_Krystek_Feldmann_Haase_Dipl.pdf --------- 841981  
     04.01.2010 03:04     C:\Users\esso\AppData\Local\Temp\UserInfoSetup(20100104030416C38).log --------- 18427  
     04.01.2010 03:04     C:\Users\esso\AppData\Local\Temp\SetupExe(20100104030415C38).log --------- 4122  
     04.01.2010 03:00     C:\Users\esso\AppData\Local\Temp\UserInfoSetup(20100104030028844).log --------- 18427  
     04.01.2010 03:00     C:\Users\esso\AppData\Local\Temp\SetupExe(20100104030026844).log --------- 4122  
     03.01.2010 20:24     C:\Users\esso\AppData\Local\Temp\flaC778.tmp --------- 144834433  
     03.01.2010 20:24     C:\Users\esso\AppData\Local\Temp\plugtmp-410 --------- 0  
     03.01.2010 20:21     C:\Users\esso\AppData\Local\Temp\WER8F82.tmp.version.txt --------- 476  
     03.01.2010 20:21     C:\Users\esso\AppData\Local\Temp\wmplog04.sqm --------- 1666  
     03.01.2010 20:21     C:\Users\esso\AppData\Local\Temp\JETDD24.tmp --------- 0  
     03.01.2010 20:08     C:\Users\esso\AppData\Local\Temp\UserInfoSetup(20100103200817794).log --------- 18425  
     03.01.2010 20:08     C:\Users\esso\AppData\Local\Temp\SetupExe(20100103200816794).log --------- 4116  
     03.01.2010 20:08     C:\Users\esso\AppData\Local\Temp\~DFE914.tmp --------- 512  
     03.01.2010 20:08     C:\Users\esso\AppData\Local\Temp\611991.od --------- 134  
     03.01.2010 20:08     C:\Users\esso\AppData\Local\Temp\CVR5697.tmp.cvr --------- 0  
     03.01.2010 20:07     C:\Users\esso\AppData\Local\Temp\UserInfoSetup(2010010320073713E8).log --------- 18426  
     03.01.2010 20:07     C:\Users\esso\AppData\Local\Temp\SetupExe(2010010320073613E8).log --------- 4117  
     03.01.2010 20:02     C:\Users\esso\AppData\Local\Temp\UserInfoSetup(201001032001551618).log --------- 18426  
     03.01.2010 20:01     C:\Users\esso\AppData\Local\Temp\SetupExe(201001032001531618).log --------- 4117  
     03.01.2010 20:01     C:\Users\esso\AppData\Local\Temp\221334.od --------- 134  
     03.01.2010 20:01     C:\Users\esso\AppData\Local\Temp\CVR6096.tmp.cvr --------- 0  
     03.01.2010 20:00     C:\Users\esso\AppData\Local\Temp\WERB84.tmp.version.txt --------- 476  
     03.01.2010 20:00     C:\Users\esso\AppData\Local\Temp\wmplog03.sqm --------- 1666  
     03.01.2010 19:59     C:\Users\esso\AppData\Local\Temp\JET5B87.tmp --------- 0  
     03.01.2010 19:47     C:\Users\esso\AppData\Local\Temp\plugtmp-409 --------- 0  
     03.01.2010 19:29     C:\Users\esso\AppData\Local\Temp\JET668F.tmp --------- 0  
     03.01.2010 19:29     C:\Users\esso\AppData\Local\Temp\WER52EF.tmp.version.txt --------- 476  
     03.01.2010 19:28     C:\Users\esso\AppData\Local\Temp\wmplog02.sqm --------- 1666  
     03.01.2010 19:22     C:\Users\esso\AppData\Local\Temp\plugtmp-408 --------- 0  
     03.01.2010 19:03     C:\Users\esso\AppData\Local\Temp\wmplog01.sqm --------- 1930  
     03.01.2010 19:03     C:\Users\esso\AppData\Local\Temp\WER166C.tmp.version.txt --------- 476  
     03.01.2010 19:02     C:\Users\esso\AppData\Local\Temp\JETD70C.tmp --------- 0  
     03.01.2010 14:14     C:\Users\esso\AppData\Local\Temp\flaE384.tmp --------- 8191915  
     03.01.2010 14:14     C:\Users\esso\AppData\Local\Temp\~DF961.tmp --------- 512  
     03.01.2010 14:14     C:\Users\esso\AppData\Local\Temp\~DF957.tmp --------- 507904  
     03.01.2010 14:14     C:\Users\esso\AppData\Local\Temp\~DF93D.tmp --------- 512  
     03.01.2010 14:14     C:\Users\esso\AppData\Local\Temp\~DF931.tmp --------- 1064960  
     03.01.2010 14:14     C:\Users\esso\AppData\Local\Temp\~DF91F.tmp --------- 512  
     03.01.2010 14:14     C:\Users\esso\AppData\Local\Temp\~DF912.tmp --------- 131072  
     03.01.2010 14:14     C:\Users\esso\AppData\Local\Temp\~DF8FE.tmp --------- 512  
     03.01.2010 14:14     C:\Users\esso\AppData\Local\Temp\~DF8F4.tmp --------- 131072  
     03.01.2010 14:14     C:\Users\esso\AppData\Local\Temp\~DF8D9.tmp --------- 512  
     03.01.2010 14:14     C:\Users\esso\AppData\Local\Temp\~DF8CF.tmp --------- 524288  
     03.01.2010 14:11     C:\Users\esso\AppData\Local\Temp\plugtmp-407 --------- 0  
     03.01.2010 13:48     C:\Users\esso\AppData\Local\Temp\wmplog00.sqm --------- 1666  
     03.01.2010 13:48     C:\Users\esso\AppData\Local\Temp\JET1100.tmp --------- 0  
     03.01.2010 13:37     C:\Users\esso\AppData\Local\Temp\plugtmp-406 --------- 0  
     03.01.2010 13:37     C:\Users\esso\AppData\Local\Temp\flaA280.tmp --------- 27261937  
     03.01.2010 13:29     C:\Users\esso\AppData\Local\Temp\WER19F5.tmp.version.txt --------- 476  
     03.01.2010 13:29     C:\Users\esso\AppData\Local\Temp\JET3246.tmp --------- 0  
     03.01.2010 13:29     C:\Users\esso\AppData\Local\Temp\wmplog19.sqm --------- 1564  
     03.01.2010 13:24     C:\Users\esso\AppData\Local\Temp\flaC046.tmp --------- 5653133  
     03.01.2010 13:24     C:\Users\esso\AppData\Local\Temp\plugtmp-405 --------- 0  
     03.01.2010 12:58     C:\Users\esso\AppData\Local\Temp\WER562A.tmp.version.txt --------- 476  
     03.01.2010 12:58     C:\Users\esso\AppData\Local\Temp\JET1583.tmp --------- 0  
     03.01.2010 12:42     C:\Users\esso\AppData\Local\Temp\plugtmp-404 --------- 0  
     03.01.2010 12:32     C:\Users\esso\AppData\Local\Temp\wmplog18.sqm --------- 1666  
     03.01.2010 11:48     C:\Users\esso\AppData\Local\Temp\flaD4ED.tmp --------- 63938918  
     03.01.2010 11:48     C:\Users\esso\AppData\Local\Temp\plugtmp-403 --------- 0  
     03.01.2010 11:46     C:\Users\esso\AppData\Local\Temp\WERC495.tmp.version.txt --------- 476  
     03.01.2010 11:46     C:\Users\esso\AppData\Local\Temp\JETB3D3.tmp --------- 0  
     03.01.2010 11:45     C:\Users\esso\AppData\Local\Temp\wmplog17.sqm --------- 1564  
     03.01.2010 11:25     C:\Users\esso\AppData\Local\Temp\crash.dmp --------- 0  
     03.01.2010 11:22     C:\Users\esso\AppData\Local\Temp\fla515.tmp --------- 78549917  
     03.01.2010 11:22     C:\Users\esso\AppData\Local\Temp\plugtmp-402 --------- 0  
     03.01.2010 11:06     C:\Users\esso\AppData\Local\Temp\WERFBCB.tmp.version.txt --------- 476  
     03.01.2010 11:06     C:\Users\esso\AppData\Local\Temp\JET2EAD.tmp --------- 0  
     03.01.2010 06:59     C:\Users\esso\AppData\Local\Temp\fla8BA2.tmp --------- 24313000  
     03.01.2010 06:59     C:\Users\esso\AppData\Local\Temp\~DFB905.tmp --------- 512  
     03.01.2010 06:59     C:\Users\esso\AppData\Local\Temp\~DFB8FB.tmp --------- 507904  
     03.01.2010 06:59     C:\Users\esso\AppData\Local\Temp\~DFB8E3.tmp --------- 512  
     03.01.2010 06:59     C:\Users\esso\AppData\Local\Temp\~DFB8D9.tmp --------- 1064960  
     03.01.2010 06:59     C:\Users\esso\AppData\Local\Temp\~DFB8C7.tmp --------- 512  
     03.01.2010 06:59     C:\Users\esso\AppData\Local\Temp\~DFB8BD.tmp --------- 131072  
     03.01.2010 06:59     C:\Users\esso\AppData\Local\Temp\~DFB8AB.tmp --------- 512  
     03.01.2010 06:59     C:\Users\esso\AppData\Local\Temp\~DFB8A1.tmp --------- 131072  
     03.01.2010 06:59     C:\Users\esso\AppData\Local\Temp\~DFB888.tmp --------- 512  
     03.01.2010 06:59     C:\Users\esso\AppData\Local\Temp\~DFB87D.tmp --------- 524288  
     03.01.2010 06:55     C:\Users\esso\AppData\Local\Temp\plugtmp-401 --------- 0  
     03.01.2010 06:43     C:\Users\esso\AppData\Local\Temp\WERF94C.tmp.version.txt --------- 476  
     03.01.2010 06:42     C:\Users\esso\AppData\Local\Temp\JET641E.tmp --------- 0  
     03.01.2010 06:42     C:\Users\esso\AppData\Local\Temp\wmplog16.sqm --------- 1666  
     03.01.2010 06:36     C:\Users\esso\AppData\Local\Temp\plugtmp-400 --------- 0  
     03.01.2010 06:27     C:\Users\esso\AppData\Local\Temp\flaB4BD.tmp --------- 7644622  
     03.01.2010 06:02     C:\Users\esso\AppData\Local\Temp\JETFCB5.tmp --------- 0  
     03.01.2010 06:02     C:\Users\esso\AppData\Local\Temp\WERCC33.tmp.version.txt --------- 476  
     03.01.2010 06:02     C:\Users\esso\AppData\Local\Temp\wmplog15.sqm --------- 1666  
     03.01.2010 05:47     C:\Users\esso\AppData\Local\Temp\plugtmp-399 --------- 0  
     03.01.2010 05:46     C:\Users\esso\AppData\Local\Temp\fla6BF0.tmp --------- 4919588  
     03.01.2010 05:43     C:\Users\esso\AppData\Local\Temp\JETF53A.tmp --------- 0  
     03.01.2010 02:02     C:\Users\esso\AppData\Local\Temp\fla9630.tmp --------- 4919588  
     03.01.2010 02:01     C:\Users\esso\AppData\Local\Temp\plugtmp-398 --------- 0  
     02.01.2010 14:25     C:\Users\esso\AppData\Local\Temp\Setup00000d7c --------- 0  
     02.01.2010 10:58     C:\Users\esso\AppData\Local\Temp\WERB28C.tmp.version.txt --------- 476  
     02.01.2010 10:57     C:\Users\esso\AppData\Local\Temp\JET706E.tmp --------- 0  
     02.01.2010 10:57     C:\Users\esso\AppData\Local\Temp\wmplog14.sqm --------- 1610  
     02.01.2010 10:33     C:\Users\esso\AppData\Local\Temp\fla10D8.tmp --------- 29059172  
     02.01.2010 10:25     C:\Users\esso\AppData\Local\Temp\plugtmp-397 --------- 0  
     02.01.2010 09:38     C:\Users\esso\AppData\Local\Temp\JETE9F0.tmp --------- 0  
     02.01.2010 09:38     C:\Users\esso\AppData\Local\Temp\wmplog13.sqm --------- 1666  
     02.01.2010 08:58     C:\Users\esso\AppData\Local\Temp\fla8F4B.tmp --------- 73570569  
     02.01.2010 08:58     C:\Users\esso\AppData\Local\Temp\plugtmp-396 --------- 0  
     02.01.2010 08:51     C:\Users\esso\AppData\Local\Temp\JET116D.tmp --------- 0  
     02.01.2010 08:50     C:\Users\esso\AppData\Local\Temp\wmplog12.sqm --------- 1666  
     02.01.2010 08:21     C:\Users\esso\AppData\Local\Temp\~DF76AF.tmp --------- 16384  
     02.01.2010 08:03     C:\Users\esso\AppData\Local\Temp\~DF77AA.tmp --------- 512  
     02.01.2010 08:03     C:\Users\esso\AppData\Local\Temp\~DF77A5.tmp --------- 49152  
     02.01.2010 08:03     C:\Users\esso\AppData\Local\Temp\~DF7767.tmp --------- 512  
     02.01.2010 08:03     C:\Users\esso\AppData\Local\Temp\~DF7762.tmp --------- 16384  
     02.01.2010 08:03     C:\Users\esso\AppData\Local\Temp\~DF76F7.tmp --------- 512  
     02.01.2010 08:03     C:\Users\esso\AppData\Local\Temp\~DF76E4.tmp --------- 32768  
     02.01.2010 08:02     C:\Users\esso\AppData\Local\Temp\~DF289F.tmp --------- 16384  
     02.01.2010 08:02     C:\Users\esso\AppData\Local\Temp\~DFAED.tmp --------- 0  
     02.01.2010 08:02     C:\Users\esso\AppData\Local\Temp\JET3706.tmp --------- 0  
     02.01.2010 08:01     C:\Users\esso\AppData\Local\Temp\wmplog11.sqm --------- 1666  
     02.01.2010 07:55     C:\Users\esso\AppData\Local\Temp\~DFCDB5.tmp --------- 16384  
     02.01.2010 07:33     C:\Users\esso\AppData\Local\Temp\~DF6815.tmp --------- 16384  
     02.01.2010 07:22     C:\Users\esso\AppData\Local\Temp\~DF9EBE.tmp --------- 512  
     02.01.2010 07:22     C:\Users\esso\AppData\Local\Temp\~DF99F4.tmp --------- 49152  
     02.01.2010 07:22     C:\Users\esso\AppData\Local\Temp\~DF985F.tmp --------- 512  
     02.01.2010 07:22     C:\Users\esso\AppData\Local\Temp\~DF985A.tmp --------- 16384  
     02.01.2010 07:22     C:\Users\esso\AppData\Local\Temp\~DF9811.tmp --------- 512  
     02.01.2010 07:22     C:\Users\esso\AppData\Local\Temp\~DF980C.tmp --------- 32768  
     02.01.2010 07:22     C:\Users\esso\AppData\Local\Temp\~DF4F79.tmp --------- 0  
     02.01.2010 07:22     C:\Users\esso\AppData\Local\Temp\WER5C90.tmp.version.txt --------- 476  
     02.01.2010 07:21     C:\Users\esso\AppData\Local\Temp\JET48E1.tmp --------- 0  
     02.01.2010 07:20     C:\Users\esso\AppData\Local\Temp\wmplog10.sqm --------- 1666  
     02.01.2010 07:12     C:\Users\esso\AppData\Local\Temp\flaF847.tmp --------- 13368438  
     02.01.2010 07:11     C:\Users\esso\AppData\Local\Temp\plugtmp-395 --------- 0  
     02.01.2010 07:01     C:\Users\esso\AppData\Local\Temp\JET16BB.tmp --------- 0  
     02.01.2010 05:42     C:\Users\esso\AppData\Local\Temp\plugtmp-394 --------- 0  
     02.01.2010 05:40     C:\Users\esso\AppData\Local\Temp\flaE64E.tmp --------- 15560517  
     02.01.2010 05:29     C:\Users\esso\AppData\Local\Temp\WER12A5.tmp.version.txt --------- 476  
     02.01.2010 05:29     C:\Users\esso\AppData\Local\Temp\JETF16F.tmp --------- 0  
     02.01.2010 04:53     C:\Users\esso\AppData\Local\Temp\plugtmp-393 --------- 0  
     02.01.2010 04:51     C:\Users\esso\AppData\Local\Temp\fla35BA.tmp --------- 81198169  
     02.01.2010 04:47     C:\Users\esso\AppData\Local\Temp\WERF739.tmp.version.txt --------- 476  
     02.01.2010 04:46     C:\Users\esso\AppData\Local\Temp\JETBE4F.tmp --------- 0  
     02.01.2010 04:24     C:\Users\esso\AppData\Local\Temp\flaE10.tmp --------- 0  
     02.01.2010 04:18     C:\Users\esso\AppData\Local\Temp\plugtmp-392 --------- 0  
     02.01.2010 04:03     C:\Users\esso\AppData\Local\Temp\JETC3CB.tmp --------- 0  
     02.01.2010 03:47     C:\Users\esso\AppData\Local\Temp\UserInfoSetup(20100102034654D7C).log --------- 18427  
     02.01.2010 03:46     C:\Users\esso\AppData\Local\Temp\SetupExe(20100102034653D7C).log --------- 4122  
     02.01.2010 03:46     C:\Users\esso\AppData\Local\Temp\~DF1EE0.tmp --------- 512  
     02.01.2010 03:46     C:\Users\esso\AppData\Local\Temp\1835414.od --------- 134  
     02.01.2010 03:46     C:\Users\esso\AppData\Local\Temp\CVR196.tmp.cvr --------- 0  
     02.01.2010 03:46     C:\Users\esso\AppData\Local\Temp\Bewerbungsformular_091027.doc --------- 105472  
     02.01.2010 03:19     C:\Users\esso\AppData\Local\Temp\JETD95E.tmp --------- 0  
     02.01.2010 03:11     C:\Users\esso\AppData\Local\Temp\plugtmp-391 --------- 0  
     02.01.2010 03:06     C:\Users\esso\AppData\Local\Temp\fla80AE.tmp --------- 44894449  
     02.01.2010 02:48     C:\Users\esso\AppData\Local\Temp\WERF71A.tmp.version.txt --------- 476  
     02.01.2010 02:47     C:\Users\esso\AppData\Local\Temp\JETB663.tmp --------- 0  
     02.01.2010 02:42     C:\Users\esso\AppData\Local\Temp\fla9095.tmp --------- 0  
     02.01.2010 02:27     C:\Users\esso\AppData\Local\Temp\plugtmp-390 --------- 0  
     02.01.2010 01:58     C:\Users\esso\AppData\Local\Temp\08f0f2ae-62f9-4f72-86fe-eadd11b8aefe.mht --------- 7362  
     02.01.2010 01:56     C:\Users\esso\AppData\Local\Temp\WER9B25.tmp.version.txt --------- 476  
     02.01.2010 01:56     C:\Users\esso\AppData\Local\Temp\JET45E5.tmp --------- 0  
     02.01.2010 01:41     C:\Users\esso\AppData\Local\Temp\flaC95A.tmp --------- 23389278  
     02.01.2010 01:41     C:\Users\esso\AppData\Local\Temp\plugtmp-389 --------- 0  
     02.01.2010 01:07     C:\Users\esso\AppData\Local\Temp\fla9F02.tmp --------- 101321344  
     02.01.2010 01:04     C:\Users\esso\AppData\Local\Temp\JETA7E2.tmp --------- 0  
     02.01.2010 00:41     C:\Users\esso\AppData\Local\Temp\fla3D18.tmp --------- 28580757  
     02.01.2010 00:39     C:\Users\esso\AppData\Local\Temp\plugtmp-388 --------- 0  
     02.01.2010 00:18     C:\Users\esso\AppData\Local\Temp\JET7A4D.tmp --------- 0  
     01.01.2010 19:49     C:\Users\esso\AppData\Local\Temp\flaF841.tmp --------- 6614059  
     01.01.2010 19:47     C:\Users\esso\AppData\Local\Temp\plugtmp-387 --------- 0  
     01.01.2010 19:20     C:\Users\esso\AppData\Local\Temp\WER83AF.tmp.version.txt --------- 476  
     01.01.2010 19:20     C:\Users\esso\AppData\Local\Temp\JET3D4E.tmp --------- 0  
     01.01.2010 18:52     C:\Users\esso\AppData\Local\Temp\plugtmp-386 --------- 0  
     01.01.2010 18:50     C:\Users\esso\AppData\Local\Temp\fla2F61.tmp --------- 11089114  
     01.01.2010 18:45     C:\Users\esso\AppData\Local\Temp\JETD95D.tmp --------- 0  
     01.01.2010 18:39     C:\Users\esso\AppData\Local\Temp\fla1BD.tmp --------- 21363007  
     01.01.2010 18:35     C:\Users\esso\AppData\Local\Temp\plugtmp-385 --------- 0  
     01.01.2010 09:35     C:\Users\esso\AppData\Local\Temp\UserInfoSetup(2010010109352913F4).log --------- 18427  
     01.01.2010 09:35     C:\Users\esso\AppData\Local\Temp\SetupExe(2010010109352713F4).log --------- 4120  
     01.01.2010 09:35     C:\Users\esso\AppData\Local\Temp\~DF614F.tmp --------- 512  
     01.01.2010 09:35     C:\Users\esso\AppData\Local\Temp\3268954.od --------- 134  
     01.01.2010 09:35     C:\Users\esso\AppData\Local\Temp\CVRE15A.tmp.cvr --------- 0  
     01.01.2010 09:35     C:\Users\esso\AppData\Local\Temp\Carte de Voeux 2010.doc --------- 279552  
     01.01.2010 08:43     C:\Users\esso\AppData\Local\Temp\WER93A7.tmp.version.txt --------- 476  
     01.01.2010 08:43     C:\Users\esso\AppData\Local\Temp\JET904D.tmp --------- 0  
     30.12.2009 16:25     C:\Users\esso\AppData\Local\Temp\plugtmp-384 --------- 0  
     30.12.2009 14:34     C:\Users\esso\AppData\Local\Temp\WERB55.tmp.version.txt --------- 476  
     30.12.2009 14:13     C:\Users\esso\AppData\Local\Temp\plugtmp-383 --------- 0  
     30.12.2009 13:18     C:\Users\esso\AppData\Local\Temp\WERC3AB.tmp.version.txt --------- 476  
     30.12.2009 13:18     C:\Users\esso\AppData\Local\Temp\JETACA3.tmp --------- 0  
     30.12.2009 12:18     C:\Users\esso\AppData\Local\Temp\plugtmp-382 --------- 0  
     30.12.2009 09:01     C:\Users\esso\AppData\Local\Temp\JET510D.tmp --------- 0  
     30.12.2009 02:47     C:\Users\esso\AppData\Local\Temp\plugtmp-381 --------- 0  
     29.12.2009 23:26     C:\Users\esso\AppData\Local\Temp\WERD519.tmp.version.txt --------- 476  
     29.12.2009 22:37     C:\Users\esso\AppData\Local\Temp\plugtmp-380 --------- 0  
     29.12.2009 21:49     C:\Users\esso\AppData\Local\Temp\1bed0350-2df6-4dc1-8ff2-d0d2697da921.mht --------- 7362  
     29.12.2009 21:37     C:\Users\esso\AppData\Local\Temp\JET9378.tmp --------- 0  
     29.12.2009 16:23     C:\Users\esso\AppData\Local\Temp\fla753E.tmp --------- 25477436  
     29.12.2009 16:15     C:\Users\esso\AppData\Local\Temp\plugtmp-379 --------- 0  
     29.12.2009 15:19     C:\Users\esso\AppData\Local\Temp\JET561B.tmp --------- 0  
     29.12.2009 09:19     C:\Users\esso\AppData\Local\Temp\WER9617.tmp.version.txt --------- 476  
     29.12.2009 09:14     C:\Users\esso\AppData\Local\Temp\flaC2C7.tmp --------- 22478811  
     29.12.2009 09:13     C:\Users\esso\AppData\Local\Temp\plugtmp-378 --------- 0  
     29.12.2009 04:53     C:\Users\esso\AppData\Local\Temp\JET51E6.tmp --------- 0  
     29.12.2009 04:45     C:\Users\esso\AppData\Local\Temp\plugtmp-377 --------- 0  
     29.12.2009 04:02     C:\Users\esso\AppData\Local\Temp\fla78E7.tmp --------- 213967901  
     29.12.2009 01:46     C:\Users\esso\AppData\Local\Temp\WERB0C7.tmp.version.txt --------- 476  
     29.12.2009 01:46     C:\Users\esso\AppData\Local\Temp\JET5438.tmp --------- 0  
     29.12.2009 00:33     C:\Users\esso\AppData\Local\Temp\fla5E7B.tmp --------- 15373009  
     29.12.2009 00:28     C:\Users\esso\AppData\Local\Temp\plugtmp-376 --------- 0  
     28.12.2009 23:37     C:\Users\esso\AppData\Local\Temp\6e5deba4-013f-433d-a356-bb7e0fbfb917.mht --------- 7362  
     28.12.2009 23:32     C:\Users\esso\AppData\Local\Temp\WERE243.tmp.version.txt --------- 476  
     28.12.2009 23:32     C:\Users\esso\AppData\Local\Temp\JETC1F7.tmp --------- 0  
     28.12.2009 23:28     C:\Users\esso\AppData\Local\Temp\25bcaf63-905a-456c-a1e6-db5bb062ab62.tmp --------- 0  
     28.12.2009 23:13     C:\Users\esso\AppData\Local\Temp\fla39AC.tmp --------- 86235829  
     28.12.2009 23:12     C:\Users\esso\AppData\Local\Temp\plugtmp-375 --------- 0  
     28.12.2009 23:03     C:\Users\esso\AppData\Local\Temp\5c778c0a-8896-465b-9e82-ff7f4496715a.mht --------- 7362  
     28.12.2009 23:02     C:\Users\esso\AppData\Local\Temp\JET35BF.tmp --------- 0  
     28.12.2009 22:50     C:\Users\esso\AppData\Local\Temp\fla1776.tmp --------- 36440  
     28.12.2009 22:50     C:\Users\esso\AppData\Local\Temp\plugtmp-374 --------- 0  
     28.12.2009 21:52     C:\Users\esso\AppData\Local\Temp\JET334F.tmp --------- 0  
     28.12.2009 21:38     C:\Users\esso\AppData\Local\Temp\plugtmp-373 --------- 0  
     28.12.2009 21:14     C:\Users\esso\AppData\Local\Temp\flaB361.tmp --------- 179119933  
     28.12.2009 21:08     C:\Users\esso\AppData\Local\Temp\WERF814.tmp.version.txt --------- 476  
     28.12.2009 21:06     C:\Users\esso\AppData\Local\Temp\JET7FAA.tmp --------- 0  
     28.12.2009 16:33     C:\Users\esso\AppData\Local\Temp\plugtmp-372 --------- 0  
     28.12.2009 16:10     C:\Users\esso\AppData\Local\Temp\fla8A4B.tmp --------- 17778757  
     28.12.2009 16:04     C:\Users\esso\AppData\Local\Temp\plugtmp-371 --------- 0  
     28.12.2009 15:27     C:\Users\esso\AppData\Local\Temp\WERF343.tmp.version.txt --------- 476  
     28.12.2009 15:27     C:\Users\esso\AppData\Local\Temp\JET932A.tmp --------- 0  
     28.12.2009 15:15     C:\Users\esso\AppData\Local\Temp\flaC1F1.tmp --------- 4521947  
     28.12.2009 15:14     C:\Users\esso\AppData\Local\Temp\plugtmp-370 --------- 0  
     28.12.2009 14:53     C:\Users\esso\AppData\Local\Temp\WER85F1.tmp.version.txt --------- 476  
     28.12.2009 14:52     C:\Users\esso\AppData\Local\Temp\JETDDDF.tmp --------- 0  
     28.12.2009 14:49     C:\Users\esso\AppData\Local\Temp\flaE53D.tmp --------- 0  
     28.12.2009 14:46     C:\Users\esso\AppData\Local\Temp\plugtmp-369 --------- 0  
     28.12.2009 14:26     C:\Users\esso\AppData\Local\Temp\JET44EB.tmp --------- 0  
     28.12.2009 14:24     C:\Users\esso\AppData\Local\Temp\flaCE64.tmp --------- 4505631  
     28.12.2009 14:22     C:\Users\esso\AppData\Local\Temp\plugtmp-368 --------- 0  
     28.12.2009 14:02     C:\Users\esso\AppData\Local\Temp\WER6D3.tmp.version.txt --------- 476  
     28.12.2009 14:01     C:\Users\esso\AppData\Local\Temp\JETCACD.tmp --------- 0  
     28.12.2009 10:26     C:\Users\esso\AppData\Local\Temp\plugtmp-367 --------- 0  
     28.12.2009 10:24     C:\Users\esso\AppData\Local\Temp\flaA93E.tmp --------- 6997077  
     28.12.2009 10:00     C:\Users\esso\AppData\Local\Temp\UserInfoSetup(20091228095931F10).log --------- 18426  
     28.12.2009 09:59     C:\Users\esso\AppData\Local\Temp\SetupExe(20091228095929F10).log --------- 4119  
     28.12.2009 09:14     C:\Users\esso\AppData\Local\Temp\WER51F6.tmp.version.txt --------- 476  
     28.12.2009 09:14     C:\Users\esso\AppData\Local\Temp\JET3B3B.tmp --------- 0  
     28.12.2009 08:07     C:\Users\esso\AppData\Local\Temp\WERA4C8.tmp.appcompat.txt --------- 228  
     28.12.2009 08:07     C:\Users\esso\AppData\Local\Temp\WER8E4A.tmp.version.txt --------- 476  
     28.12.2009 08:07     C:\Users\esso\AppData\Local\Temp\WER8E3B.tmp.version.txt --------- 476  
     28.12.2009 08:07     C:\Users\esso\AppData\Local\Temp\WER8E1B.tmp.version.txt --------- 476  
     28.12.2009 08:07     C:\Users\esso\AppData\Local\Temp\WER8E0C.tmp.version.txt --------- 476  
     28.12.2009 07:49     C:\Users\esso\AppData\Local\Temp\WERBFB5.tmp.version.txt --------- 476  
     28.12.2009 07:49     C:\Users\esso\AppData\Local\Temp\JET9EFC.tmp --------- 0  
     28.12.2009 07:32     C:\Users\esso\AppData\Local\Temp\JET5215.tmp --------- 0  
     28.12.2009 07:23     C:\Users\esso\AppData\Local\Temp\flaDF9C.tmp --------- 36483663  
     28.12.2009 07:17     C:\Users\esso\AppData\Local\Temp\plugtmp-366 --------- 0  
     28.12.2009 07:13     C:\Users\esso\AppData\Local\Temp\WERC11C.tmp.version.txt --------- 476  
     28.12.2009 07:12     C:\Users\esso\AppData\Local\Temp\JET98D5.tmp --------- 0  
     28.12.2009 07:01     C:\Users\esso\AppData\Local\Temp\WER70FA.tmp.version.txt --------- 476  
     28.12.2009 06:29     C:\Users\esso\AppData\Local\Temp\plugtmp-365 --------- 0  
     28.12.2009 06:22     C:\Users\esso\AppData\Local\Temp\WER6B4.tmp.version.txt --------- 476  
     28.12.2009 06:10     C:\Users\esso\AppData\Local\Temp\plugtmp-364 --------- 0  
     28.12.2009 06:08     C:\Users\esso\AppData\Local\Temp\fla66E1.tmp --------- 0  
     28.12.2009 05:48     C:\Users\esso\AppData\Local\Temp\WERA62D.tmp.version.txt --------- 476  
     28.12.2009 05:35     C:\Users\esso\AppData\Local\Temp\fla224D.tmp --------- 33372694  
     28.12.2009 05:31     C:\Users\esso\AppData\Local\Temp\plugtmp-363 --------- 0  
     28.12.2009 05:08     C:\Users\esso\AppData\Local\Temp\WERDF08.tmp.version.txt --------- 476  
     28.12.2009 05:06     C:\Users\esso\AppData\Local\Temp\JETD72B.tmp --------- 0  
     28.12.2009 04:56     C:\Users\esso\AppData\Local\Temp\fla2CC6.tmp --------- 24903635  
     28.12.2009 04:53     C:\Users\esso\AppData\Local\Temp\plugtmp-362 --------- 0  
     28.12.2009 04:38     C:\Users\esso\AppData\Local\Temp\WER3552.tmp.version.txt --------- 476  
     28.12.2009 04:37     C:\Users\esso\AppData\Local\Temp\JETABF7.tmp --------- 0  
     28.12.2009 04:25     C:\Users\esso\AppData\Local\Temp\WERF353.tmp.version.txt --------- 476  
     28.12.2009 04:21     C:\Users\esso\AppData\Local\Temp\WER3580.tmp.version.txt --------- 476  
     28.12.2009 04:13     C:\Users\esso\AppData\Local\Temp\flaD357.tmp --------- 20840395  
     28.12.2009 04:06     C:\Users\esso\AppData\Local\Temp\plugtmp-361 --------- 0  
     28.12.2009 03:57     C:\Users\esso\AppData\Local\Temp\JETC669.tmp --------- 0  
     28.12.2009 03:37     C:\Users\esso\AppData\Local\Temp\flaA497.tmp --------- 14521115  
     28.12.2009 03:31     C:\Users\esso\AppData\Local\Temp\plugtmp-360 --------- 0  
     28.12.2009 03:17     C:\Users\esso\AppData\Local\Temp\WER1E87.tmp.version.txt --------- 476  
     28.12.2009 03:16     C:\Users\esso\AppData\Local\Temp\JETB7D9.tmp --------- 0  
     28.12.2009 03:09     C:\Users\esso\AppData\Local\Temp\flaDDC9.tmp --------- 0  
     28.12.2009 03:08     C:\Users\esso\AppData\Local\Temp\plugtmp-359 --------- 0  
     28.12.2009 02:50     C:\Users\esso\AppData\Local\Temp\WER8094.tmp.version.txt --------- 476  
     28.12.2009 02:50     C:\Users\esso\AppData\Local\Temp\JET39D4.tmp --------- 0  
     28.12.2009 02:45     C:\Users\esso\AppData\Local\Temp\fla9A00.tmp --------- 34930785  
     28.12.2009 02:39     C:\Users\esso\AppData\Local\Temp\plugtmp-358 --------- 0  
     28.12.2009 02:28     C:\Users\esso\AppData\Local\Temp\JETFB00.tmp --------- 0  
     28.12.2009 02:08     C:\Users\esso\AppData\Local\Temp\flaE599.tmp --------- 29838651  
     28.12.2009 02:02     C:\Users\esso\AppData\Local\Temp\plugtmp-357 --------- 0  
     28.12.2009 01:37     C:\Users\esso\AppData\Local\Temp\UserInfoSetup(200912280128041784).log --------- 18427  
     28.12.2009 01:28     C:\Users\esso\AppData\Local\Temp\SetupExe(200912280128021784).log --------- 4120  
     28.12.2009 01:27     C:\Users\esso\AppData\Local\Temp\~DF7BB6.tmp --------- 0  
     28.12.2009 01:27     C:\Users\esso\AppData\Local\Temp\1117622.od --------- 134  
     28.12.2009 01:27     C:\Users\esso\AppData\Local\Temp\CVRDB6.tmp.cvr --------- 0  
     28.12.2009 01:12     C:\Users\esso\AppData\Local\Temp\WERE704.tmp.version.txt --------- 476  
     28.12.2009 01:11     C:\Users\esso\AppData\Local\Temp\JET92DC.tmp --------- 0  
     28.12.2009 01:05     C:\Users\esso\AppData\Local\Temp\plugtmp-356 --------- 0  
     27.12.2009 22:51     C:\Users\esso\AppData\Local\Temp\flaECE8.tmp --------- 12969189  
     27.12.2009 18:58     C:\Users\esso\AppData\Local\Temp\JET84F7.tmp --------- 0  
     27.12.2009 18:52     C:\Users\esso\AppData\Local\Temp\flaF160.tmp --------- 7521189  
     27.12.2009 18:50     C:\Users\esso\AppData\Local\Temp\plugtmp-355 --------- 0  
     27.12.2009 16:53     C:\Users\esso\AppData\Local\Temp\WER209A.tmp.version.txt --------- 476  
     27.12.2009 16:53     C:\Users\esso\AppData\Local\Temp\JETE002.tmp --------- 0  
     27.12.2009 14:13     C:\Users\esso\AppData\Local\Temp\WER51A8.tmp.version.txt --------- 476  
     27.12.2009 14:12     C:\Users\esso\AppData\Local\Temp\JETCF5F.tmp --------- 0  
     27.12.2009 12:10     C:\Users\esso\AppData\Local\Temp\plugtmp-354 --------- 0  
     27.12.2009 10:51     C:\Users\esso\AppData\Local\Temp\fla384D.tmp --------- 324301627  
     27.12.2009 10:06     C:\Users\esso\AppData\Local\Temp\WERD6BE.tmp.version.txt --------- 476  
     27.12.2009 10:05     C:\Users\esso\AppData\Local\Temp\JET84C8.tmp --------- 0  
     27.12.2009 09:34     C:\Users\esso\AppData\Local\Temp\plugtmp-353 --------- 0  
     27.12.2009 09:26     C:\Users\esso\AppData\Local\Temp\fla7EF7.tmp --------- 21642001  
     27.12.2009 08:57     C:\Users\esso\AppData\Local\Temp\fla8B02.tmp --------- 32084  
     27.12.2009 08:54     C:\Users\esso\AppData\Local\Temp\WER4E7C.tmp.version.txt --------- 476  
     27.12.2009 08:54     C:\Users\esso\AppData\Local\Temp\JETF7D5.tmp --------- 0  
     27.12.2009 08:47     C:\Users\esso\AppData\Local\Temp\plugtmp-352 --------- 0  
     27.12.2009 08:29     C:\Users\esso\AppData\Local\Temp\flaB859.tmp --------- 104353293  
     27.12.2009 08:22     C:\Users\esso\AppData\Local\Temp\WER6A56.tmp.version.txt --------- 476  
     27.12.2009 08:21     C:\Users\esso\AppData\Local\Temp\JETC995.tmp --------- 0  
     27.12.2009 07:01     C:\Users\esso\AppData\Local\Temp\plugtmp-351 --------- 0  
     27.12.2009 06:06     C:\Users\esso\AppData\Local\Temp\JET11AD.tmp --------- 0  
     27.12.2009 05:43     C:\Users\esso\AppData\Local\Temp\fla5AA6.tmp --------- 9763831  
     27.12.2009 05:42     C:\Users\esso\AppData\Local\Temp\plugtmp-350 --------- 0  
     27.12.2009 05:10     C:\Users\esso\AppData\Local\Temp\UserInfoSetup(200912270510341304).log --------- 18428  
     27.12.2009 05:10     C:\Users\esso\AppData\Local\Temp\SetupExe(200912270510321304).log --------- 4123  
     27.12.2009 05:10     C:\Users\esso\AppData\Local\Temp\~DF593A.tmp --------- 0  
     27.12.2009 05:10     C:\Users\esso\AppData\Local\Temp\12706546.od --------- 134  
     27.12.2009 05:10     C:\Users\esso\AppData\Local\Temp\CVRE2F2.tmp.cvr --------- 0  
     27.12.2009 01:41     C:\Users\esso\AppData\Local\Temp\WERB96F.tmp.version.txt --------- 476  
     27.12.2009 01:40     C:\Users\esso\AppData\Local\Temp\JET2C4D.tmp --------- 0  
     26.12.2009 23:20     C:\Users\esso\AppData\Local\Temp\flaB151.tmp --------- 391475  
     26.12.2009 23:20     C:\Users\esso\AppData\Local\Temp\plugtmp-349 --------- 0  
     26.12.2009 23:10     C:\Users\esso\AppData\Local\Temp\flaCA5.tmp --------- 156688417  
     26.12.2009 23:08     C:\Users\esso\AppData\Local\Temp\JETDB02.tmp --------- 0  
     26.12.2009 22:55     C:\Users\esso\AppData\Local\Temp\~DF5237.tmp --------- 512  
     26.12.2009 22:55     C:\Users\esso\AppData\Local\Temp\~DF522C.tmp --------- 507904  
     26.12.2009 22:55     C:\Users\esso\AppData\Local\Temp\~DF5214.tmp --------- 512  
     26.12.2009 22:55     C:\Users\esso\AppData\Local\Temp\~DF5208.tmp --------- 1064960  
     26.12.2009 22:55     C:\Users\esso\AppData\Local\Temp\~DF51F4.tmp --------- 512  
     26.12.2009 22:55     C:\Users\esso\AppData\Local\Temp\~DF51E0.tmp --------- 131072  
     26.12.2009 22:55     C:\Users\esso\AppData\Local\Temp\~DF51C4.tmp --------- 512  
     26.12.2009 22:55     C:\Users\esso\AppData\Local\Temp\~DF51B7.tmp --------- 131072  
     26.12.2009 22:55     C:\Users\esso\AppData\Local\Temp\~DF5194.tmp --------- 512  
     26.12.2009 22:55     C:\Users\esso\AppData\Local\Temp\~DF518A.tmp --------- 524288  
     26.12.2009 22:54     C:\Users\esso\AppData\Local\Temp\plugtmp-348 --------- 0  
     26.12.2009 20:32     C:\Users\esso\AppData\Local\Temp\a3d11a32-bf8a-466b-9e0a-a85b4f385eb6.mht --------- 7362  
     26.12.2009 20:28     C:\Users\esso\AppData\Local\Temp\JET3F60.tmp --------- 0  
     26.12.2009 18:14     C:\Users\esso\AppData\Local\Temp\JETBCC9.tmp --------- 0  
     26.12.2009 18:07     C:\Users\esso\AppData\Local\Temp\plugtmp-347 --------- 0  
     26.12.2009 17:47     C:\Users\esso\AppData\Local\Temp\fla872.tmp --------- 64019053  
     26.12.2009 17:24     C:\Users\esso\AppData\Local\Temp\JET58F8.tmp --------- 0  
     26.12.2009 17:18     C:\Users\esso\AppData\Local\Temp\flaC6E1.tmp --------- 2865949  
     26.12.2009 17:15     C:\Users\esso\AppData\Local\Temp\plugtmp-346 --------- 0  
     26.12.2009 16:41     C:\Users\esso\AppData\Local\Temp\JET17B4.tmp --------- 0  
     26.12.2009 16:17     C:\Users\esso\AppData\Local\Temp\plugtmp-345 --------- 0  
     26.12.2009 16:15     C:\Users\esso\AppData\Local\Temp\flaE522.tmp --------- 33521336  
     26.12.2009 16:08     C:\Users\esso\AppData\Local\Temp\WER4C1C.tmp.version.txt --------- 476  
     26.12.2009 16:08     C:\Users\esso\AppData\Local\Temp\JET1A62.tmp --------- 0  
     26.12.2009 10:38     C:\Users\esso\AppData\Local\Temp\plugtmp-344 --------- 0  
     26.12.2009 10:35     C:\Users\esso\AppData\Local\Temp\flaAB72.tmp --------- 42593608  
     25.12.2009 22:56     C:\Users\esso\AppData\Local\Temp\JET2866.tmp --------- 0  
     25.12.2009 22:50     C:\Users\esso\AppData\Local\Temp\flaD86E.tmp --------- 0  
     25.12.2009 22:46     C:\Users\esso\AppData\Local\Temp\plugtmp-343 --------- 0  
     25.12.2009 22:23     C:\Users\esso\AppData\Local\Temp\JET3948.tmp --------- 0  
     25.12.2009 22:16     C:\Users\esso\AppData\Local\Temp\flaD299.tmp --------- 3228808  
     25.12.2009 22:07     C:\Users\esso\AppData\Local\Temp\plugtmp-342 --------- 0  
     25.12.2009 22:07     C:\Users\esso\AppData\Local\Temp\fla346F.tmp --------- 368712  
     25.12.2009 22:03     C:\Users\esso\AppData\Local\Temp\WERC754.tmp.version.txt --------- 476  
     25.12.2009 22:02     C:\Users\esso\AppData\Local\Temp\JETE9F1.tmp --------- 0  
     25.12.2009 21:35     C:\Users\esso\AppData\Local\Temp\flaD88C.tmp --------- 21459192  
     25.12.2009 21:33     C:\Users\esso\AppData\Local\Temp\plugtmp-341 --------- 0  
     25.12.2009 21:17     C:\Users\esso\AppData\Local\Temp\JET3580.tmp --------- 0  
     25.12.2009 21:12     C:\Users\esso\AppData\Local\Temp\fla325D.tmp --------- 11250655  
     25.12.2009 21:12     C:\Users\esso\AppData\Local\Temp\~DF4673.tmp --------- 512  
     25.12.2009 21:12     C:\Users\esso\AppData\Local\Temp\~DF4669.tmp --------- 507904  
     25.12.2009 21:12     C:\Users\esso\AppData\Local\Temp\~DF4651.tmp --------- 512  
     25.12.2009 21:12     C:\Users\esso\AppData\Local\Temp\~DF4646.tmp --------- 1064960  
     25.12.2009 21:12     C:\Users\esso\AppData\Local\Temp\~DF4634.tmp --------- 512  
     25.12.2009 21:12     C:\Users\esso\AppData\Local\Temp\~DF462A.tmp --------- 131072  
     25.12.2009 21:12     C:\Users\esso\AppData\Local\Temp\~DF4618.tmp --------- 512  
     25.12.2009 21:12     C:\Users\esso\AppData\Local\Temp\~DF4606.tmp --------- 131072  
     25.12.2009 21:12     C:\Users\esso\AppData\Local\Temp\~DF45ED.tmp --------- 512  
     25.12.2009 21:12     C:\Users\esso\AppData\Local\Temp\~DF45E3.tmp --------- 524288  
     25.12.2009 21:08     C:\Users\esso\AppData\Local\Temp\plugtmp-340 --------- 0  
     25.12.2009 20:55     C:\Users\esso\AppData\Local\Temp\WERD0A.tmp.version.txt --------- 476  
     25.12.2009 20:55     C:\Users\esso\AppData\Local\Temp\JETF140.tmp --------- 0  
     25.12.2009 02:37     C:\Users\esso\AppData\Local\Temp\~DFC3EF.tmp --------- 512  
     25.12.2009 02:37     C:\Users\esso\AppData\Local\Temp\~DFC3EA.tmp --------- 507904  
     25.12.2009 02:37     C:\Users\esso\AppData\Local\Temp\~DFC3D7.tmp --------- 512  
     25.12.2009 02:37     C:\Users\esso\AppData\Local\Temp\~DFC3D2.tmp --------- 1064960  
     25.12.2009 02:37     C:\Users\esso\AppData\Local\Temp\~DFC3C5.tmp --------- 512  
     25.12.2009 02:37     C:\Users\esso\AppData\Local\Temp\~DFC3C0.tmp --------- 131072  
     25.12.2009 02:37     C:\Users\esso\AppData\Local\Temp\~DFC3B3.tmp --------- 512  
     25.12.2009 02:37     C:\Users\esso\AppData\Local\Temp\~DFC3AE.tmp --------- 131072  
     25.12.2009 02:37     C:\Users\esso\AppData\Local\Temp\~DFC399.tmp --------- 512  
     25.12.2009 02:37     C:\Users\esso\AppData\Local\Temp\~DFC394.tmp --------- 524288  
     25.12.2009 02:20     C:\Users\esso\AppData\Local\Temp\JET5A7E.tmp --------- 0  
     24.12.2009 22:45     C:\Users\esso\AppData\Local\Temp\JET38BB.tmp --------- 0  
     24.12.2009 22:12     C:\Users\esso\AppData\Local\Temp\JETB2DA.tmp --------- 0  
     24.12.2009 19:15     C:\Users\esso\AppData\Local\Temp\JET5ACC.tmp --------- 0  
     23.12.2009 15:45     C:\Users\esso\AppData\Local\Temp\fla4F2C.tmp --------- 368712  
     23.12.2009 15:45     C:\Users\esso\AppData\Local\Temp\plugtmp-339 --------- 0  
     23.12.2009 15:43     C:\Users\esso\AppData\Local\Temp\JET1E1A.tmp --------- 0  
     23.12.2009 13:27     C:\Users\esso\AppData\Local\Temp\WERB173.tmp.version.txt --------- 476  
     23.12.2009 13:27     C:\Users\esso\AppData\Local\Temp\JET866D.tmp --------- 0  
     23.12.2009 11:07     C:\Users\esso\AppData\Local\Temp\plugtmp-338 --------- 0  
     23.12.2009 11:04     C:\Users\esso\AppData\Local\Temp\flaFE41.tmp --------- 19212651  
     23.12.2009 10:10     C:\Users\esso\AppData\Local\Temp\UserInfoSetup(200912231005231DF0).log --------- 18429  
     23.12.2009 10:07     C:\Users\esso\AppData\Local\Temp\366089137.od --------- 134  
     23.12.2009 10:07     C:\Users\esso\AppData\Local\Temp\CVR13B1.tmp.cvr --------- 0  
     23.12.2009 10:07     C:\Users\esso\AppData\Local\Temp\programme_revise.doc --------- 672768  
     23.12.2009 10:05     C:\Users\esso\AppData\Local\Temp\SetupExe(200912231005201DF0).log --------- 4126  
     23.12.2009 10:00     C:\Users\esso\AppData\Local\Temp\~DF6F53.tmp --------- 512  
     23.12.2009 10:00     C:\Users\esso\AppData\Local\Temp\365661616.od --------- 134  
     23.12.2009 10:00     C:\Users\esso\AppData\Local\Temp\CVR8D62.tmp.cvr --------- 0  
     23.12.2009 10:00     C:\Users\esso\AppData\Local\Temp\Essomba.doc --------- 109056  
     23.12.2009 09:48     C:\Users\esso\AppData\Local\Temp\10914104-f469-4ea1-b616-8a2810006aed.mht --------- 7362  
     22.12.2009 15:13     C:\Users\esso\AppData\Local\Temp\ypt5418.tmp --------- 0  
     22.12.2009 13:00     C:\Users\esso\AppData\Local\Temp\ymsgr8 --------- 1474  
     22.12.2009 13:00     C:\Users\esso\AppData\Local\Temp\ymsgr7 --------- 181779  
     22.12.2009 13:00     C:\Users\esso\AppData\Local\Temp\ypt49B8.tmp --------- 0  
     21.12.2009 20:28     C:\Users\esso\AppData\Local\Temp\UserInfoSetup(200912212028151DA4).log --------- 18429  
     21.12.2009 20:28     C:\Users\esso\AppData\Local\Temp\SetupExe(200912212028141DA4).log --------- 4126  
     21.12.2009 20:28     C:\Users\esso\AppData\Local\Temp\~DF255.tmp --------- 0  
     21.12.2009 20:27     C:\Users\esso\AppData\Local\Temp\230515672.od --------- 134  
     21.12.2009 20:27     C:\Users\esso\AppData\Local\Temp\CVR63C9.tmp.cvr --------- 0  
     21.12.2009 20:27     C:\Users\esso\AppData\Local\Temp\ABWL_BACHELOR_2_FuE_BESCHAFFUNG_WS09_HANDOUT_NEU-6.ppt --------- 6001664  
     21.12.2009 06:03     C:\Users\esso\AppData\Local\Temp\~DFC078.tmp --------- 0  
     19.12.2009 04:27     C:\Users\esso\AppData\Local\Temp\JET3E28.tmp --------- 0  
     19.12.2009 03:42     C:\Users\esso\AppData\Local\Temp\WERB3D4.tmp.resp.erc.xml --------- 1909  
     19.12.2009 02:59     C:\Users\esso\AppData\Local\Temp\fla34FA.tmp --------- 243037648  
     19.12.2009 02:59     C:\Users\esso\AppData\Local\Temp\plugtmp-337 --------- 0  
     19.12.2009 02:54     C:\Users\esso\AppData\Local\Temp\JETC764.tmp --------- 0  
     19.12.2009 02:43     C:\Users\esso\AppData\Local\Temp\plugtmp-336 --------- 0  
     19.12.2009 02:22     C:\Users\esso\AppData\Local\Temp\WER669E.tmp.version.txt --------- 476  
     19.12.2009 02:22     C:\Users\esso\AppData\Local\Temp\JET1A91.tmp --------- 0  
     19.12.2009 02:16     C:\Users\esso\AppData\Local\Temp\plugtmp-335 --------- 0  
     19.12.2009 02:10     C:\Users\esso\AppData\Local\Temp\flaA1A4.tmp --------- 31854836  
     19.12.2009 00:57     C:\Users\esso\AppData\Local\Temp\WER28C4.tmp.version.txt --------- 476  
     19.12.2009 00:56     C:\Users\esso\AppData\Local\Temp\JET3B4A.tmp --------- 0  
     19.12.2009 00:40     C:\Users\esso\AppData\Local\Temp\flaF749.tmp --------- 1669975  
     19.12.2009 00:33     C:\Users\esso\AppData\Local\Temp\plugtmp-334 --------- 0  
     19.12.2009 00:26     C:\Users\esso\AppData\Local\Temp\JETFFE0.tmp --------- 0  
     19.12.2009 00:18     C:\Users\esso\AppData\Local\Temp\WERC995.tmp.version.txt --------- 476  
     19.12.2009 00:15     C:\Users\esso\AppData\Local\Temp\flaDEE0.tmp --------- 7535654  
     19.12.2009 00:14     C:\Users\esso\AppData\Local\Temp\plugtmp-333 --------- 0  
     19.12.2009 00:06     C:\Users\esso\AppData\Local\Temp\JET28B4.tmp --------- 0  
     18.12.2009 23:50     C:\Users\esso\AppData\Local\Temp\plugtmp-332 --------- 0  
     18.12.2009 23:35     C:\Users\esso\AppData\Local\Temp\WER52E0.tmp.version.txt --------- 476  
     18.12.2009 23:34     C:\Users\esso\AppData\Local\Temp\JETA7B.tmp --------- 0  
     18.12.2009 23:29     C:\Users\esso\AppData\Local\Temp\fla6F8B.tmp --------- 7532989  
     18.12.2009 23:28     C:\Users\esso\AppData\Local\Temp\plugtmp-331 --------- 0  
     18.12.2009 23:19     C:\Users\esso\AppData\Local\Temp\JET4E9C.tmp --------- 0  
     18.12.2009 23:12     C:\Users\esso\AppData\Local\Temp\flaE306.tmp --------- 18270585  
     18.12.2009 23:11     C:\Users\esso\AppData\Local\Temp\plugtmp-330 --------- 0  
     18.12.2009 23:09     C:\Users\esso\AppData\Local\Temp\WER7F7B.tmp.version.txt --------- 476  
     18.12.2009 23:09     C:\Users\esso\AppData\Local\Temp\JET113E.tmp --------- 0  
     18.12.2009 23:01     C:\Users\esso\AppData\Local\Temp\37d6c604-ccd9-4781-a5a0-a817e613f485.tmp --------- 0  
     18.12.2009 23:01     C:\Users\esso\AppData\Local\Temp\52e31500-28a7-4a80-a195-21f4846ae521.tmp --------- 1638024  
     18.12.2009 22:53     C:\Users\esso\AppData\Local\Temp\729472bc-1f5c-4346-a88f-9e5868aef198.mht --------- 7362  
     18.12.2009 22:41     C:\Users\esso\AppData\Local\Temp\JET4FC4.tmp --------- 0  
     18.12.2009 22:34     C:\Users\esso\AppData\Local\Temp\~DFD95A.tmp --------- 16384  
     18.12.2009 22:31     C:\Users\esso\AppData\Local\Temp\~DFC5F0.tmp --------- 0  
     18.12.2009 22:30     C:\Users\esso\AppData\Local\Temp\~DF5332.tmp --------- 0  
     18.12.2009 22:30     C:\Users\esso\AppData\Local\Temp\~DFCA.tmp --------- 512  
     18.12.2009 22:30     C:\Users\esso\AppData\Local\Temp\~DFC5.tmp --------- 49152  
     18.12.2009 22:30     C:\Users\esso\AppData\Local\Temp\~DFFFE3.tmp --------- 512  
     18.12.2009 22:30     C:\Users\esso\AppData\Local\Temp\~DFFF76.tmp --------- 16384  
     18.12.2009 22:30     C:\Users\esso\AppData\Local\Temp\~DFFF2D.tmp --------- 512  
     18.12.2009 22:30     C:\Users\esso\AppData\Local\Temp\~DFFE6A.tmp --------- 32768  
     18.12.2009 22:30     C:\Users\esso\AppData\Local\Temp\~DFC3F1.tmp --------- 0  
     18.12.2009 22:28     C:\Users\esso\AppData\Local\Temp\WER6F45.tmp.version.txt --------- 476  
     18.12.2009 22:28     C:\Users\esso\AppData\Local\Temp\JET463.tmp --------- 0  
     18.12.2009 22:18     C:\Users\esso\AppData\Local\Temp\~DF79D7.tmp --------- 16384  
     18.12.2009 22:18     C:\Users\esso\AppData\Local\Temp\~DFA8C8.tmp --------- 512  
     18.12.2009 22:18     C:\Users\esso\AppData\Local\Temp\~DFA8C3.tmp --------- 49152  
     18.12.2009 22:18     C:\Users\esso\AppData\Local\Temp\~DFA883.tmp --------- 512  
     18.12.2009 22:18     C:\Users\esso\AppData\Local\Temp\~DFA87E.tmp --------- 16384  
     18.12.2009 22:18     C:\Users\esso\AppData\Local\Temp\~DFA835.tmp --------- 512  
     18.12.2009 22:18     C:\Users\esso\AppData\Local\Temp\~DFA830.tmp --------- 32768  
     18.12.2009 22:18     C:\Users\esso\AppData\Local\Temp\~DF9EC2.tmp --------- 16384  
     18.12.2009 22:18     C:\Users\esso\AppData\Local\Temp\~DF6CCA.tmp --------- 16384  
     18.12.2009 22:17     C:\Users\esso\AppData\Local\Temp\WERE53F.tmp.version.txt --------- 476  
     18.12.2009 22:17     C:\Users\esso\AppData\Local\Temp\JET953C.tmp --------- 0  
     18.12.2009 22:07     C:\Users\esso\AppData\Local\Temp\plugtmp-329 --------- 0  
     18.12.2009 22:04     C:\Users\esso\AppData\Local\Temp\fla67DD.tmp --------- 33948337  
     18.12.2009 22:01     C:\Users\esso\AppData\Local\Temp\WER8C37.tmp.version.txt --------- 476  
     18.12.2009 22:00     C:\Users\esso\AppData\Local\Temp\JET59B3.tmp --------- 0  
     18.12.2009 19:38     C:\Users\esso\AppData\Local\Temp\WER26C1.tmp.version.txt --------- 476  
     18.12.2009 19:38     C:\Users\esso\AppData\Local\Temp\JETB28C.tmp --------- 0  
     18.12.2009 18:45     C:\Users\esso\AppData\Local\Temp\WER9BB2.tmp.version.txt --------- 476  
     18.12.2009 18:44     C:\Users\esso\AppData\Local\Temp\JETDE0E.tmp --------- 0  
     18.12.2009 18:37     C:\Users\esso\AppData\Local\Temp\plugtmp-328 --------- 0  
     18.12.2009 18:21     C:\Users\esso\AppData\Local\Temp\fla95BC.tmp --------- 100308729  
     18.12.2009 18:19     C:\Users\esso\AppData\Local\Temp\WERDF75.tmp.version.txt --------- 476  
     18.12.2009 18:18     C:\Users\esso\AppData\Local\Temp\JET4DE0.tmp --------- 0  
     18.12.2009 17:50     C:\Users\esso\AppData\Local\Temp\fla9840.tmp --------- 40265577  
     18.12.2009 17:50     C:\Users\esso\AppData\Local\Temp\plugtmp-327 --------- 0  
     18.12.2009 17:47     C:\Users\esso\AppData\Local\Temp\WERCF4F.tmp.version.txt --------- 476  
     18.12.2009 17:47     C:\Users\esso\AppData\Local\Temp\JETC467.tmp --------- 0  
     18.12.2009 17:44     C:\Users\esso\AppData\Local\Temp\fla30F7.tmp --------- 18808740  
     18.12.2009 17:43     C:\Users\esso\AppData\Local\Temp\flaD07.tmp --------- 2293609  
     18.12.2009 17:43     C:\Users\esso\AppData\Local\Temp\plugtmp-326 --------- 0  
     18.12.2009 17:35     C:\Users\esso\AppData\Local\Temp\WER2126.tmp.version.txt --------- 476  
     18.12.2009 17:34     C:\Users\esso\AppData\Local\Temp\JETA044.tmp --------- 0  
     18.12.2009 16:27     C:\Users\esso\AppData\Local\Temp\WERD5C5.tmp.version.txt --------- 476  
     18.12.2009 16:15     C:\Users\esso\AppData\Local\Temp\WER6F55.tmp.version.txt --------- 476  
     18.12.2009 15:55     C:\Users\esso\AppData\Local\Temp\plugtmp-325 --------- 0  
     18.12.2009 13:03     C:\Users\esso\AppData\Local\Temp\5a496298-e8d1-4792-8d69-5e14a294dbe1.mht --------- 7362  
     18.12.2009 13:02     C:\Users\esso\AppData\Local\Temp\WERE82C.tmp.version.txt --------- 476  
     18.12.2009 13:02     C:\Users\esso\AppData\Local\Temp\JET23A6.tmp --------- 0  
     18.12.2009 12:57     C:\Users\esso\AppData\Local\Temp\fla4075.tmp --------- 6985807  
     18.12.2009 12:54     C:\Users\esso\AppData\Local\Temp\plugtmp-324 --------- 0  
     18.12.2009 12:23     C:\Users\esso\AppData\Local\Temp\JET705E.tmp --------- 0  
     18.12.2009 12:11     C:\Users\esso\AppData\Local\Temp\flaD828.tmp --------- 9824828  
     18.12.2009 12:08     C:\Users\esso\AppData\Local\Temp\plugtmp-323 --------- 0  
     18.12.2009 11:59     C:\Users\esso\AppData\Local\Temp\WER4F95.tmp.version.txt --------- 476  
     18.12.2009 11:58     C:\Users\esso\AppData\Local\Temp\JETF22A.tmp --------- 0  
     18.12.2009 11:54     C:\Users\esso\AppData\Local\Temp\fla532C.tmp --------- 8852612  
     18.12.2009 11:53     C:\Users\esso\AppData\Local\Temp\plugtmp-322 --------- 0  
     18.12.2009 11:40     C:\Users\esso\AppData\Local\Temp\flaE62.tmp --------- 368712  
     18.12.2009 11:38     C:\Users\esso\AppData\Local\Temp\flaC484.tmp --------- 1609489  
     18.12.2009 11:34     C:\Users\esso\AppData\Local\Temp\WER4681.tmp.version.txt --------- 476  
     18.12.2009 11:33     C:\Users\esso\AppData\Local\Temp\JETE6A6.tmp --------- 0  
     18.12.2009 11:24     C:\Users\esso\AppData\Local\Temp\plugtmp-321 --------- 0  
     18.12.2009 11:24     C:\Users\esso\AppData\Local\Temp\flaAFA6.tmp --------- 9831591  
     18.12.2009 10:52     C:\Users\esso\AppData\Local\Temp\JET56A7.tmp --------- 0  
     18.12.2009 05:15     C:\Users\esso\AppData\Local\Temp\JET1E78.tmp --------- 0  
     17.12.2009 20:49     C:\Users\esso\AppData\Local\Temp\~DF4530.tmp --------- 512  
     17.12.2009 20:49     C:\Users\esso\AppData\Local\Temp\~DF44CF.tmp --------- 16384  
     17.12.2009 20:49     C:\Users\esso\AppData\Local\Temp\~DF3632.tmp --------- 512  
     17.12.2009 20:49     C:\Users\esso\AppData\Local\Temp\~DF362D.tmp --------- 507904  
     17.12.2009 20:48     C:\Users\esso\AppData\Local\Temp\JETC486.tmp --------- 0  
     17.12.2009 19:26     C:\Users\esso\AppData\Local\Temp\DWDE5ED.tmp --------- 0  
     17.12.2009 18:44     C:\Users\esso\AppData\Local\Temp\JET1582.tmp --------- 0  
     17.12.2009 16:55     C:\Users\esso\AppData\Local\Temp\UserInfoSetup(200912171655451080).log --------- 18427  
     17.12.2009 16:55     C:\Users\esso\AppData\Local\Temp\SetupExe(200912171655441080).log --------- 4120  
     17.12.2009 16:51     C:\Users\esso\AppData\Local\Temp\UserInfoSetup(200912171651271170).log --------- 18427  
     17.12.2009 16:51     C:\Users\esso\AppData\Local\Temp\SetupExe(200912171651251170).log --------- 4120  
     17.12.2009 16:51     C:\Users\esso\AppData\Local\Temp\2123548.od --------- 134  
     17.12.2009 16:51     C:\Users\esso\AppData\Local\Temp\CVR671C.tmp.cvr --------- 0  
     17.12.2009 16:51     C:\Users\esso\AppData\Local\Temp\2123360.od --------- 134  
     17.12.2009 16:51     C:\Users\esso\AppData\Local\Temp\CVR6660.tmp.cvr --------- 0  
     17.12.2009 15:16     C:\Users\esso\AppData\Local\Temp\plugtmp-320 --------- 0  
     17.12.2009 08:56     C:\Users\esso\AppData\Local\Temp\WERAAAF.tmp.version.txt --------- 476  
     17.12.2009 08:28     C:\Users\esso\AppData\Local\Temp\UserInfoSetup(200912170828105B8).log --------- 18425  
     17.12.2009 08:28     C:\Users\esso\AppData\Local\Temp\SetupExe(200912170828085B8).log --------- 4116  
     17.12.2009 08:28     C:\Users\esso\AppData\Local\Temp\555207.od --------- 134  
     17.12.2009 08:28     C:\Users\esso\AppData\Local\Temp\CVR78C7.tmp.cvr --------- 0  
     17.12.2009 08:27     C:\Users\esso\AppData\Local\Temp\CVR7119.tmp --------- 0  
     17.12.2009 08:22     C:\Users\esso\AppData\Local\Temp\WER868D.tmp.version.txt --------- 476  
     17.12.2009 01:29     C:\Users\esso\AppData\Local\Temp\plugtmp-319 --------- 0  
     17.12.2009 00:43     C:\Users\esso\AppData\Local\Temp\plugtmp-318 --------- 0  
     17.12.2009 00:38     C:\Users\esso\AppData\Local\Temp\flaAA57.tmp --------- 24076296  
     17.12.2009 00:27     C:\Users\esso\AppData\Local\Temp\moz_media_cache-1 --------- 61440  
     17.12.2009 00:25     C:\Users\esso\AppData\Local\Temp\WERB837.tmp.version.txt --------- 476  
     17.12.2009 00:24     C:\Users\esso\AppData\Local\Temp\JET3DCB.tmp --------- 0  
     17.12.2009 00:06     C:\Users\esso\AppData\Local\Temp\flaB0ED.tmp --------- 15932959  
     17.12.2009 00:01     C:\Users\esso\AppData\Local\Temp\plugtmp-317 --------- 0  
     16.12.2009 23:16     C:\Users\esso\AppData\Local\Temp\JETD854.tmp --------- 0  
     16.12.2009 23:11     C:\Users\esso\AppData\Local\Temp\plugtmp-316 --------- 0  
     16.12.2009 23:11     C:\Users\esso\AppData\Local\Temp\WER558F.tmp.version.txt --------- 476  
     16.12.2009 22:37     C:\Users\esso\AppData\Local\Temp\moz_media_cache --------- 131072  
     16.12.2009 22:35     C:\Users\esso\AppData\Local\Temp\JETDA66.tmp --------- 0  
     16.12.2009 22:31     C:\Users\esso\AppData\Local\Temp\~DFA06D.tmp --------- 512  
     16.12.2009 22:31     C:\Users\esso\AppData\Local\Temp\~DFA053.tmp --------- 16384  
     16.12.2009 22:31     C:\Users\esso\AppData\Local\Temp\~DF9FD7.tmp --------- 512  
     16.12.2009 22:31     C:\Users\esso\AppData\Local\Temp\~DF9FAF.tmp --------- 131072  
     16.12.2009 22:30     C:\Users\esso\AppData\Local\Temp\WERE291.tmp.version.txt --------- 476  
     16.12.2009 22:29     C:\Users\esso\AppData\Local\Temp\JET6602.tmp --------- 0  
     16.12.2009 22:28     C:\Users\esso\AppData\Local\Temp\WERE7CE.tmp.version.txt --------- 476  
     16.12.2009 22:28     C:\Users\esso\AppData\Local\Temp\WER-108420-0.sysdata.xml --------- 263578  
     16.12.2009 22:05     C:\Users\esso\AppData\Local\Temp\plugtmp-315 --------- 0  
     16.12.2009 22:05     C:\Users\esso\AppData\Local\Temp\fla9980.tmp --------- 15703375  
     16.12.2009 21:59     C:\Users\esso\AppData\Local\Temp\fla89F3.tmp --------- 23409316  
     16.12.2009 21:11     C:\Users\esso\AppData\Local\Temp\UserInfoSetup(200912162111271248).log --------- 18428  
     16.12.2009 21:11     C:\Users\esso\AppData\Local\Temp\SetupExe(200912162111251248).log --------- 4123  
     16.12.2009 21:11     C:\Users\esso\AppData\Local\Temp\~DFA857.tmp --------- 512  
     16.12.2009 21:11     C:\Users\esso\AppData\Local\Temp\15734994.od --------- 134  
     16.12.2009 21:11     C:\Users\esso\AppData\Local\Temp\CVR1807.tmp.cvr --------- 0  
     16.12.2009 21:11     C:\Users\esso\AppData\Local\Temp\ECONOMIE DES RESSOURCES NATURELLES.doc --------- 55808  
     16.12.2009 19:36     C:\Users\esso\AppData\Local\Temp\a78aeec8-96c7-4386-98d5-f774c04181ad.mht --------- 7362  
     16.12.2009 16:52     C:\Users\esso\AppData\Local\Temp\JET6EB9.tmp --------- 0  
     16.12.2009 16:41     C:\Users\esso\AppData\Local\Temp\plugtmp-314 --------- 0  
     16.12.2009 16:39     C:\Users\esso\AppData\Local\Temp\flaB77E.tmp --------- 12928119  
     16.12.2009 16:24     C:\Users\esso\AppData\Local\Temp\fla7195.tmp --------- 2012321  
     16.12.2009 11:56     C:\Users\esso\AppData\Local\Temp\UserInfoSetup(200912161156311348).log --------- 18427  
     16.12.2009 11:56     C:\Users\esso\AppData\Local\Temp\SetupExe(200912161156261348).log --------- 4117  
     16.12.2009 11:56     C:\Users\esso\AppData\Local\Temp\949328.od --------- 134  
     16.12.2009 11:56     C:\Users\esso\AppData\Local\Temp\CVR7BB4.tmp.cvr --------- 0  
     16.12.2009 11:55     C:\Users\esso\AppData\Local\Temp\f3d4555b-d91a-490a-9e1d-5c1b976bc335.mht --------- 7362  
     16.12.2009 11:54     C:\Users\esso\AppData\Local\Temp\b26932b7-7a73-41a8-9c69-f3b63880aad9.mht --------- 7362  
     16.12.2009 11:48     C:\Users\esso\AppData\Local\Temp\JET8A25.tmp --------- 0  
     16.12.2009 11:18     C:\Users\esso\AppData\Local\Temp\plugtmp-313 --------- 0  
     16.12.2009 11:09     C:\Users\esso\AppData\Local\Temp\UserInfoSetup(200912161108591454).log --------- 18427  
     16.12.2009 11:08     C:\Users\esso\AppData\Local\Temp\SetupExe(200912161108561454).log --------- 4120  
     16.12.2009 11:08     C:\Users\esso\AppData\Local\Temp\1262547.od --------- 134  
     16.12.2009 11:08     C:\Users\esso\AppData\Local\Temp\CVR43D3.tmp.cvr --------- 0  
     16.12.2009 04:44     C:\Users\esso\AppData\Local\Temp\plugtmp-312 --------- 0  
     16.12.2009 04:41     C:\Users\esso\AppData\Local\Temp\fla8494.tmp --------- 44823648  
     16.12.2009 00:33     C:\Users\esso\AppData\Local\Temp\fla3833.tmp --------- 41922797  
     16.12.2009 00:33     C:\Users\esso\AppData\Local\Temp\plugtmp-311 --------- 0  
     16.12.2009 00:30     C:\Users\esso\AppData\Local\Temp\WER1E2A.tmp.version.txt --------- 476  
     16.12.2009 00:30     C:\Users\esso\AppData\Local\Temp\JETDF37.tmp --------- 0  
     16.12.2009 00:00     C:\Users\esso\AppData\Local\Temp\665e3c80-9177-4bca-a90c-95d2ff7af3fa.tmp --------- 0  
     16.12.2009 00:00     C:\Users\esso\AppData\Local\Temp\db4d145a-e59a-4a5e-8a5f-3e39b3735b19.tmp --------- 0  
     16.12.2009 00:00     C:\Users\esso\AppData\Local\Temp\7cc5ac64-e68f-45d5-abb7-1ac72fdc95e0.tmp --------- 0  
     16.12.2009 00:00     C:\Users\esso\AppData\Local\Temp\53402f29-1533-44a2-abb6-50c4d1e2b41f.tmp --------- 33792  
     15.12.2009 23:55     C:\Users\esso\AppData\Local\Temp\fla627D.tmp --------- 27430845  
     15.12.2009 23:55     C:\Users\esso\AppData\Local\Temp\plugtmp-310 --------- 0  
     15.12.2009 23:44     C:\Users\esso\AppData\Local\Temp\fd658458-b9ac-4d3e-8c65-c260d4409110.mht --------- 7362  
     15.12.2009 23:43     C:\Users\esso\AppData\Local\Temp\WER8CB4.tmp.version.txt --------- 476  
     15.12.2009 23:43     C:\Users\esso\AppData\Local\Temp\JET141C.tmp --------- 0  
     15.12.2009 23:36     C:\Users\esso\AppData\Local\Temp\plugtmp-309 --------- 0  
     15.12.2009 23:28     C:\Users\esso\AppData\Local\Temp\plugtmp-308 --------- 0  
     15.12.2009 23:22     C:\Users\esso\AppData\Local\Temp\JETFDBE.tmp --------- 0  
     15.12.2009 22:57     C:\Users\esso\AppData\Local\Temp\WERFA74.tmp.version.txt --------- 476  
     15.12.2009 22:56     C:\Users\esso\AppData\Local\Temp\JETCDD9.tmp --------- 0  
     15.12.2009 22:36     C:\Users\esso\AppData\Local\Temp\JET3D4D.tmp --------- 0  
     15.12.2009 22:32     C:\Users\esso\AppData\Local\Temp\plugtmp-307 --------- 0  
     15.12.2009 22:27     C:\Users\esso\AppData\Local\Temp\WERECED.tmp.version.txt --------- 476  
     15.12.2009 22:27     C:\Users\esso\AppData\Local\Temp\JET95B9.tmp --------- 0  
     15.12.2009 18:46     C:\Users\esso\AppData\Local\Temp\plugtmp-306 --------- 0  
     15.12.2009 18:41     C:\Users\esso\AppData\Local\Temp\WERCD9A.tmp.version.txt --------- 476  
     15.12.2009 18:41     C:\Users\esso\AppData\Local\Temp\JETA295.tmp --------- 0  
     15.12.2009 12:54     C:\Users\esso\AppData\Local\Temp\~DF9F16.tmp --------- 16384  
     15.12.2009 12:51     C:\Users\esso\AppData\Local\Temp\~DF2AAC.tmp --------- 0  
     15.12.2009 12:48     C:\Users\esso\AppData\Local\Temp\~DF4D8A.tmp --------- 512  
     15.12.2009 12:48     C:\Users\esso\AppData\Local\Temp\~DF4D85.tmp --------- 49152  
     15.12.2009 12:48     C:\Users\esso\AppData\Local\Temp\~DF4CB0.tmp --------- 512  
     15.12.2009 12:48     C:\Users\esso\AppData\Local\Temp\~DF4CAB.tmp --------- 16384  
     15.12.2009 12:48     C:\Users\esso\AppData\Local\Temp\~DF4C62.tmp --------- 512  
     15.12.2009 12:48     C:\Users\esso\AppData\Local\Temp\~DF4C5C.tmp --------- 32768  
     15.12.2009 12:48     C:\Users\esso\AppData\Local\Temp\~DFA235.tmp --------- 16384  
     15.12.2009 12:48     C:\Users\esso\AppData\Local\Temp\~DF8396.tmp --------- 0  
     15.12.2009 12:48     C:\Users\esso\AppData\Local\Temp\JET6B40.tmp --------- 0  
     15.12.2009 12:36     C:\Users\esso\AppData\Local\Temp\flaD362.tmp --------- 8809438  
     15.12.2009 12:24     C:\Users\esso\AppData\Local\Temp\JET50AE.tmp --------- 0  
     15.12.2009 12:07     C:\Users\esso\AppData\Local\Temp\plugtmp-305 --------- 0  
     15.12.2009 10:39     C:\Users\esso\AppData\Local\Temp\0bf2974e-22ea-490b-8a9c-e6f8de067528.mht --------- 7362  
     15.12.2009 10:24     C:\Users\esso\AppData\Local\Temp\JETF3C0.tmp --------- 0  
     15.12.2009 10:06     C:\Users\esso\AppData\Local\Temp\plugtmp-304 --------- 0  
     15.12.2009 10:01     C:\Users\esso\AppData\Local\Temp\fla37CF.tmp --------- 57345854  
     15.12.2009 09:42     C:\Users\esso\AppData\Local\Temp\JET11EA.tmp --------- 0  
     15.12.2009 09:33     C:\Users\esso\AppData\Local\Temp\plugtmp-303 --------- 0  
     15.12.2009 09:31     C:\Users\esso\AppData\Local\Temp\fla6603.tmp --------- 17903137  
     15.12.2009 01:17     C:\Users\esso\AppData\Local\Temp\flaDCBD.tmp --------- 151576445  
     14.12.2009 22:39     C:\Users\esso\AppData\Local\Temp\JET28C5.tmp --------- 0  
     14.12.2009 22:33     C:\Users\esso\AppData\Local\Temp\plugtmp-302 --------- 0  
     14.12.2009 22:33     C:\Users\esso\AppData\Local\Temp\fla4BFA.tmp --------- 6646771  
     14.12.2009 22:09     C:\Users\esso\AppData\Local\Temp\WER3957.tmp.version.txt --------- 476  
     14.12.2009 22:09     C:\Users\esso\AppData\Local\Temp\JET13BE.tmp --------- 0  
     14.12.2009 22:04     C:\Users\esso\AppData\Local\Temp\fla6A68.tmp --------- 19986343  
     14.12.2009 22:04     C:\Users\esso\AppData\Local\Temp\~DF4F15.tmp --------- 512  
     14.12.2009 22:04     C:\Users\esso\AppData\Local\Temp\~DF4EF7.tmp --------- 507904  
     14.12.2009 22:04     C:\Users\esso\AppData\Local\Temp\~DF23CE.tmp --------- 512  
     14.12.2009 22:04     C:\Users\esso\AppData\Local\Temp\~DF22DD.tmp --------- 1064960  
     14.12.2009 22:04     C:\Users\esso\AppData\Local\Temp\~DFB07.tmp --------- 512  
     14.12.2009 22:04     C:\Users\esso\AppData\Local\Temp\~DFAF7.tmp --------- 131072  
     14.12.2009 22:04     C:\Users\esso\AppData\Local\Temp\~DFFF3C.tmp --------- 512  
     14.12.2009 22:04     C:\Users\esso\AppData\Local\Temp\~DFFF29.tmp --------- 131072  
     14.12.2009 22:04     C:\Users\esso\AppData\Local\Temp\~DFFED4.tmp --------- 512  
     14.12.2009 22:04     C:\Users\esso\AppData\Local\Temp\~DFFE82.tmp --------- 16384  
     14.12.2009 22:04     C:\Users\esso\AppData\Local\Temp\~DFB3E1.tmp --------- 512  
     14.12.2009 22:04     C:\Users\esso\AppData\Local\Temp\~DFB3D1.tmp --------- 524288  
     14.12.2009 22:02     C:\Users\esso\AppData\Local\Temp\plugtmp-301 --------- 0  
     14.12.2009 21:58     C:\Users\esso\AppData\Local\Temp\JET62E7.tmp --------- 0  
     14.12.2009 21:36     C:\Users\esso\AppData\Local\Temp\plugtmp-300 --------- 0  
     14.12.2009 21:36     C:\Users\esso\AppData\Local\Temp\fla8C6D.tmp --------- 23502157  
     14.12.2009 20:50     C:\Users\esso\AppData\Local\Temp\e8a841db-12cb-4040-82d7-3cd2ec7ddb7e.mht --------- 7362  
     14.12.2009 18:00     C:\Users\esso\AppData\Local\Temp\UserInfoSetup(200912141800321438).log --------- 18427  
     14.12.2009 18:00     C:\Users\esso\AppData\Local\Temp\SetupExe(200912141800291438).log --------- 4120  
     14.12.2009 16:46     C:\Users\esso\AppData\Local\Temp\UserInfoSetup(200912141645521330).log --------- 18426  
     14.12.2009 16:45     C:\Users\esso\AppData\Local\Temp\SetupExe(200912141645501330).log --------- 4117  
     14.12.2009 16:45     C:\Users\esso\AppData\Local\Temp\594114.od --------- 134  
     14.12.2009 16:45     C:\Users\esso\AppData\Local\Temp\CVR10C2.tmp.cvr --------- 0  
     14.12.2009 16:38     C:\Users\esso\AppData\Local\Temp\JETE12A.tmp --------- 0  
     14.12.2009 16:30     C:\Users\esso\AppData\Local\Temp\9ebb6264-a773-4562-822f-6e8dcda01eb2.tmp --------- 0  
     14.12.2009 16:30     C:\Users\esso\AppData\Local\Temp\7aa426cc-c8bc-4d71-bdf2-b827078f6f95.tmp --------- 0  
     14.12.2009 16:30     C:\Users\esso\AppData\Local\Temp\7afa7501-92af-4717-a5c1-498b665e8cac.tmp --------- 60548  
     14.12.2009 16:29     C:\Users\esso\AppData\Local\Temp\plugtmp-299 --------- 0  
     14.12.2009 16:13     C:\Users\esso\AppData\Local\Temp\ABWL_BACHELOR_2_FuE_BESCHAFFUNG_WS09_HANDOUT_NEU-5.ppt --------- 6001664  
     14.12.2009 16:06     C:\Users\esso\AppData\Local\Temp\a5a8bd91-8d1b-4f7f-8c8d-7f7ac423806d.mht --------- 7362  
     14.12.2009 15:14     C:\Users\esso\AppData\Local\Temp\UserInfoSetup(200912141514271134).log --------- 5584  
     14.12.2009 15:14     C:\Users\esso\AppData\Local\Temp\SetupExe(200912141514201134).log --------- 4117  
     14.12.2009 15:13     C:\Users\esso\AppData\Local\Temp\427988.od --------- 134  
     14.12.2009 15:13     C:\Users\esso\AppData\Local\Temp\CVR87D4.tmp.cvr --------- 0  
     14.12.2009 15:10     C:\Users\esso\AppData\Local\Temp\WER7686.tmp.version.txt --------- 476  
     14.12.2009 15:10     C:\Users\esso\AppData\Local\Temp\JET11AC.tmp --------- 0  
     14.12.2009 13:59     C:\Users\esso\AppData\Local\Temp\~DFB030.tmp --------- 512  
     14.12.2009 09:58     C:\Users\esso\AppData\Local\Temp\~DFA84D.tmp --------- 512  
     14.12.2009 02:37     C:\Users\esso\AppData\Local\Temp\6183177.od --------- 134  
     14.12.2009 02:37     C:\Users\esso\AppData\Local\Temp\CVR5909.tmp.cvr --------- 0  
     14.12.2009 02:36     C:\Users\esso\AppData\Local\Temp\UserInfoSetup(20091214023634B8C).log --------- 18426  
     14.12.2009 02:36     C:\Users\esso\AppData\Local\Temp\SetupExe(20091214023632B8C).log --------- 4119  
     14.12.2009 02:36     C:\Users\esso\AppData\Local\Temp\6108952.od --------- 134  
     14.12.2009 02:36     C:\Users\esso\AppData\Local\Temp\CVR3718.tmp.cvr --------- 0  
     14.12.2009 00:57     C:\Users\esso\AppData\Local\Temp\JET957B.tmp --------- 0  
     13.12.2009 17:18     C:\Users\esso\AppData\Local\Temp\~DFB609.tmp --------- 512  
     13.12.2009 16:16     C:\Users\esso\AppData\Local\Temp\UserInfoSetup(20091213161609130C).log --------- 18427  
     13.12.2009 16:16     C:\Users\esso\AppData\Local\Temp\SetupExe(20091213161607130C).log --------- 4120  
     13.12.2009 16:15     C:\Users\esso\AppData\Local\Temp\1376038.od --------- 134  
     13.12.2009 16:15     C:\Users\esso\AppData\Local\Temp\CVRFF26.tmp.cvr --------- 0  
     13.12.2009 15:56     C:\Users\esso\AppData\Local\Temp\JETE6C5.tmp --------- 0  
     13.12.2009 15:32     C:\Users\esso\AppData\Local\Temp\UserInfoSetup(200912131532171530).log --------- 18427  
     13.12.2009 15:32     C:\Users\esso\AppData\Local\Temp\SetupExe(200912131532161530).log --------- 4120  
     13.12.2009 15:32     C:\Users\esso\AppData\Local\Temp\1275230.od --------- 134  
     13.12.2009 15:32     C:\Users\esso\AppData\Local\Temp\CVR755E.tmp.cvr --------- 0  
     13.12.2009 14:26     C:\Users\esso\AppData\Local\Temp\~DFD29D.tmp --------- 16384  
     13.12.2009 14:25     C:\Users\esso\AppData\Local\Temp\JET169B.tmp --------- 0  
     13.12.2009 14:25     C:\Users\esso\AppData\Local\Temp\SapStart.log --------- 43965  
     13.12.2009 14:16     C:\Users\esso\AppData\Local\Temp\JET2644.tmp --------- 0  
     13.12.2009 13:34     C:\Users\esso\AppData\Local\Temp\plugtmp-298 --------- 0  
     13.12.2009 13:31     C:\Users\esso\AppData\Local\Temp\JET39F3.tmp --------- 0  
     13.12.2009 13:15     C:\Users\esso\AppData\Local\Temp\fla7E7A.tmp --------- 647733  
     13.12.2009 13:15     C:\Users\esso\AppData\Local\Temp\plugtmp-297 --------- 0  
     13.12.2009 13:11     C:\Users\esso\AppData\Local\Temp\~DFAEA7.tmp --------- 16384  
     13.12.2009 13:11     C:\Users\esso\AppData\Local\Temp\JET536D.tmp --------- 0  
     13.12.2009 12:40     C:\Users\esso\AppData\Local\Temp\JET8AFF.tmp --------- 0  
     13.12.2009 12:31     C:\Users\esso\AppData\Local\Temp\flaB46A.tmp --------- 0  
     13.12.2009 12:31     C:\Users\esso\AppData\Local\Temp\plugtmp-296 --------- 0  
     13.12.2009 12:11     C:\Users\esso\AppData\Local\Temp\JETAD4E.tmp --------- 0  
     13.12.2009 12:01     C:\Users\esso\AppData\Local\Temp\fla51C7.tmp --------- 5242789  
     13.12.2009 12:01     C:\Users\esso\AppData\Local\Temp\plugtmp-295 --------- 0  
     13.12.2009 11:37     C:\Users\esso\AppData\Local\Temp\JET510C.tmp --------- 0  
     13.12.2009 11:01     C:\Users\esso\AppData\Local\Temp\plugtmp-294 --------- 0  
     13.12.2009 10:50     C:\Users\esso\AppData\Local\Temp\fla4838.tmp --------- 16676  
     13.12.2009 10:06     C:\Users\esso\AppData\Local\Temp\WER6057.tmp.version.txt --------- 476  
     13.12.2009 10:06     C:\Users\esso\AppData\Local\Temp\JET2C3D.tmp --------- 0  
     13.12.2009 09:26     C:\Users\esso\AppData\Local\Temp\flaF0BA.tmp --------- 78217713  
     13.12.2009 09:26     C:\Users\esso\AppData\Local\Temp\plugtmp-293 --------- 0  
     13.12.2009 05:37     C:\Users\esso\AppData\Local\Temp\flaC876.tmp --------- 6604638  
     13.12.2009 01:45     C:\Users\esso\AppData\Local\Temp\JETC8AB.tmp --------- 0  
     13.12.2009 01:05     C:\Users\esso\AppData\Local\Temp\flaA2EC.tmp --------- 117482849  
     13.12.2009 01:05     C:\Users\esso\AppData\Local\Temp\plugtmp-292 --------- 0  
     13.12.2009 00:44     C:\Users\esso\AppData\Local\Temp\WERD92E.tmp.version.txt --------- 476  
     13.12.2009 00:43     C:\Users\esso\AppData\Local\Temp\JET10A2.tmp --------- 0  
     13.12.2009 00:15     C:\Users\esso\AppData\Local\Temp\fla3E65.tmp --------- 97188985  
     13.12.2009 00:14     C:\Users\esso\AppData\Local\Temp\plugtmp-291 --------- 0  
     13.12.2009 00:13     C:\Users\esso\AppData\Local\Temp\fla62AD.tmp --------- 344377  
     12.12.2009 22:41     C:\Users\esso\AppData\Local\Temp\~DFA7FF.tmp --------- 512  
     12.12.2009 21:25     C:\Users\esso\AppData\Local\Temp\UserInfoSetup(200912122124551708).log --------- 18428  
     12.12.2009 21:24     C:\Users\esso\AppData\Local\Temp\SetupExe(200912122124541708).log --------- 4123  
     12.12.2009 21:24     C:\Users\esso\AppData\Local\Temp\25286966.od --------- 134  
     12.12.2009 21:24     C:\Users\esso\AppData\Local\Temp\CVRD936.tmp.cvr --------- 0  
     12.12.2009 21:24     C:\Users\esso\AppData\Local\Temp\UserInfoSetup(20091212212357EA4).log --------- 18427  
     12.12.2009 21:23     C:\Users\esso\AppData\Local\Temp\SetupExe(20091212212356EA4).log --------- 4122  
     12.12.2009 14:26     C:\Users\esso\AppData\Local\Temp\JETE2B0.tmp --------- 0  
     12.12.2009 14:19     C:\Users\esso\AppData\Local\Temp\JET83FD.tmp --------- 0  
     12.12.2009 13:59     C:\Users\esso\AppData\Local\Temp\fla29F7.tmp --------- 25266920  
     12.12.2009 13:56     C:\Users\esso\AppData\Local\Temp\plugtmp-290 --------- 0  
     12.12.2009 13:51     C:\Users\esso\AppData\Local\Temp\flaD2B1.tmp --------- 17018  
     12.12.2009 12:14     C:\Users\esso\AppData\Local\Temp\JET1C8D.tmp --------- 0  
     12.12.2009 03:21     C:\Users\esso\AppData\Local\Temp\plugtmp-289 --------- 0  
     12.12.2009 03:11     C:\Users\esso\AppData\Local\Temp\fla9F9C.tmp --------- 0  
     11.12.2009 19:18     C:\Users\esso\AppData\Local\Temp\doodle.bmp --------- 8118  
     11.12.2009 19:18     C:\Users\esso\AppData\Local\Temp\roadtripsde.bmp --------- 21176  
     11.12.2009 19:18     C:\Users\esso\AppData\Local\Temp\peanuts.bmp --------- 8118  
     11.12.2009 19:18     C:\Users\esso\AppData\Local\Temp\ymsgr6 --------- 181779  
     11.12.2009 19:15     C:\Users\esso\AppData\Local\Temp\nsgA083.tmp --------- 0  
     11.12.2009 18:51     C:\Users\esso\AppData\Local\Temp\JET2367.tmp --------- 0  
     11.12.2009 18:41     C:\Users\esso\AppData\Local\Temp\plugtmp-288 --------- 0  
     11.12.2009 18:31     C:\Users\esso\AppData\Local\Temp\fla30A8.tmp --------- 0  
     11.12.2009 11:41     C:\Users\esso\AppData\Local\Temp\~DF2CFC.tmp --------- 0  
     11.12.2009 11:41     C:\Users\esso\AppData\Local\Temp\332460906.od --------- 134  
     11.12.2009 11:41     C:\Users\esso\AppData\Local\Temp\CVRF36A.tmp.cvr --------- 0  
     11.12.2009 11:41     C:\Users\esso\AppData\Local\Temp\ABWL_BACHELOR_2_FuE_BESCHAFFUNG_WS09_HANDOUT_NEU-4.ppt --------- 6001664  
     11.12.2009 10:45     C:\Users\esso\AppData\Local\Temp\franswers.bmp --------- 0  
     11.12.2009 10:45     C:\Users\esso\AppData\Local\Temp\fishtank.bmp --------- 14136  
     10.12.2009 23:02     C:\Users\esso\AppData\Local\Temp\~DF89B.tmp --------- 512  
     10.12.2009 22:41     C:\Users\esso\AppData\Local\Temp\285657096.od --------- 134  
     10.12.2009 22:41     C:\Users\esso\AppData\Local\Temp\CVRC808.tmp.cvr --------- 0  
     10.12.2009 17:11     C:\Users\esso\AppData\Local\Temp\~DFCD07.tmp --------- 512  
     10.12.2009 13:45     C:\Users\esso\AppData\Local\Temp\253486820.od --------- 134  
     10.12.2009 13:45     C:\Users\esso\AppData\Local\Temp\CVRE6E4.tmp.cvr --------- 0  
     10.12.2009 13:38     C:\Users\esso\AppData\Local\Temp\253089002.od --------- 134  
     10.12.2009 13:38     C:\Users\esso\AppData\Local\Temp\CVRD4DA.tmp.cvr --------- 0  
     10.12.2009 13:38     C:\Users\esso\AppData\Local\Temp\unilever 2.pptx --------- 5173377  
     10.12.2009 13:34     C:\Users\esso\AppData\Local\Temp\Kostenmanagement_BA_Kap_3_v92-3.pdf --------- 615707  
     10.12.2009 05:03     C:\Users\esso\AppData\Local\Temp\222183207.od --------- 134  
     10.12.2009 05:03     C:\Users\esso\AppData\Local\Temp\CVR3F07.tmp.cvr --------- 0  
     10.12.2009 01:37     C:\Users\esso\AppData\Local\Temp\JETB00C.tmp --------- 0  
     10.12.2009 01:36     C:\Users\esso\AppData\Local\Temp\~nsu.tmp --------- 0  
     10.12.2009 01:27     C:\Users\esso\AppData\Local\Temp\FlashPlayerUpdate.exe --------- 1924656  
     10.12.2009 00:53     C:\Users\esso\AppData\Local\Temp\JET7C21.tmp --------- 0  
     09.12.2009 19:38     C:\Users\esso\AppData\Local\Temp\plugtmp-174 --------- 0  
     09.12.2009 03:26     C:\Users\esso\AppData\Local\Temp\~DFD16.tmp --------- 512  
     09.12.2009 03:26     C:\Users\esso\AppData\Local\Temp\~DFD00.tmp --------- 512  
     08.12.2009 13:11     C:\Users\esso\AppData\Local\Temp\UserInfoSetup(200912081310501864).log --------- 18428  
     08.12.2009 13:10     C:\Users\esso\AppData\Local\Temp\SetupExe(200912081310461864).log --------- 4123  
     08.12.2009 13:10     C:\Users\esso\AppData\Local\Temp\78603053.od --------- 134  
     08.12.2009 13:10     C:\Users\esso\AppData\Local\Temp\CVR632D.tmp.cvr --------- 0  
     07.12.2009 23:08     C:\Users\esso\AppData\Local\Temp\Kostenmanagement_BA_Kap_1_v92.pdf --------- 1232620  
     07.12.2009 19:14     C:\Users\esso\AppData\Local\Temp\UserInfoSetup(20091207191425111C).log --------- 5214  
     07.12.2009 19:14     C:\Users\esso\AppData\Local\Temp\SetupExe(20091207191423111C).log --------- 4123  
     07.12.2009 19:14     C:\Users\esso\AppData\Local\Temp\14021432.od --------- 134  
     07.12.2009 19:14     C:\Users\esso\AppData\Local\Temp\CVRF338.tmp.cvr --------- 0  
     07.12.2009 19:09     C:\Users\esso\AppData\Local\Temp\~DF13A.tmp --------- 0  
     07.12.2009 19:07     C:\Users\esso\AppData\Local\Temp\13601165.od --------- 134  
     07.12.2009 19:07     C:\Users\esso\AppData\Local\Temp\CVR898D.tmp.cvr --------- 0  
     07.12.2009 16:35     C:\Users\esso\AppData\Local\Temp\4492563.od --------- 134  
     07.12.2009 16:35     C:\Users\esso\AppData\Local\Temp\CVR8D13.tmp.cvr --------- 0  
     07.12.2009 16:35     C:\Users\esso\AppData\Local\Temp\WInf_SS09_05_Kommunikationsnetze.ppt --------- 5646336  
     07.12.2009 16:24     C:\Users\esso\AppData\Local\Temp\msohtmlclip1 --------- 0  
     07.12.2009 16:20     C:\Users\esso\AppData\Local\Temp\3599239.od --------- 134  
     07.12.2009 16:20     C:\Users\esso\AppData\Local\Temp\CVREB77.tmp.cvr --------- 0  
     07.12.2009 16:20     C:\Users\esso\AppData\Local\Temp\WInf_SS09_04_Hardware_-_Peripherie.ppt --------- 1324544  
     07.12.2009 16:03     C:\Users\esso\AppData\Local\Temp\2586371.od --------- 134  
     07.12.2009 16:03     C:\Users\esso\AppData\Local\Temp\CVR76F4.tmp.cvr --------- 0  
     07.12.2009 16:03     C:\Users\esso\AppData\Local\Temp\WInf_SS09_02_Grundwissen-1.ppt --------- 3454464  
     07.12.2009 16:03     C:\Users\esso\AppData\Local\Temp\2565218.od --------- 134  
     07.12.2009 16:03     C:\Users\esso\AppData\Local\Temp\CVR2462.tmp.cvr --------- 0  
     07.12.2009 16:03     C:\Users\esso\AppData\Local\Temp\WInf_SS09_02_Grundwissen.ppt --------- 3454464  
     07.12.2009 16:02     C:\Users\esso\AppData\Local\Temp\2533315.od --------- 134  
     07.12.2009 16:02     C:\Users\esso\AppData\Local\Temp\CVRA7C3.tmp.cvr --------- 0  
     07.12.2009 16:02     C:\Users\esso\AppData\Local\Temp\WInf_SS09_00_Allgemeines.ppt --------- 235008  
     07.12.2009 15:58     C:\Users\esso\AppData\Local\Temp\UserInfoSetup(200912071557571750).log --------- 18427  
     07.12.2009 15:57     C:\Users\esso\AppData\Local\Temp\SetupExe(200912071557561750).log --------- 4120  
     07.12.2009 15:26     C:\Users\esso\AppData\Local\Temp\UserInfoSetup(200912071525481210).log --------- 5584  
     07.12.2009 15:25     C:\Users\esso\AppData\Local\Temp\SetupExe(200912071525311210).log --------- 4117  
     07.12.2009 15:24     C:\Users\esso\AppData\Local\Temp\JETCF11.tmp --------- 0  
     07.12.2009 15:24     C:\Users\esso\AppData\Local\Temp\228213.od --------- 134  
     07.12.2009 15:24     C:\Users\esso\AppData\Local\Temp\CVR7B37.tmp.cvr --------- 0  
     07.12.2009 14:48     C:\Users\esso\AppData\Local\Temp\~DF53BC.tmp --------- 512  
     07.12.2009 14:48     C:\Users\esso\AppData\Local\Temp\~DF53B2.tmp --------- 475136  
     07.12.2009 14:48     C:\Users\esso\AppData\Local\Temp\~DF5217.tmp --------- 512  
     07.12.2009 14:48     C:\Users\esso\AppData\Local\Temp\~DF520C.tmp --------- 1064960  
     07.12.2009 14:48     C:\Users\esso\AppData\Local\Temp\~DF517B.tmp --------- 512  
     07.12.2009 14:48     C:\Users\esso\AppData\Local\Temp\~DF516F.tmp --------- 131072  
     07.12.2009 14:48     C:\Users\esso\AppData\Local\Temp\~DF500A.tmp --------- 512  
     07.12.2009 14:48     C:\Users\esso\AppData\Local\Temp\~DF5000.tmp --------- 131072  
     07.12.2009 14:48     C:\Users\esso\AppData\Local\Temp\~DF4FB7.tmp --------- 512  
     07.12.2009 14:48     C:\Users\esso\AppData\Local\Temp\~DF4FAB.tmp --------- 16384  
     07.12.2009 14:48     C:\Users\esso\AppData\Local\Temp\~DF4E1A.tmp --------- 512  
     07.12.2009 14:48     C:\Users\esso\AppData\Local\Temp\~DF4E10.tmp --------- 524288  
     07.12.2009 14:40     C:\Users\esso\AppData\Local\Temp\plugtmp-287 --------- 0  
     07.12.2009 11:39     C:\Users\esso\AppData\Local\Temp\UserInfoSetup(20091207113328A6C).log --------- 18428  
     07.12.2009 11:33     C:\Users\esso\AppData\Local\Temp\SetupExe(20091207113319A6C).log --------- 4125  
     07.12.2009 04:52     C:\Users\esso\AppData\Local\Temp\UserInfoSetup(200912070452081980).log --------- 5215  
     07.12.2009 04:52     C:\Users\esso\AppData\Local\Temp\SetupExe(200912070452051980).log --------- 4126  
     07.12.2009 04:51     C:\Users\esso\AppData\Local\Temp\146102627.od --------- 134  
     07.12.2009 04:51     C:\Users\esso\AppData\Local\Temp\CVR5963.tmp.cvr --------- 0  
     07.12.2009 02:38     C:\Users\esso\AppData\Local\Temp\~DF3B7D.tmp --------- 0  
     07.12.2009 02:36     C:\Users\esso\AppData\Local\Temp\138227275.od --------- 134  
     07.12.2009 02:36     C:\Users\esso\AppData\Local\Temp\CVR2E3B.tmp.cvr --------- 0  
     07.12.2009 02:36     C:\Users\esso\AppData\Local\Temp\WInfo.pptx --------- 263945  
     07.12.2009 02:30     C:\Users\esso\AppData\Local\Temp\UserInfoSetup(200912070230461C38).log --------- 5215  
     07.12.2009 02:30     C:\Users\esso\AppData\Local\Temp\SetupExe(200912070230421C38).log --------- 4126  
     07.12.2009 02:30     C:\Users\esso\AppData\Local\Temp\137868020.od --------- 134  
     07.12.2009 02:30     C:\Users\esso\AppData\Local\Temp\CVRB2A6.tmp.cvr --------- 0  
     07.12.2009 02:30     C:\Users\esso\AppData\Local\Temp\SetupExe(200912070131521E80).log --------- 117125  
     07.12.2009 01:31     C:\Users\esso\AppData\Local\Temp\WInfo.docx --------- 263738  
     06.12.2009 01:16     C:\Users\esso\AppData\Local\Temp\SetupExe(200912060116181050).log --------- 5939  
     05.12.2009 12:16     C:\Users\esso\AppData\Local\Temp\JET28C4.tmp --------- 0  
     05.12.2009 12:05     C:\Users\esso\AppData\Local\Temp\plugtmp-286 --------- 0  
     05.12.2009 12:04     C:\Users\esso\AppData\Local\Temp\fla2408.tmp --------- 3727750  
     05.12.2009 04:07     C:\Users\esso\AppData\Local\Temp\WERDEF8.tmp.version.txt --------- 476  
     05.12.2009 04:07     C:\Users\esso\AppData\Local\Temp\JET91D3.tmp --------- 0  
     05.12.2009 01:43     C:\Users\esso\AppData\Local\Temp\plugtmp-285 --------- 0  
     05.12.2009 01:41     C:\Users\esso\AppData\Local\Temp\fla5963.tmp --------- 60316454  
     05.12.2009 01:15     C:\Users\esso\AppData\Local\Temp\flaADBC.tmp --------- 200904689  
     04.12.2009 11:27     C:\Users\esso\AppData\Local\Temp\JETD91F.tmp --------- 0  
     03.12.2009 15:49     C:\Users\esso\AppData\Local\Temp\Kostenmanagement_BA_Kap_3_v92-4.pdf --------- 615707  
     02.12.2009 15:40     C:\Users\esso\AppData\Local\Temp\plugtmp-284 --------- 0  
     02.12.2009 15:39     C:\Users\esso\AppData\Local\Temp\fla8E61.tmp --------- 14307804  
     02.12.2009 15:23     C:\Users\esso\AppData\Local\Temp\JET4E2E.tmp --------- 0  
     02.12.2009 15:23     C:\Users\esso\AppData\Local\Temp\WER40C6.tmp.version.txt --------- 476  
     02.12.2009 09:53     C:\Users\esso\AppData\Local\Temp\flaF3FB.tmp --------- 17687183  
     02.12.2009 09:47     C:\Users\esso\AppData\Local\Temp\plugtmp-283 --------- 0  
    ----------------------------------------
    
     
    C:\Program Files
    
     13.01.2010 06:15     C:\Program Files\Trend Micro --------- 0  
     12.01.2010 10:21     C:\Program Files\Windows Live --------- 4096  
     12.01.2010 10:21     C:\Program Files\Mozilla Firefox --------- 40960  
     12.01.2010 10:21     C:\Program Files\Microsoft Silverlight --------- 4096  
     12.01.2010 10:21     C:\Program Files\Microsoft Office Outlook Connector --------- 0  
     12.01.2010 10:21     C:\Program Files\DivX --------- 8192  
     05.01.2010 13:24     C:\Program Files\Microsoft --------- 0  
     05.01.2010 13:24     C:\Program Files\Windows Live SkyDrive --------- 0  
     02.01.2010 01:18     C:\Program Files\Microsoft Sync Framework --------- 0  
     02.01.2010 01:06     C:\Program Files\Common Files --------- 8192  
     28.12.2009 21:52     C:\Program Files\ICQ6.5 --------- 16384  
     24.12.2009 19:10     C:\Program Files\Windows Portable Devices --------- 0  
     23.12.2009 15:47     C:\Program Files\Windows Mail --------- 4096  
     18.12.2009 22:22     C:\Program Files\Opera --------- 4096  
     16.12.2009 11:38     C:\Program Files\Windows Calendar --------- 0  
     16.12.2009 11:38     C:\Program Files\Movie Maker --------- 8192  
     16.12.2009 11:38     C:\Program Files\Windows Sidebar --------- 4096  
     16.12.2009 11:38     C:\Program Files\Internet Explorer --------- 8192  
     16.12.2009 11:38     C:\Program Files\Windows Media Player --------- 4096  
     16.12.2009 11:38     C:\Program Files\Windows Collaboration --------- 4096  
     16.12.2009 11:38     C:\Program Files\Windows Journal --------- 4096  
     16.12.2009 11:37     C:\Program Files\Windows Photo Gallery --------- 4096  
     16.12.2009 11:37     C:\Program Files\Windows Defender --------- 8192  
     11.12.2009 19:10     C:\Program Files\Yahoo --------- 4096  
     07.12.2009 02:00     C:\Program Files\Microsoft Works --------- 32768  
     07.12.2009 01:58     C:\Program Files\MSBuild --------- 0  
     07.12.2009 01:57     C:\Program Files\Microsoft Office --------- 4096  
     07.12.2009 01:57     C:\Program Files\Microsoft Visual Studio --------- 0  
     07.12.2009 01:52     C:\Program Files\Microsoft.NET --------- 0  
     07.12.2009 01:36     C:\Program Files\Microsoft Visual Studio 8 --------- 0  
     01.12.2009 16:27     C:\Program Files\MSECache --------- 0  
     26.11.2009 14:22     C:\Program Files\SAP --------- 0  
     25.11.2009 21:29     C:\Program Files\TVAnts --------- 0  
     25.11.2009 21:29     C:\Program Files\Replay Converter 3 --------- 28672  
     25.11.2009 21:29     C:\Program Files\Launch Manager --------- 8192  
     25.11.2009 21:29     C:\Program Files\iTunes --------- 4096  
     25.11.2009 21:29     C:\Program Files\Bonjour --------- 4096  
     25.11.2009 21:29     C:\Program Files\Atmosphere Lite --------- 4096  
     25.11.2009 21:29     C:\Program Files\Apoint2K --------- 12288  
     25.11.2009 12:12     C:\Program Files\PC Connectivity Solution --------- 8192  
     25.11.2009 12:12     C:\Program Files\Adobe --------- 0  
     25.11.2009 12:12     C:\Program Files\Skype --------- 0  
     25.11.2009 12:12     C:\Program Files\InstallShield Installation Information --------- 20480  
     25.11.2009 12:12     C:\Program Files\Veoh Networks --------- 4096  
     25.11.2009 12:12     C:\Program Files\WinRAR --------- 4096  
     25.11.2009 12:12     C:\Program Files\QuickTime --------- 4096  
     25.11.2009 12:11     C:\Program Files\Kodak --------- 0  
     25.11.2009 12:11     C:\Program Files\JetAudio --------- 28672  
     25.11.2009 12:11     C:\Program Files\Conduit --------- 0  
     25.11.2009 12:11     C:\Program Files\Microsoft SQL Server Compact Edition --------- 0  
     25.11.2009 12:11     C:\Program Files\VideoLAN --------- 0  
     25.11.2009 12:11     C:\Program Files\Acer --------- 0  
     25.11.2009 12:11     C:\Program Files\Windows NT --------- 4096  
     25.11.2009 12:11     C:\Program Files\Reference Assemblies --------- 0  
     25.11.2009 12:11     C:\Program Files\Realtek --------- 0  
     25.11.2009 12:11     C:\Program Files\NewTech Infosystems --------- 4096  
     25.11.2009 12:11     C:\Program Files\Microsoft Games --------- 4096  
     25.11.2009 12:11     C:\Program Files\CyberLink --------- 4096  
     25.11.2009 12:11     C:\Program Files\CONEXANT --------- 0  
     25.11.2009 12:11     C:\Program Files\Acer GameZone --------- 8192  
     25.11.2009 12:11     C:\Program Files\Acer Arcade Deluxe --------- 4096  
     25.11.2009 00:52     C:\Program Files\AVG --------- 0  
     10.11.2009 21:35     C:\Program Files\Spyware Doctor --------- 0  
     10.11.2009 20:27     C:\Program Files\VS Revo Group --------- 0  
     27.10.2009 15:35     C:\Program Files\Adobe(15) --------- 0  
     06.10.2009 00:32     C:\Program Files\Softonic_ES --------- 0  
     06.10.2009 00:29     C:\Program Files\Software Informer --------- 0  
     06.08.2009 10:01     C:\Program Files\Ask.com --------- 0  
     24.07.2009 08:16     C:\Program Files\Google --------- 0  
     26.05.2009 20:03     C:\Program Files\ATI Technologies --------- 0  
     06.04.2009 08:09     C:\Program Files\iPod --------- 0  
     09.03.2009 23:16     C:\Program Files\MyProxy --------- 0  
     03.03.2009 14:44     C:\Program Files\SiteAdvisor --------- 0  
     13.02.2009 21:45     C:\Program Files\MyPlayCity --------- 4096  
     15.12.2008 20:12     C:\Program Files\Oberon Media --------- 0  
     15.12.2008 20:12     C:\Program Files\orange --------- 0  
     02.12.2008 22:14     C:\Program Files\ReflexiveArcade --------- 0  
     27.11.2008 14:35     C:\Program Files\DVDAccess --------- 0  
     18.11.2008 19:25     C:\Program Files\Cisco Systems --------- 0  
     27.10.2008 19:58     C:\Program Files\Adobe(1) --------- 4096  
     02.09.2008 22:40     C:\Program Files\FLV Player --------- 0  
     01.09.2008 19:37     C:\Program Files\MSXML 4.0 --------- 0  
     26.08.2008 14:45     C:\Program Files\Gemeinsame Dateien --------- 0  
     24.06.2008 20:08     C:\Program Files\Acer Inc --------- 4096  
     24.06.2008 19:55     C:\Program Files\Intel --------- 0  
     21.01.2008 03:43     C:\Program Files\desktop.ini --------- 174  
     02.11.2006 14:01     C:\Program Files\Uninstall Information --------- 0  
    ----------------------------------------
    
     
    C:\ProgramData\.. 
    
    esso    
    Public    
    Default    
    desktop.ini    
    Default User    
    All Users    
    ----------------------------------------
    
     
    C:\Windows\system32\drivers\etc\hosts
    
    127.0.0.1       localhost
    ::1             localhost
    
    ----------------------------------------
    
     
    
    Abbildname                     PID Sitzungsname       Sitz.-Nr. Speichernutzung
    ========================= ======== ================ =========== ===============
    System Idle Process              0 Services                   0            24 K
    System                           4 Services                   0        96.508 K
    smss.exe                       492 Services                   0           592 K
    csrss.exe                      624 Services                   0         6.032 K
    csrss.exe                      676 Console                    1        11.052 K
    wininit.exe                    684 Services                   0         3.436 K
    avgchsvx.exe                   696 Services                   0        22.312 K
    avgrsx.exe                     704 Services                   0           792 K
    services.exe                   736 Services                   0         6.024 K
    lsass.exe                      748 Services                   0         7.100 K
    lsm.exe                        756 Services                   0         3.524 K
    avgcsrvx.exe                   804 Services                   0         1.392 K
    winlogon.exe                  1064 Console                    1         4.596 K
    svchost.exe                   1236 Services                   0         6.352 K
    nvvsvc.exe                    1288 Services                   0         2.748 K
    svchost.exe                   1316 Services                   0         5.900 K
    svchost.exe                   1464 Services                   0        13.128 K
    svchost.exe                   1496 Services                   0        77.500 K
    svchost.exe                   1516 Services                   0       110.116 K
    audiodg.exe                   1624 Services                   0         8.868 K
    svchost.exe                   1652 Services                   0         3.956 K
    SLsvc.exe                     1676 Services                   0         4.432 K
    svchost.exe                   1708 Services                   0        11.616 K
    rundll32.exe                  1840 Console                    1         4.676 K
    svchost.exe                   1904 Services                   0        13.388 K
    spoolsv.exe                    584 Services                   0         7.532 K
    svchost.exe                    632 Services                   0        10.360 K
    ALaunchSvc.exe                1788 Services                   0         9.028 K
    AppleMobileDeviceService.     1992 Services                   0         3.132 K
    avgwdsvc.exe                  1224 Services                   0         2.312 K
    mDNSResponder.exe             1004 Services                   0         4.248 K
    cvpnd.exe                     1036 Services                   0         5.744 K
    eDSService.exe                2152 Services                   0         3.752 K
    eLockServ.exe                 2176 Services                   0        11.560 K
    eNet Service.exe              2380 Services                   0        11.336 K
    taskeng.exe                   2412 Console                    1        10.460 K
    dwm.exe                       2420 Console                    1        74.636 K
    avgnsx.exe                    2476 Services                   0         1.076 K
    explorer.exe                  2540 Console                    1        57.024 K
    IAANTmon.exe                  2588 Services                   0         4.820 K
    LSSrvc.exe                    2688 Services                   0         2.972 K
    MobilityService.exe           2776 Services                   0         8.764 K
    svchost.exe                   2932 Services                   0         4.552 K
    RichVideo.exe                 2992 Services                   0         3.456 K
    svchost.exe                   3028 Services                   0         5.160 K
    svchost.exe                   3144 Services                   0         1.824 K
    XAudio.exe                    3312 Services                   0         2.072 K
    YahooAUService.exe            3332 Services                   0         5.984 K
    eRecoveryService.exe          3364 Services                   0        10.228 K
    capuserv.exe                  3444 Services                   0        19.472 K
    ePowerSvc.exe                 3520 Services                   0        13.504 K
    WmiPrvSE.exe                  3676 Services                   0         5.100 K
    unsecapp.exe                  3716 Services                   0         3.544 K
    RtHDVCpl.exe                  3812 Console                    1         5.476 K
    eDSLoader.exe                 3820 Console                    1        12.112 K
    WmiPrvSE.exe                  3888 Services                   0        18.616 K
    PLFSetI.exe                   3292 Console                    1         5.448 K
    IAAnotif.exe                  3124 Console                    1         4.840 K
    RtkBtMnt.exe                  3616 Console                    1         3.376 K
    LManager.exe                  3952 Console                    1         6.184 K
    PMVService.exe                1876 Console                    1         6.068 K
    Apoint.exe                    3060 Console                    1         5.016 K
    eAudio.exe                    1560 Console                    1         5.148 K
    ApMsgFwd.exe                  2352 Console                    1         2.564 K
    iTunesHelper.exe              3872 Console                    1         6.452 K
    avgtray.exe                   3484 Console                    1         6.108 K
    ApntEx.exe                    3104 Console                    1         3.540 K
    GrooveMonitor.exe             3740 Console                    1         6.704 K
    sidebar.exe                   1444 Console                    1        30.436 K
    ehtray.exe                    1612 Console                    1        12.052 K
    msnmsgr.exe                   3352 Console                    1         3.560 K
    ehmsas.exe                    3184 Console                    1         4.152 K
    veohwebplayer.exe             1768 Console                    1        16.736 K
    Skype.exe                     3508 Console                    1        23.584 K
    iPodService.exe               2500 Services                   0         4.564 K
    ICQ.exe                       3664 Console                    1        16.052 K
    wmpnscfg.exe                  4032 Console                    1         4.468 K
    sidebar.exe                   3832 Console                    1        16.132 K
    EasyShare.exe                 1696 Console                    1        10.404 K
    wmpnetwk.exe                  2344 Services                   0        19.940 K
    ePower_DMC.exe                4408 Console                    1        15.240 K
    Acer.Empowering.Framework     4444 Console                    1        38.816 K
    eRAgent.exe                   4472 Console                    1         5.768 K
    Ymsgr_tray.exe                4716 Console                    1         4.868 K
    skypePM.exe                   5872 Console                    1        24.584 K
    taskeng.exe                   4680 Services                   0         5.840 K
    wuauclt.exe                   3080 Console                    1         5.920 K
    avgscanx.exe                  4068 Services                   0         9.096 K
    avgcsrvx.exe                  5688 Services                   0       100.748 K
    firefox.exe                   5148 Console                    1       146.936 K
    cmd.exe                       5712 Console                    1         3.440 K
    conime.exe                    4628 Console                    1         3.896 K
    tasklist.exe                  3620 Console                    1         4.612 K
    
     
    ***** Ende des Scans 13.01.2010 um 16:19:08,56 ***
    infos über malware sind noch nicht verfügbar mein programm AVG lauft immer noch

    Hoffe ich hab bisher alles zur verfügung gestellt was mir gefragt wurde (an der Petra) ....

    LG
    Geändert von Petra (13.01.2010 um 17:07 Uhr) Grund: Beiträge zusammengefügt

  4. #4
    Moderator (global) Team-Mitglied Benutzerbild von Petra
    Registriert seit
    03.05.2007
    Ort
    Nähe Düsseldorf
    Beiträge
    24.805

    AW: Computer programme hängen:keine Rückmeldung

    was ist mit Punkt 5?

  5. #5
    Forenbenutzer
    Registriert seit
    13.01.2010
    Beiträge
    34

    AW: Computer programme hängen:keine Rückmeldung

    hallo, dieser email habe gekriegt da stand kein punkt 5:

    Neue Antwort im Thema 'Computer programme hängen:keine Rückmeldung'
    ...
    Mer 13 Janvier 2010, 12 h 45 min 39 s
    De :
    HijackThis.de Support Board Mailadresse gelöscht (Petra)
    ...
    Ajouter dans les contacts
    À : Mailadresse gelöscht (Petra)
    Hallo tonykenzo09,

    Petra hat auf das Thema 'Computer programme hängen:keine Rückmeldung' im Forum 'HijackThis Logfiles' bei HijackThis.de Support Board geantwortet.

    Dieses Thema ist hier zu finden:
    http://www.hijackthis-forum.de/hijac...-new-post.html

    Dies ist der Beitrag, der gerade geschrieben wurde:
    ***************
    Willkommen im HijackThis-Supportforum *tonykenzo09*,

    zunächst bitte anklicken und aufmerksam durchlesen: *Worauf muss ich während der Bereinigung achten?* (Neu hier? Bitte abarbeiten...)

    Anschließend die folgenden Punkte unbedingt in der *vorgegebenen* Reihenfolge abarbeiten.

    Berichte mir zu jedem Punkt, dass Du ihn erledigt hast.

    Stoppe und frage, wenn etwas nicht funktioniert.

    Poste Logfiles sofern angefordert und/oder antworte auf gestellte Fragen.

    *Benutze ausschließlich Programme und Tools, die in der Anleitung angegeben sind.
    Installiere während unserer Bereinigung nichts Neues ohne Absprache.*

    *===== Punkt 1 =====*

    *Systemdetails mit RSIT prüfen*
    * Lade *Random's System Information Tool (RSIT)* (http://images.malwareremoval.com/random/RSIT.exe) von *random/random* herunter,
    * speichere es auf Deinem Desktop.
    * *Schließe alle Fenster und Programme inkl. Browser.*
    * Starte mit Doppelklick die *RSIT.exe*.
    * Klicke auf *Continue*, um die Nutzungsbedingungen zu akzeptieren.
    * Wenn Du HijackThis nicht installiert hast, wird RSIT das für Dich herunterladen und installieren.
    * In dem Fall bitte auch die Nutzungsbedingungen von Trend Micro für HJT akzeptieren *I accept*.
    * Wenn Deine Firewall fragt, bitte RSIT erlauben, ins Netz zu gehen.
    * Der Scan startet automatisch, RSIT checkt nun einige wichtige System-Bereiche und produziert Logfiles als Analyse-Grundlage.
    * Wenn der Scan beendet ist, werden zwei Logfiles erstellt und in Deinem Editor geöffnet.
    * Bitte poste den Inhalt von *C:\rsit\log.txt* und *C:\rsit\info.txt* (<= wird minimiert in der Taskleiste dargestellt) hier in den Thread.

    *===== Punkt 2 =====*

    *Dateiliste mit HJTscanlist.bat erstellen*

    Falls Du WindowsXP Home hast, bitte zunächst *tasklist.zip (http://image.hijackthis.eu/upload/tasklist.zip)* downloaden und nach *C:\Windows\system32* entpacken, damit die *HJTscanlist.bat* eine Taskliste erstellen kann. *Zur Erklärung:* das Tool *tasklist.exe* ist nur in Windows Professional und Vista enthalten und muss bei Windows XP Home nachinstalliert werden. Unter Windows 2000 funktioniert das leider nicht.

    Da ein HJT-Logfile nur bedingt aussagekräftig ist, möchten wir den Inhalt einiger kritischer Verzeichnisse auf Deinem System ansehen. Dazu lade folgende Datei herunter *HJTscanlist.zip* (http://image.hijackthis.eu/upload/hjtscanlist.zip). Entpacke die Datei auf Deinen Desktop. Auf dem Desktop befindet sich nun die Datei *HJTscanlist.bat*, diese doppelklicken, um sie zu starten. Wähle Dein Betriebssystem aus (bei Windows 2000 wähle XP). Bei Abfrage der Einstellung benutze bitte die Auswahl Nr. 1 (Scanlist). Nun wird die Dateiliste erstellt und in Deinem Editor geöffnet und als *hjtscanlist.txt* auf Deinem Desktop gespeichert. Poste mir den Inhalt der Dateiliste hier in den Thread. Bei diesem Log brauchst Du keine Code-Tags setzen, da sie im Log schon enthalten sind

    *===== Punkt 3 =====*

    Wenn Dein Antiviren-Programm *Malware* (http://de.wikipedia.org/wiki/Malware) gefunden hat, schreibe uns möglichst genau die Namen der Funde auf, und in welchem Pfad sie sich befinden/befanden. An die nötigen Informationen kommst Du über die Logs/Berichte bzw. den Quarantäne-Ordner Deines Antiviren-Programms.

    Berichte, welche Programme Du evtl. schon genutzt hast, um das Problem zu lösen und poste nach Möglichkeit die Logfiles.

    *===== Punkt 4 =====*

    Kannst Du auf Deinem Computer alle Dateien und Datei-Endungen sehen? Falls nein, bitte diese *Einstellungen* (Dateien sichtbar machen) in den Ordneroptionen vornehmen.
    ***************


    Es könnte noch weitere Antworten auf das Thema geben, jedoch erhalten Sie keine zusätzlichen Benachrichtigungen, bis Sie das Forum wieder besucht haben.

    Mit freundlichen Grüßen

    HijackThis.de Support Board

    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    Sie erhalten diese E-Mail, da Sie das Thema 'Computer programme hängen:keine Rück
    gruß anthony
    Geändert von Petra (14.01.2010 um 10:33 Uhr) Grund: Quote-Tag eingefügt

  6. #6
    Moderator (global) Team-Mitglied Benutzerbild von Petra
    Registriert seit
    03.05.2007
    Ort
    Nähe Düsseldorf
    Beiträge
    24.805

    AW: Computer programme hängen:keine Rückmeldung

    Hallo Anthony,

    wo ist jetzt das Problem? Da habe ich eine Minute nach dem Absenden des Beitrages noch einen 5.ten Punkt hinzugefügt. Maßgeblich ist immer, was hier im Beitrag steht. Warum machst Du nicht einfach Punkt 5 und gut ist?

  7. #7
    Forenbenutzer
    Registriert seit
    13.01.2010
    Beiträge
    34

    AW: Computer programme hängen:keine Rückmeldung

    hallo Petra ,
    sorry habe net aufgepasst beim punkt 5 hier habe ich es mal:
    Code:
    Datei aqasumo_nav.dat empfangen 2010.01.14 09:55:51 (UTC)Antivirus Version letzte aktualisierung Ergebnis 
    a-squared 4.5.0.48 2010.01.14 - 
    AhnLab-V3 5.0.0.2 2010.01.13 - 
    AntiVir 7.9.1.134 2010.01.14 - 
    Antiy-AVL 2.0.3.7 2010.01.12 - 
    Authentium 5.2.0.5 2010.01.13 - 
    Avast 4.8.1351.0 2010.01.14 - 
    AVG 9.0.0.725 2010.01.14 - 
    BitDefender 7.2 2010.01.14 - 
    CAT-QuickHeal 10.00 2010.01.14 - 
    ClamAV 0.94.1 2010.01.14 - 
    Comodo 3578 2010.01.14 - 
    DrWeb 5.0.1.12222 2010.01.14 - 
    eSafe 7.0.17.0 2010.01.13 - 
    eTrust-Vet 35.2.7236 2010.01.14 - 
    F-Prot 4.5.1.85 2010.01.13 - 
    F-Secure 9.0.15370.0 2010.01.14 - 
    Fortinet 4.0.14.0 2010.01.14 - 
    GData 19 2010.01.14 - 
    Ikarus T3.1.1.80.0 2010.01.14 - 
    Jiangmin 13.0.900 2010.01.14 - 
    K7AntiVirus 7.10.946 2010.01.13 - 
    Kaspersky 7.0.0.125 2010.01.14 - 
    McAfee 5860 2010.01.13 - 
    McAfee+Artemis 5860 2010.01.13 - 
    McAfee-GW-Edition 6.8.5 2010.01.14 - 
    Microsoft 1.5302 2010.01.14 - 
    NOD32 4769 2010.01.13 - 
    Norman 6.04.03 2010.01.13 - 
    nProtect 2009.1.8.0 2010.01.14 - 
    Panda 10.0.2.2 2010.01.13 - 
    PCTools 7.0.3.5 2010.01.14 - 
    Prevx 3.0 2010.01.14 - 
    Rising 22.30.03.04 2010.01.14 - 
    Sophos 4.49.0 2010.01.14 - 
    Sunbelt 3.2.1858.2 2010.01.14 - 
    Symantec 20091.2.0.41 2010.01.14 - 
    TheHacker 6.5.0.3.150 2010.01.14 - 
    TrendMicro 9.120.0.1004 2010.01.14 - 
    VBA32 3.12.12.1 2010.01.14 - 
    ViRobot 2010.1.14.2136 2010.01.14 - 
    VirusBuster 5.0.21.0 2010.01.13 - 
     
    weitere Informationen 
    File size: 288627 bytes 
    MD5...: 3e86ebc7bcf76617d82535cb2ec5d72c 
    SHA1..: d77cfabcac61bc8602bdcd01dfed3cb367241e52 
    SHA256: c3a0079db9207e7e7728d7d5faafded886f5abd3ae6145d7f0ec74d713f96c92 
    ssdeep: 6144:xexRm1hGkskxCfSqE7CiKQ3o0U0PzeuY/jzpwuvMuwk:CRm1h3skxCqgiKK<BR>FIbdPUuX<BR> 
    PEiD..: - 
    PEInfo: - 
    RDS...: NSRL Reference Data Set<BR>- 
    pdfid.: - 
    trid..: Unknown! 
    sigcheck:<BR>publisher....: n/a<BR>copyright....: n/a<BR>product......: n/a<BR>description..: n/a<BR>original name: n/a<BR>internal name: n/a<BR>file version.: n/a<BR>comments.....: n/a<BR>signers......: -<BR>signing date.: -<BR>verified.....: Unsigned<BR>

  8. #8
    Moderator (global) Team-Mitglied Benutzerbild von Petra
    Registriert seit
    03.05.2007
    Ort
    Nähe Düsseldorf
    Beiträge
    24.805

    AW: Computer programme hängen:keine Rückmeldung

    Leider hast Du die falsche Datei prüfen lassen. Bitte folgende Datei prüfen lassen:


    c:\users\esso\appdata\local\aqasumo.exe

  9. #9
    Forenbenutzer
    Registriert seit
    13.01.2010
    Beiträge
    34

    AW: Computer programme hängen:keine Rückmeldung

    hallo,
    habe mal probiert mit den Änderungen damit die exe datei auftaucht aber without success nur die andere :aqasumo_nav.dat ist sichtbar hilfe..
    Geändert von tonykenzo09 (14.01.2010 um 18:58 Uhr)

  10. #10
    Moderator (global) Team-Mitglied Benutzerbild von Petra
    Registriert seit
    03.05.2007
    Ort
    Nähe Düsseldorf
    Beiträge
    24.805

    AW: Computer programme hängen:keine Rückmeldung

    Navilog1 - Automatische Entfernung mit Option 1

    Bitte lade Navilog1 von IL-MAFIOSO herunter.
    Speichere es auf dem Desktop, nicht woanders hin!
    Das Programm ist geeignet für Windows 2000/XP/Vista.
    Navilog1.exe wird von einigen Antiviren- und/oder Firewall-Programmen als sogenanntes Risktool eingestuft.
    Es ist kein Virus, sondern ein Programm zur Bereinigung einer Infizierung.
    • Schließe alle offenen Fenster und Anwendungen und speichere offene Dokumente.
    • Doppelklicke das Navilog1-Icon auf dem Desktop, um das Tool zu installieren und zu starten.
    • Drücke 4 für Deutsch im Sprachenmenü.
    • Drücke eine beliebige Taste, immer wenn dazu aufgefordert wird.
    • Drücke 1 im nächsten Menü, um den Suchlauf und die automatische Bereinigung zu starten. Bestätige mit Enter.
    • Bei Funden wird das Programm darauf hinweisen, dass der PC neu gestartet wird.
    • Falls Dein PC nicht neu startet, mache einen manuellen Neustart.
    • Wähle Dein normales Benutzerprofil.
    • Warte auf die Nachricht ***Scan beendet ....***
      Geduld, das kann etwas dauern.
    • Ein neues Dokument wird erstellt und öffnet sich: C:\cleannavi.txt.
    • Bitte füge den Inhalt dieser Datei in Deine nächste Antwort ein.
    • Dein Desktop wird nun wieder erscheinen.
      Im Falle eines Desktop-Verlustes, betätige Strg+Alt+Entf und starte die Explorer.exe als einen neuen Task.

Thema geschlossen
Seite 1 von 7
1 2 3 ... LetzteLetzte

Aktive Benutzer

Aktive Benutzer

Aktive Benutzer in diesem Thema: 1 (Registrierte Benutzer: 0, Gäste: 1)

     

Ähnliche Themen

  1. Frierer, (keine Rückmeldung)
    Von Soire im Forum Allgemeine Probleme
    Antworten: 0
    Letzter Beitrag: 10.12.2009, 03:18
  2. Externe Festplatte keine Rückmeldung
    Von Colin im Forum Archiv
    Antworten: 1
    Letzter Beitrag: 29.09.2009, 10:03
  3. Programme geben oft "Keine Rückmeldung"
    Von Tanjaa im Forum Archiv
    Antworten: 76
    Letzter Beitrag: 29.11.2008, 15:22
  4. Rechner langsam, ständig keine Rückmeldung
    Von Nessi88 im Forum Archiv
    Antworten: 9
    Letzter Beitrag: 01.03.2008, 11:47
  5. Firefox keine Rückmeldung/System langsam
    Von Ocir33 im Forum Archiv
    Antworten: 10
    Letzter Beitrag: 27.12.2007, 23:07

Forumregeln

  • Es ist Ihnen nicht erlaubt, neue Themen zu verfassen.
  • Es ist Ihnen nicht erlaubt, auf Beiträge zu antworten.
  • Es ist Ihnen nicht erlaubt, Anhänge hochzuladen.
  • Es ist Ihnen nicht erlaubt, Ihre Beiträge zu bearbeiten.