Dialer Instant Access!

#0
20.06.2008, 10:34
Member

Themenstarter

Beiträge: 16
#16 Also ich habe mir jetzt Counterspy runtergeladen, aber wenn er installieren will kommt folgende Fehlermeldung " Error 2738 could not access VB Sriptum time for custom action". ???????? Was nun?

P.S. Ich habe es nicht nur einmal versucht :-) und auch versucht als Administration zu öffnen, was auch immer das heißen mag :-)!! LG Kiki
Dieser Beitrag wurde am 20.06.2008 um 10:40 Uhr von Kiki75 editiert.
Seitenanfang Seitenende
20.06.2008, 11:35
Ehrenmitglied
Avatar Sabina

Beiträge: 29434
#17 Hallo,

lade sdfix , im normalmodus anwenden
http://virus-protect.org/artikel/tools/sdfix.html

unter C:\ findet man nun den SDFix-Ordner
RunThis.bat doppelt klicken (für dich, da du Vista hast, wieder als Administrator ausführen)

schreibe : A
poste hier den report


__________
MfG Sabina

rund um die PC-Sicherheit
Seitenanfang Seitenende
20.06.2008, 12:22
Member

Themenstarter

Beiträge: 16
#18 Das hat trotz anfänglicher Schwierigkeiten jetzt geklappt!

System Report
*************

Run on 20.06.2008 at 12:20

Microsoft Windows [Version 6.0.6000]

Current user is not an administrator

Running Processes:

C:\Windows\system32\Dwm.exe [2668]
C:\Windows\system32\taskeng.exe [2696]
C:\Windows\Explorer.EXE [2776]
C:\Program Files\Windows Defender\MSASCui.exe [3272]
C:\Windows\System32\rundll32.exe [3528]
C:\Windows\RtHDVCpl.exe [3560]
C:\Windows\System32\rundll32.exe [3668]
C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe [3692]
C:\Program Files\C&E\OSD\osd.exe [3740]
C:\Program Files\Common Files\Real\Update_OB\realsched.exe [3784]
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe [3868]
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe [3880]
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [3888]
C:\Program Files\Spyware Doctor\pctsTray.exe [3896]
C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe [3988]
C:\Program Files\Windows Sidebar\sidebar.exe [4020]
C:\Windows\ehome\ehtray.exe [4048]
C:\Program Files\Skype\Phone\Skype.exe [4072]
C:\Program Files\Tracker Software\PDF-XChange 3\pdfSaver\pdfSaver3.exe [4080]
C:\Program Files\Windows Media Player\wmpnscfg.exe [2268]
C:\Program Files\Google\Google Updater\GoogleUpdater.exe [2288]
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe [2276]
C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE [2264]
C:\Windows\ehome\ehmsas.exe [2492]
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [1156]
C:\Program Files\Windows Sidebar\sidebar.exe [3404]
C:\Windows\system32\wbem\unsecapp.exe [3344]
C:\Program Files\Skype\Plugin Manager\skypePM.exe [4844]
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe [4860]
C:\Program Files\Mozilla Firefox\firefox.exe [5980]


Drivers - Running:

ACPI
AFD
Seitenanfang Seitenende
20.06.2008, 12:49
Member

Beiträge: 3716
#19 Hi,
der tipp mit als administrator ausfüren gilt für alle programme.
weiterhin möchte ich dir empfehlen nie wieder den webmediaplayer zu instalieren dieser hat dein problem ausgelöst...
Seitenanfang Seitenende
20.06.2008, 12:56
Ehrenmitglied
Avatar Sabina

Beiträge: 29434
#20 Hallo Kiki75

der report ist nicht komplett abkopiert.... poste bitte ALLES
__________
MfG Sabina

rund um die PC-Sicherheit
Seitenanfang Seitenende
20.06.2008, 12:58
Member

Themenstarter

Beiträge: 16
#21 Oh, hier kommt der ganze Bericht!!!!!!

System Report
*************

Run on 20.06.2008 at 12:20

Microsoft Windows [Version 6.0.6000]

Current user is not an administrator

Running Processes:

C:\Windows\system32\Dwm.exe [2668]
C:\Windows\system32\taskeng.exe [2696]
C:\Windows\Explorer.EXE [2776]
C:\Program Files\Windows Defender\MSASCui.exe [3272]
C:\Windows\System32\rundll32.exe [3528]
C:\Windows\RtHDVCpl.exe [3560]
C:\Windows\System32\rundll32.exe [3668]
C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe [3692]
C:\Program Files\C&E\OSD\osd.exe [3740]
C:\Program Files\Common Files\Real\Update_OB\realsched.exe [3784]
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe [3868]
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe [3880]
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [3888]
C:\Program Files\Spyware Doctor\pctsTray.exe [3896]
C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe [3988]
C:\Program Files\Windows Sidebar\sidebar.exe [4020]
C:\Windows\ehome\ehtray.exe [4048]
C:\Program Files\Skype\Phone\Skype.exe [4072]
C:\Program Files\Tracker Software\PDF-XChange 3\pdfSaver\pdfSaver3.exe [4080]
C:\Program Files\Windows Media Player\wmpnscfg.exe [2268]
C:\Program Files\Google\Google Updater\GoogleUpdater.exe [2288]
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe [2276]
C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE [2264]
C:\Windows\ehome\ehmsas.exe [2492]
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [1156]
C:\Program Files\Windows Sidebar\sidebar.exe [3404]
C:\Windows\system32\wbem\unsecapp.exe [3344]
C:\Program Files\Skype\Plugin Manager\skypePM.exe [4844]
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe [4860]
C:\Program Files\Mozilla Firefox\firefox.exe [5980]


Drivers - Running:

ACPI
AFD
atapi
avgio
avgntflt
avipbb
Beep
bowser
BthEnum
BthPan
BTHUSB
cdfs
cdrom
CEBFilter
CEIO
circlass
cKBFilter
CLFS
CmBatt
Compbatt
crcdisk
DfsC
disk
DXGKrnl
Ecache
FileInfo
FltMgr
HDAudBus
HidIr
HTTP
i8042prt
iaStor
IKFileSec
IKSysFlt
IKSysSec
IntcAzAudAddService
intelide
intelppm
iScsiPrt
itecir
kbdclass
kbdhid
KSecDD
lltdio
luafv
Modem
monitor
mouclass
mouhid
MountMgr
mpsdrv
MRxDAV
mrxsmb
mrxsmb10
mrxsmb20
Msfs
msisadrv
mssmbios
Mup
NativeWifiP
NDIS
NdisTapi
Ndisuio
NdisWan
NDProxy
NetBIOS
netbt
NETw4v32
Npfs
nsiproxy
Ntfs
Null
nvlddmkm
nvraid
ohci1394
partmgr
pci
PEAUTH
PptpMiniport
PSched
PxHelp20
RasAcd
Rasl2tp
RasPppoe
rdbss
RDPCDD
RDPENCDD
RFCOMM
rspndr
RTL8169
secdrv
Si3531
SiFilter
SiRemFil
Smb
smserial
spldr
srv
srv2
srvnet
ssmdrv
swenum
Tcpip
tcpipreg
tdx
TermDD
tunmp
tunnel
umbus
usbehci
usbhub
usbuhci
VgaSave
volmgr
volmgrx
volsnap
vsmraid
Wanarpv6
Wdf01000
WmiAcpi


Drivers - Stopped:

adp94xx
adpahci
adpu160m
adpu320
agp440
aic78xx
aliide
amdagp
amdide
AmdK7
AmdK8
arc
arcsas
AsyncMac
blbdrive
BrFiltLo
BrFiltUp
Brserid
BrSerWdm
BrUsbMdm
BrUsbSer
BTHMODEM
BTHPORT
Cam5603D
cmdide
Crusoe
Dot4
Dot4Print
dot4usb
drmkaud
E1G60
elxstor
fastfat
fdc
Filetrace
flpydisk
gagp30kx
HdAudAddService
HidBth
HidUsb
HpCISSs
i2omp
iaStorV
iirsp
IpFilterDriver
IpInIp
IPMIDRV
IPNAT
IRENUM
isapnp
iteatapi
iteraid
JRAID
LSI_FC
LSI_SAS
LSI_SCSI
MBAMCatchMe
megasas
mpio
Mraid35x
msahci
msdsm
MSKSSRV
MSPCLOCK
MSPQM
MsRPC
MSTEE
nfrd960
ntrigdigi
nvrd32
nvstor
nvstor32
nv_agp
NwlnkFlt
NwlnkFwd
Parport
Parvdm
pciide
pcmcia
PDNMp50
PDNSp50
Processor
ql2300
ql40xx
QWAVEdrv
rdpdr
RDPWD
sbp2port
Serenum
Serial
sermouse
sffdisk
sffp_mmc
sffp_sd
sfloppy
sisagp
SiSRaid2
SiSRaid4
Symc8xx
Sym_hi
Sym_u3
Tcpip6
TDPIPE
TDTCP
tssecsrv
uagp35
udfs
uliagpkx
uliahci
UlSata
ulsata2
usbccgp
usbcir
usbohci
usbprint
usbscan
USBSTOR
vga
viaagp
ViaC7
viaide
viamraid
WacomPen
Wanarp
Wd
ws2ifsl
WUDFRd


Services - Running:

AeLookupSvc
AntiVirScheduler
AntiVirService
Appinfo
AudioEndpointBuilder
Audiosrv
BFE
BITS
Browser
BthServ
CryptSvc
DcomLaunch
Dhcp
Dnscache
DPS
EapHost
EMDMgmt
Eventlog
EventSystem
fdPHost
FDResPub
FSCLBaseUpdaterService
gpsvc
gusvc
hidserv
hpqcxs08
hpqddsvc
IKEEXT
iphlpsvc
KeyIso
KtmRm
LanmanServer
LanmanWorkstation
lmhosts
MMCSS
MpsSvc
Net
Netman
netprofm
NlaSvc
nsi
PcaSvc
PlugPlay
Pml
PolicyAgent
ProfSvc
RasMan
RichVideo
RpcSs
SamSs
Schedule
sdAuxService
sdCoreService
seclogon
SENS
ShellHWDetection
slsvc
Spooler
SSDPSRV
stisvc
SysMain
TabletInputService
TapiSrv
TermService
TestHandler
Themes
TrkWks
upnphost
UxSms
W32Time
WdiSystemHost
WebClient
WerSvc
WinDefend
Winmgmt
Wlansvc
WMPNetworkSvc
WPDBusEnum
wscsvc
WSearch
wuauserv
wudfsvc


Services - Stopped:

ALG
CertPropSvc
clr_optimization_v2.0.50727_32
CLTNetCnService
COMSysApp
DFSR
dot3svc
ehRecvr
ehSched
ehstart
FontCache3.0.0.0
GoogleDesktopManager-022208-143751
hkmsvc
idsvc
IPBusEnum
lltdsvc
Mcx2Svc
MSDTC
MSiSCSI
msiserver
napagent
Netlogon
NetTcpPortSharing
NMIndexingService
odserv
OsdService
ose
p2pimsvc
p2psvc
pla
PNRPAutoReg
PNRPsvc
ProtectedStorage
QWAVE
RasAuto
RemoteAccess
RemoteRegistry
RpcLocator
SCardSvr
SCPolicySvc
SDRSVC
ServiceLayer
SessionEnv
SharedAccess
SLUINotify
SNMPTRAP
swprv
TBS
THREADORDER
TrustedInstaller
UI0Detect
vds
VSS
wcncsvc
WcsPlugInService
WdiServiceHost
Wecsvc
wercplsupport
WinHttpAutoProxySvc
WinRM
wmiApSrv
WPCSvc


Files Created/Modified - 60 Days:


C:\

19 Jun 2008 19:08:44 30 A.... "C:\Bug.txt"
19 Jun 2008 19:03:54 2.512 A.... "C:\cleannavi.txt"
18 Jun 2008 19:32:14 0 A.... "C:\emjjmpsv"
19 Jun 2008 18:57:14 70 A.... "C:\fixnavi.txt"
20 Jun 2008 9:49:12 2.145.837.056 A.SH. "C:\hiberfil.sys"
20 Jun 2008 9:49:12 2.459.762.688 A.SH. "C:\pagefile.sys"
19 Jun 2008 14:20:58 0 A.... "C:\txijmpsv"


C:\Windows\

20 Jun 2008 9:49:16 67.584 A.S.. "C:\Windows\bootstat.dat"
20 Jun 2008 9:49:16 67.584 A.S.. "C:\Windows\bootstat.dat"
20 Jun 2008 9:48:22 12 A.... "C:\Windows\bthservsdp.dat"
19 Jun 2008 14:07:02 69 A.... "C:\Windows\NeroDigital.ini"
20 Jun 2008 11:54:24 137.250 A.... "C:\Windows\WindowsUpdate.log"
25 Apr 2008 6:23:08 52.736 A.... "C:\Windows\AppPatch\iebrshim.dll"
25 Apr 2008 6:23:08 52.736 A.... "C:\Windows\AppPatch\iebrshim.dll"
20 Jun 2008 9:49:16 0 A.... "C:\Windows\Debug\PASSWD.LOG"
11 Jun 2008 21:00:24 34.598 A.... "C:\Windows\inf\bth.inf"
11 Jun 2008 21:00:26 41.176 A.... "C:\Windows\inf\bth.PNF"
11 Jun 2008 21:00:40 665.600 A.... "C:\Windows\inf\drvindex.dat"
11 Jun 2008 21:00:24 1.958.016 A.... "C:\Windows\inf\INFCACHE.1"
11 Jun 2008 21:00:40 51.200 A.... "C:\Windows\inf\infpub.dat"
11 Jun 2008 21:00:40 86.016 A.... "C:\Windows\inf\infstor.dat"
11 Jun 2008 21:00:40 86.016 A.... "C:\Windows\inf\infstrng.dat"
10 May 2008 0:43:32 9.170 A.... "C:\Windows\inf\netpgm.inf"
11 Jun 2008 21:00:34 14.304 A.... "C:\Windows\inf\setupapi.ev1"
11 Jun 2008 21:00:36 16.312 A.... "C:\Windows\inf\setupapi.ev2"
11 Jun 2008 21:00:36 143.360 A.... "C:\Windows\inf\setupapi.ev3"
20 Jun 2008 9:52:14 10.851.230 A.... "C:\Windows\inf\setupapi.app.log"
11 Jun 2008 21:00:40 8.727.616 A.... "C:\Windows\inf\setupapi.dev.log"
19 May 2008 23:34:48 682.072 A.... "C:\Windows\rescache\ResCache.mni"
20 Jun 2008 11:49:30 3.072 A..H. "C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0"
20 Jun 2008 11:49:30 3.072 A..H. "C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0"
25 Apr 2008 6:23:06 124.928 A.... "C:\Windows\System32\advpack.dll"
25 Apr 2008 6:23:08 347.136 A.... "C:\Windows\System32\dxtmsft.dll"
25 Apr 2008 6:23:08 214.528 A.... "C:\Windows\System32\dxtrans.dll"
19 May 2008 22:18:42 365.696 A.... "C:\Windows\System32\FNTCACHE.DAT"
29 Apr 2008 3:35:26 181.760 A.... "C:\Windows\System32\fsquirt.exe"
25 Apr 2008 6:23:08 63.488 A.... "C:\Windows\System32\icardie.dll"
25 Apr 2008 6:22:38 70.656 A.... "C:\Windows\System32\ie4uinit.exe"
25 Apr 2008 6:23:08 383.488 A.... "C:\Windows\System32\ieapfltr.dll"
25 Apr 2008 6:23:08 6.066.176 A.... "C:\Windows\System32\ieframe.dll"
25 Apr 2008 6:23:08 44.544 A.... "C:\Windows\System32\iernonce.dll"
25 Apr 2008 6:23:08 56.320 A.... "C:\Windows\System32\iesetup.dll"
25 Apr 2008 6:23:08 180.736 A.... "C:\Windows\System32\ieui.dll"
25 Apr 2008 6:22:38 26.624 A.... "C:\Windows\System32\ieUnatt.exe"
25 Apr 2008 6:22:16 1.831.424 A.... "C:\Windows\System32\inetcpl.cpl"
25 Apr 2008 6:23:08 27.648 A.... "C:\Windows\System32\jsproxy.dll"
19 May 2008 19:56:06 5.636 A.... "C:\Windows\System32\jupdate-1.6.0_03-b05.log"
19 May 2008 20:29:02 6.591 A.... "C:\Windows\System32\jupdate-1.6.0_05-b13.log"
30 May 2008 1:35:12 17.486.968 A.... "C:\Windows\System32\mrt.exe"
25 Apr 2008 6:07:56 3.593.728 A.... "C:\Windows\System32\mshtml.dll"
25 Apr 2008 2:31:06 1.383.424 A.... "C:\Windows\System32\mshtml.tlb"
25 Apr 2008 6:23:08 478.208 A.... "C:\Windows\System32\mshtmled.dll"
25 Apr 2008 6:23:10 671.232 A.... "C:\Windows\System32\mstime.dll"
20 Jun 2008 9:56:04 116.706 A.... "C:\Windows\System32\perfc007.dat"
20 Jun 2008 9:56:04 103.924 A.... "C:\Windows\System32\perfc009.dat"
20 Jun 2008 9:56:04 641.344 A.... "C:\Windows\System32\perfh007.dat"
20 Jun 2008 9:56:04 610.142 A.... "C:\Windows\System32\perfh009.dat"
20 Jun 2008 9:56:04 1.461.736 A.... "C:\Windows\System32\PerfStringBackup.INI"
25 Apr 2008 6:23:12 44.544 A.... "C:\Windows\System32\pngfilt.dll"
26 Apr 2008 10:02:06 1.327.104 A.... "C:\Windows\System32\quartz.dll"
25 Apr 2008 6:23:12 1.159.680 A.... "C:\Windows\System32\urlmon.dll"
25 Apr 2008 6:23:12 826.368 A.... "C:\Windows\System32\wininet.dll"
10 May 2008 5:30:52 14.848 A.... "C:\Windows\System32\wshrm.dll"
13 Jun 2008 15:00:24 406 A.... "C:\Windows\Tasks\Norton Security Scan.job"
20 Jun 2008 9:49:28 6 A..H. "C:\Windows\Tasks\SA.DAT"
20 Jun 2008 9:48:24 32.620 A.... "C:\Windows\Tasks\SCHEDLGU.TXT"
20 Jun 2008 12:15:34 416 A..H. "C:\Windows\Tasks\User_Feed_Synchronization-{0725DA2D-C5C5-4794-BDCE-C6DBCFBEE56D}.job"
11 Jun 2008 21:01:10 164 A.... "C:\Windows\winsxs\poqexec.log"
20 Jun 2008 9:18:24 0 A.... "C:\Windows\Debug\UserMode\ChkAcc.bak"
20 Jun 2008 9:49:26 0 A.... "C:\Windows\Debug\UserMode\ChkAcc.log"
19 May 2008 20:03:42 4.097 A.... "C:\Windows\Debug\WIA\wiatrace.log"
20 Jun 2008 9:54:18 3.953 A.... "C:\Windows\inf\WmiApRpl\WmiApRpl.h"
20 Jun 2008 11:56:44 51.313.715 A.... "C:\Windows\Logs\CBS\CBS.log"
11 Jun 2008 15:59:04 4.462 A.... "C:\Windows\Logs\DPX\setupact.log"
11 Jun 2008 15:59:04 4.462 A.... "C:\Windows\Logs\DPX\setuperr.log"
19 May 2008 23:36:30 97.760 A.... "C:\Windows\rescache\rc0004\ResCache.dir"
19 May 2008 23:36:38 807.839 A.... "C:\Windows\rescache\rc0004\Segment0.cmf"
19 May 2008 23:36:30 48.064 A.... "C:\Windows\rescache\rc0004\Segment0.toc"
19 May 2008 23:36:38 782.876 A.... "C:\Windows\rescache\rc0004\Segment1.cmf"
19 May 2008 23:36:30 48.064 A.... "C:\Windows\rescache\rc0004\Segment1.toc"
19 May 2008 23:36:38 1.313.660 A.... "C:\Windows\rescache\rc0004\Segment2.cmf"
19 May 2008 23:36:32 48.064 A.... "C:\Windows\rescache\rc0004\Segment2.toc"
19 May 2008 23:36:38 944.056 A.... "C:\Windows\rescache\rc0004\Segment3.cmf"
19 May 2008 23:36:34 48.064 A.... "C:\Windows\rescache\rc0004\Segment3.toc"
19 May 2008 23:36:38 1.180.483 A.... "C:\Windows\rescache\rc0004\Segment4.cmf"
19 May 2008 23:36:34 48.064 A.... "C:\Windows\rescache\rc0004\Segment4.toc"
19 May 2008 23:36:38 463.517 A.... "C:\Windows\rescache\rc0004\Segment5.cmf"
19 May 2008 23:36:36 48.064 A.... "C:\Windows\rescache\rc0004\Segment5.toc"
11 Jun 2008 21:01:22 1.056.768 A.... "C:\Windows\security\database\secedit.sdb"
28 Apr 2008 20:35:00 195.028 A....
18 Jun 2008 19:42:54 4.199.125 A.... "C:\Windows\System32\CodeIntegrity\bootcat.cache"
19 May 2008 14:11:36 79.424 A.... "C:\Windows\System32\drivers\avipbb.sys"
29 Apr 2008 3:35:26 19.456 A.... "C:\Windows\System32\drivers\bthenum.sys"
29 Apr 2008 3:35:26 220.160 A.... "C:\Windows\System32\drivers\bthport.sys"
29 Apr 2008 3:35:24 29.184 A.... "C:\Windows\System32\drivers\BTHUSB.SYS"
10 Jun 2008 19:02:40 15.864 A.... "C:\Windows\System32\drivers\mbam.sys"
10 Jun 2008 19:02:44 34.296 A.... "C:\Windows\System32\drivers\mbamcatchme.sys"
10 May 2008 3:21:08 113.664 A.... "C:\Windows\System32\drivers\rmcast.sys"
19 May 2008 14:11:36 21.248 A.... "C:\Windows\System32\drivers\ssmdrv.sys"
12 Jun 2008 11:36:56 196.608 A.... "C:\Windows\System32\NDF\eventlog.etl"
20 Jun 2008 11:49:32 30.279 A.... "C:\Windows\System32\spool\spooler.xml"
20 Jun 2008 9:49:30 4.096 ..... "C:\Windows\System32\spool\SpoolerETW.etl"
19 May 2008 21:51:14 "C:\Windows\winsxs\FileMaps\program_files_internet_explorer_a421d1bfaf856e2b.cdf-ms"
11 Jun 2008 17:51:22 3.152 A.... "C:\Windows\winsxs\FileMaps\$$_apppatch_1143992cbbbebcab.cdf-ms"
11 Jun 2008 17:52:16 5.476 A.... "C:\Windows\winsxs\FileMaps\$$_inf_3f581daba4c8c835.cdf-ms"
11 Jun 2008 17:52:16 392.676 A.... "C:\Windows\winsxs\FileMaps\$$_system32_21f9a9c4a2f8b514.cdf-ms"
19 May 2008 21:52:22 1.344 A.... "C:\Windows\winsxs\FileMaps\$$_servicing_fc2045b9046cc796.cdf-ms"
11 Jun 2008 17:52:16 3.564 A.... "C:\Windows\winsxs\FileMaps\$$.cdf-ms"
11 Jun 2008 17:51:22 6.144 A.... "C:\Windows\winsxs\FileMaps\$$_system32_migration_927a21df1acd7c18.cdf-ms"
11 Jun 2008 17:52:16 856 A.... "C:\Windows\winsxs\FileMaps\_0000000000000000.cdf-ms"
19 May 2008 21:52:22 1.040 A.... "C:\Windows\winsxs\FileMaps\$$_servicing_de-de_62b788f46c674185.cdf-ms"
11 Jun 2008 17:52:16 24.204 A.... "C:\Windows\winsxs\FileMaps\$$_system32_drivers_dc1b782427b5ee1b.cdf-ms"
19 May 2008 21:52:22 219.508 A.... "C:\Windows\winsxs\FileMaps\$$_system32_de-de_40b6416a87b647ef.cdf-ms"
11 Jun 2008 17:51:22 680 A.... "C:\Windows\winsxs\FileMaps\program_files_ffd0cbfc813cc4f1.cdf-ms"
19 May 2008 18:09:00 714 ..... "C:\Windows\winsxs\Manifests\x86_0a9e243d5c8db04d16aed7e6a5cab156_31bf3856ad364e35_6.0.6000.16646_none_e398ee2747721733.manifest"
25 Apr 2008 6:47:04 9.408 ..... "C:\Windows\winsxs\Manifests\x86_microsoft-windows-i..ablenetworkgraphics_31bf3856ad364e35_6.0.6000.20823_none_ec57303a2f6e03d6.manifest"
25 Apr 2008 7:22:18 29.742 ..... "C:\Windows\winsxs\Manifests\x86_microsoft-windows-ie-setup-support_31bf3856ad364e35_6.0.6000.16681_none_c394f7686192b15c.manifest"
10 May 2008 5:27:34 7.546 ..... "C:\Windows\winsxs\Manifests\x86_microsoft-windows-rmcast_31bf3856ad364e35_6.0.6000.20832_none_5302bd0ca3f891f1.manifest"
25 Apr 2008 9:56:20 "C:\Windows\System32\LogFiles\Scm\SCM.EVM"
20 Jun 2008 9:48:40 458.752 A.... "C:\Windows\System32\LogFiles\Scm\SCM.EVM.1"
19 Jun 2008 19:00:02 458.752 A.... "C:\Windows\System32\LogFiles\Scm\SCM.EVM.2"
19 Jun 2008 20:38:44 458.752 A.... "C:\Windows\System32\LogFiles\Scm\SCM.EVM.3"
19 Jun 2008 21:17:48 425.984 A.... "C:\Windows\System32\LogFiles\Scm\SCM.EVM.4"
19 Jun 2008 22:16:40 458.752 A.... "C:\Windows\System32\LogFiles\Scm\SCM.EVM.5"
20 Jun 2008 9:49:26 4.096 ..... "C:\Windows\System32\LogFiles\WUDF\WUDFTrace.etl"
18 Jun 2008 16:30:54 32.124 A.... "C:\Windows\System32\Macromed\Flash\install.log"
20 Jun 2008 9:49:26 6.361.088 A.... "C:\Windows\System32\winevt\Logs\Application.evtx"
20 Jun 2008 9:59:32 1.118.208 A.... "C:\Windows\System32\winevt\Logs\Media Center.evtx"
20 Jun 2008 10:04:32 1.052.672 A.... "C:\Windows\System32\winevt\Logs\Microsoft-Windows-LanguagePackSetup%4Operational.evtx"
21 May 2008 23:49:40 1.052.672 A.... "C:\Windows\System32\winevt\Logs\Microsoft-Windows-RestartManager%4Operational.evtx"
20 Jun 2008 12:19:20 1.118.208 A.... "C:\Windows\System32\winevt\Logs\Microsoft-Windows-UAC-FileVirtualization%4Operational.evtx"
20 Jun 2008 9:49:40 1.052.672 A.... "C:\Windows\System32\winevt\Logs\Microsoft-Windows-ReadyBoost%4Operational.evtx"
16 Jun 2008 17:41:30 69.632 A.... "C:\Windows\System32\winevt\Logs\Microsoft-Windows-DiskDiagnosticDataCollector%4Operational.evtx"
20 Jun 2008 9:59:42 1.052.672 A.... "C:\Windows\System32\winevt\Logs\Microsoft-Windows-Resource-Exhaustion-Detector%4Operational.evtx"
20 Jun 2008 9:49:34 1.052.672 A.... "C:\Windows\System32\winevt\Logs\Microsoft-Windows-WLAN-AutoConfig%4Operational.evtx"
20 Jun 2008 9:51:48 1.052.672 A.... "C:\Windows\System32\winevt\Logs\Microsoft-Windows-Diagnostics-Performance%4Operational.evtx"
19 May 2008 20:03:44 69.632 A.... "C:\Windows\System32\winevt\Logs\Microsoft-Windows-UAC%4Operational.evtx"
20 Jun 2008 9:49:18 1.052.672 A.... "C:\Windows\System32\winevt\Logs\Microsoft-Windows-CodeIntegrity%4Operational.evtx"
20 Jun 2008 9:52:14 1.052.672 A.... "C:\Windows\System32\winevt\Logs\Microsoft-Windows-Bits-Client%4Operational.evtx"
20 Jun 2008 9:53:20 1.052.672 A.... "C:\Windows\System32\winevt\Logs\Microsoft-Windows-WindowsUpdateClient%4Operational.evtx"
20 Jun 2008 9:49:40 1.052.672 A.... "C:\Windows\System32\winevt\Logs\Microsoft-Windows-Diagnosis-DPS%4Operational.evtx"
20 Jun 2008 9:49:18 1.052.672 A.... "C:\Windows\System32\winevt\Logs\Microsoft-Windows-Kernel-WHEA.evtx"
20 Jun 2008 9:49:30 10.489.856 A.... "C:\Windows\System32\winevt\Logs\Microsoft-Windows-TaskScheduler%4Operational.evtx"
20 Jun 2008 9:49:28 3.215.360 A.... "C:\Windows\System32\winevt\Logs\Microsoft-Windows-GroupPolicy%4Operational.evtx"
20 Jun 2008 10:04:32 1.052.672 A.... "C:\Windows\System32\winevt\Logs\Microsoft-Windows-ReliabilityAnalysisComponent%4Operational.evtx"
20 Jun 2008 9:49:30 1.052.672 A.... "C:\Windows\System32\winevt\Logs\Microsoft-Windows-DriverFrameworks-UserMode%4Operational.evtx"
12 Jun 2008 11:36:56 69.632 A.... "C:\Windows\System32\winevt\Logs\Microsoft-Windows-Diagnostics-Networking%4Operational.evtx"
20 Jun 2008 12:13:00 69.632 A.... "C:\Windows\System32\winevt\Logs\Microsoft-Windows-Program-Compatibility-Assistant%4Operational.evtx"
19 Jun 2008 20:38:28 1.118.208 A.... "C:\Windows\System32\winevt\Logs\OSession.evtx"
20 Jun 2008 9:49:18 12.652.544 A.... "C:\Windows\System32\winevt\Logs\Security.evtx"
20 Jun 2008 9:49:16 18.944.000 A.... "C:\Windows\System32\winevt\Logs\System.evtx"
11 Jun 2008 17:51:42 15.422 A.... "C:\Windows\winsxs\Temp\PendingRenames\7ae0570adbcbc801710100002808e416.pending.xml"
29 Apr 2008 1:00:36 34.598 A.... "C:\Windows\System32\DriverStore\FileRepository\bth.inf_e2e8526e\bth.inf"
11 Jun 2008 21:00:26 41.176 A.... "C:\Windows\System32\DriverStore\FileRepository\bth.inf_e2e8526e\bth.PNF"
29 Apr 2008 3:35:26 19.456 A.... "C:\Windows\System32\DriverStore\FileRepository\bth.inf_e2e8526e\bthenum.sys"
29 Apr 2008 3:35:26 220.160 A.... "C:\Windows\System32\DriverStore\FileRepository\bth.inf_e2e8526e\bthport.sys"
29 Apr 2008 3:35:24 29.184 A.... "C:\Windows\System32\DriverStore\FileRepository\bth.inf_e2e8526e\BTHUSB.SYS"
11 Jun 2008 21:00:24 13.679 A.... "C:\Windows\System32\DriverStore\FileRepository\bth.inf_e2e8526e\component.man"
29 Apr 2008 3:35:26 181.760 A.... "C:\Windows\System32\DriverStore\FileRepository\bth.inf_e2e8526e\fsquirt.exe"
29 Apr 2008 1:04:40 34.598 A.... "C:\Windows\System32\DriverStore\FileRepository\bth.inf_c206c850\bth.inf"
29 Apr 2008 3:42:14 19.456 A.... "C:\Windows\System32\DriverStore\FileRepository\bth.inf_c206c850\bthenum.sys"
29 Apr 2008 3:42:14 220.160 A.... "C:\Windows\System32\DriverStore\FileRepository\bth.inf_c206c850\bthport.sys"
29 Apr 2008 3:42:10 29.184 A.... "C:\Windows\System32\DriverStore\FileRepository\bth.inf_c206c850\BTHUSB.SYS"
11 Jun 2008 21:00:40 13.679 A.... "C:\Windows\System32\DriverStore\FileRepository\bth.inf_c206c850\component.man"
29 Apr 2008 5:50:14 181.760 A.... "C:\Windows\System32\DriverStore\FileRepository\bth.inf_c206c850\fsquirt.exe"
19 May 2008 22:16:48 20.427 A.... "C:\Windows\System32\DriverStore\FileRepository\keyboard.inf_4cb09de2\component.man"
19 May 2008 22:16:58 100.336 A.... "C:\Windows\System32\DriverStore\FileRepository\keyboard.inf_4cb09de2\keyboard.PNF"
19 May 2008 22:16:54 19.974 A.... "C:\Windows\System32\DriverStore\FileRepository\keyboard.inf_a81145df\component.man"
19 May 2008 22:16:58 96.608 A.... "C:\Windows\System32\DriverStore\FileRepository\keyboard.inf_a81145df\keyboard.PNF"
19 May 2008 22:16:50 23.482 A.... "C:\Windows\System32\DriverStore\FileRepository\msmouse.inf_3fe9d026\component.man"
19 May 2008 22:16:56 23.482 A.... "C:\Windows\System32\DriverStore\FileRepository\msmouse.inf_f4514c17\component.man"
19 May 2008 22:16:58 98.344 A.... "C:\Windows\System32\DriverStore\FileRepository\msmouse.inf_f4514c17\msmouse.PNF"
11 Jun 2008 21:01:10 6.291.456 A.... "C:\Windows\System32\SMI\Store\Machine\SCHEMA.DAT"
11 Jun 2008 21:01:10 524.288 A.SH. "C:\Windows\System32\SMI\Store\Machine\SCHEMA.DAT{3a53986d-6a70-11db-887c-d362bd253390}.TMContainer00000000000000000001.regtrans-ms"
11 Jun 2008 21:01:08 262.144 A..H. "C:\Windows\System32\SMI\Store\Machine\schema.dat.LOG1"


C:\Program Files\

28 May 2008 16:40:18 1.197.296 A.... "C:\Program Files\CCleaner\CCleaner.exe"
28 May 2008 21:37:34 21.504 A.... "C:\Program Files\CCleaner\lang-1031.dll"
18 Jun 2008 17:34:52 114.326 A.... "C:\Program Files\CCleaner\uninst.exe"
28 May 2008 16:40:18 1.197.296 A.... "C:\Program Files\CCleaner\CCleaner.exe"
28 May 2008 21:37:34 21.504 A.... "C:\Program Files\CCleaner\lang-1031.dll"
18 Jun 2008 17:34:52 114.326 A.... "C:\Program Files\CCleaner\uninst.exe"
19 May 2008 18:57:16 2.573.944 A...R "C:\Program Files\Google\GoogleToolbar1.dll"
19 May 2008 18:57:16 50.792 A.... "C:\Program Files\Google\googletoolbar1user.exe"
19 May 2008 18:57:16 2.573.944 A...R "C:\Program Files\Google\GoogleToolbar1.dll"
19 May 2008 18:57:16 50.792 A.... "C:\Program Files\Google\googletoolbar1user.exe"
25 Apr 2008 6:22:38 263.168 A.... "C:\Program Files\Internet Explorer\ieinstal.exe"
25 Apr 2008 6:22:38 301.568 A.... "C:\Program Files\Internet Explorer\ieuser.exe"
25 Apr 2008 6:22:38 625.664 A.... "C:\Program Files\Internet Explorer\iexplore.exe"
10 Jun 2008 19:02:38 65.144 A.... "C:\Program Files\Malwarebytes' Anti-Malware\mbam.dll"
10 Jun 2008 19:02:40 1.183.352 A.... "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe"
10 Jun 2008 19:02:40 36.472 A.... "C:\Program Files\Malwarebytes' Anti-Malware\mbamext.dll"
10 Jun 2008 19:02:42 102.008 A.... "C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe"
10 Jun 2008 19:02:42 380.536 A.... "C:\Program Files\Malwarebytes' Anti-Malware\mbamtrayctrl.exe"
10 Jun 2008 19:02:42 44.664 A.... "C:\Program Files\Malwarebytes' Anti-Malware\ssubtmr6.dll"
18 Jun 2008 18:49:22 6.999 A.... "C:\Program Files\Malwarebytes' Anti-Malware\unins000.dat"
18 Jun 2008 18:48:54 688.760 A.... "C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
10 Jun 2008 19:02:44 57.464 A.... "C:\Program Files\Malwarebytes' Anti-Malware\zlib.dll"
20 May 2008 22:19:46 13.952 A.... "C:\Program Files\Mozilla Firefox\AccessibleMarshal.dll"
20 May 2008 22:19:52 7.660.656 A.... "C:\Program Files\Mozilla Firefox\firefox.exe"
20 May 2008 22:19:52 200.829 A.... "C:\Program Files\Mozilla Firefox\freebl3.dll"
20 May 2008 22:19:52 458.856 A.... "C:\Program Files\Mozilla Firefox\js3250.dll"
20 May 2008 22:19:52 161.392 A.... "C:\Program Files\Mozilla Firefox\nspr4.dll"
20 May 2008 22:19:52 378.472 A.... "C:\Program Files\Mozilla Firefox\nss3.dll"
20 May 2008 22:19:52 276.080 A.... "C:\Program Files\Mozilla Firefox\nssckbi.dll"
20 May 2008 22:19:52 34.424 A.... "C:\Program Files\Mozilla Firefox\plc4.dll"
20 May 2008 22:19:52 30.320 A.... "C:\Program Files\Mozilla Firefox\plds4.dll"
20 May 2008 22:19:54 112.232 A.... "C:\Program Files\Mozilla Firefox\smime3.dll"
20 May 2008 22:19:54 254.060 A.... "C:\Program Files\Mozilla Firefox\softokn3.dll"
20 May 2008 22:19:56 132.712 A.... "C:\Program Files\Mozilla Firefox\ssl3.dll"
20 May 2008 22:19:56 132.232 A.... "C:\Program Files\Mozilla Firefox\updater.exe"
20 May 2008 22:19:56 13.416 A.... "C:\Program Files\Mozilla Firefox\xpcom.dll"
20 May 2008 22:19:56 73.848 A.... "C:\Program Files\Mozilla Firefox\xpcom_compat.dll"
20 May 2008 22:19:56 422.000 A.... "C:\Program Files\Mozilla Firefox\xpcom_core.dll"
20 May 2008 22:19:56 73.336 A.... "C:\Program Files\Mozilla Firefox\xpicleanup.exe"
20 May 2008 22:19:56 12.400 A.... "C:\Program Files\Mozilla Firefox\xpistub.dll"
9 May 2008 19:25:18 145.920 A.... "C:\Program Files\Navilog1\catchme.exe"
25 Apr 2008 21:48:16 98.304 A.... "C:\Program Files\Navilog1\GetPaths.exe"
5 Jun 2008 18:18:02 5.737 A.... "C:\Program Files\Navilog1\gnc.exe"
6 Jun 2008 10:34:28 863.961 A.... "C:\Program Files\Navilog1\navilog1.bat"
6 Jun 2008 10:25:58 671.999 A.... "C:\Program Files\Navilog1\navreb.bat"
10 May 2008 20:28:28 52.293 A.... "C:\Program Files\Navilog1\regnavi.reg"
19 Jun 2008 18:42:42 1.826 A.... "C:\Program Files\Navilog1\unins000.dat"
19 Jun 2008 18:42:30 688.133 A.... "C:\Program Files\Navilog1\unins000.exe"
19 May 2008 18:58:50 6.104.632 A..H. "C:\Program Files\Picasa2\setup.exe"
19 May 2008 19:00:28 127.376 A.... "C:\Program Files\Picasa2\Uninstall.exe"
19 May 2008 19:00:46 165.892 A.... "C:\Program Files\Spyware Doctor\unins000.dat"
19 May 2008 19:00:34 707.976 A.... "C:\Program Files\Spyware Doctor\unins000.exe"
19 May 2008 14:11:36 1.030 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\about.htm"
6 Jun 2008 13:47:10 168.310 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\aecore.dll"
19 May 2008 14:11:36 430.451 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\aeemu.dll"
6 Jun 2008 13:47:14 307.572 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\aegen.dll"
29 May 2008 20:41:54 115.063 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\aehelp.dll"
6 Jun 2008 13:47:28 1.253.750 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\aeheur.dll"
19 May 2008 14:11:36 192.890 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\aeoffice.dll"
19 May 2008 14:11:36 364.918 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\aepack.dll"
19 May 2008 14:11:36 418.165 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\aerdl.dll"
6 Jun 2008 13:47:32 119.156 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\aescn.dll"
6 Jun 2008 13:47:36 266.618 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\aescript.dll"
6 Jun 2008 13:47:36 2.043 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\aeset.dat"
19 May 2008 14:11:36 102.772 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\aevdf.dll"
19 May 2008 14:11:36 95.552 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avadmin.exe"
19 May 2008 14:11:36 307.457 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avarkt.dll"
19 May 2008 14:11:36 360.705 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avcenter.exe"
19 May 2008 14:11:36 9.985 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avconfig.dll"
19 May 2008 14:11:36 241.921 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avconfig.exe"
19 May 2008 14:11:36 114.945 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avevtlog.dll"
30 May 2008 22:06:48 124.161 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgio.dll"
19 May 2008 14:11:36 262.401 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe"
30 May 2008 22:07:00 52.032 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgntflt.sys"
19 May 2008 14:11:36 147.201 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe"
19 May 2008 14:11:32 10.497 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avinet.dll"
19 May 2008 14:11:36 73.985 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avipc.dll"
19 May 2008 14:11:36 8.449 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avnotify.dll"
19 May 2008 14:11:36 184.577 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avnotify.exe"
19 May 2008 14:11:36 25.857 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avpref.dll"
19 May 2008 14:11:36 30.977 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avreg.dll"
19 May 2008 14:11:36 57.601 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avscan.dll"
19 May 2008 14:11:36 311.553 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avscan.exe"
19 May 2008 14:11:36 14.593 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avwinll.dll"
30 May 2008 22:06:50 208.592 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avwsc.exe"
30 May 2008 22:07:00 16.478 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\build.dat"
19 May 2008 14:11:36 151.809 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\ccev.dll"
19 May 2008 14:11:36 13.569 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\ccevrc.dll"
19 May 2008 14:11:36 270.593 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\ccgen.dll"
19 May 2008 14:11:36 18.689 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\ccgenrc.dll"
19 May 2008 14:11:36 21.249 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\ccgrdrc.dll"
19 May 2008 14:11:36 217.345 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\ccguard.dll"
19 May 2008 14:11:36 160.001 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\cclib.dll"
19 May 2008 14:11:36 61.697 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\cclic.dll"
19 May 2008 14:11:36 5.889 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\cclicrc.dll"
19 May 2008 14:11:36 22.273 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\ccmainrc.dll"
19 May 2008 14:11:36 155.905 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\ccmsg.dll"
19 May 2008 14:11:36 262.401 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\ccprofil.dll"
19 May 2008 14:11:36 217.345 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\ccquamgr.dll"
19 May 2008 14:11:36 16.641 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\ccquarc.dll"
19 May 2008 14:11:36 12.545 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\ccreporc.dll"
19 May 2008 14:11:36 131.329 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\ccreport.dll"
19 May 2008 14:11:36 23.809 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\ccscanrc.dll"
19 May 2008 14:11:36 151.809 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\ccsched.dll"
19 May 2008 14:11:36 20.225 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\ccscherc.dll"
19 May 2008 14:11:36 246.017 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\cctpc.dll"
19 May 2008 14:11:36 114.945 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\ccupdate.dll"
19 May 2008 14:11:36 13.057 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\ccupdrc.dll"
19 May 2008 14:11:36 11.009 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\guardevt.dll"
19 May 2008 14:11:36 53.505 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\guardgui.exe"
19 May 2008 14:11:36 54.017 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\guardmsg.dll"
19 May 2008 14:11:36 11.009 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\licmgr.dll"
19 May 2008 14:11:36 123.137 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\licmgr.exe"
19 May 2008 14:11:36 151.809 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\luke.dll"
19 May 2008 14:11:36 12.545 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\lukeres.dll"
19 May 2008 14:11:36 258.305 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\mgrs.dll"
19 May 2008 14:11:36 13.569 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\msgclient.dll"
19 May 2008 14:11:36 7.937 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\netnt.dll"
19 May 2008 14:11:36 94.465 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\preupd.exe"
19 May 2008 14:11:36 538 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\prodinfo.dat"
19 May 2008 14:11:36 65.793 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\rchelp.dll"
19 May 2008 14:11:32 2.371.841 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\rcimage.dll"
19 May 2008 14:11:32 86.273 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\rctext.dll"
19 May 2008 14:11:32 102.400 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\scewxml.dll"
19 May 2008 14:11:36 68.865 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe"
19 May 2008 14:11:36 8.449 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\schedr.dll"
19 May 2008 14:11:36 78.081 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\setup.dll"
30 May 2008 22:06:58 631.041 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\setup.exe"
19 May 2008 14:11:36 69.889 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\shlext.dll"
19 May 2008 14:11:36 28.929 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\smtplib.dll"
19 May 2008 14:11:36 339.968 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\sqlite3.dll"
19 May 2008 14:11:36 47.466 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\sweb.zip"
19 May 2008 14:11:32 442.625 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\update.exe"
19 May 2008 14:11:32 147.713 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\updgui.dll"
19 May 2008 14:11:32 11.009 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\updguirc.dll"
19 May 2008 14:11:32 459.009 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\updlib.dll"
19 May 2008 14:11:32 26.881 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\updlibrc.dll"
30 May 2008 22:07:00 57.601 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\wksstats.dll"
19 May 2008 14:11:36 156.992 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\wsctool.exe"
19 May 2008 14:11:36 1.030 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\about.htm"
6 Jun 2008 13:47:10 168.310 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\aecore.dll"
19 May 2008 14:11:36 430.451 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\aeemu.dll"
6 Jun 2008 13:47:14 307.572 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\aegen.dll"
29 May 2008 20:41:54 115.063 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\aehelp.dll"
6 Jun 2008 13:47:28 1.253.750 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\aeheur.dll"
19 May 2008 14:11:36 192.890 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\aeoffice.dll"
19 May 2008 14:11:36 364.918 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\aepack.dll"
19 May 2008 14:11:36 418.165 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\aerdl.dll"
6 Jun 2008 13:47:32 119.156 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\aescn.dll"
6 Jun 2008 13:47:36 266.618 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\aescript.dll"
6 Jun 2008 13:47:36 2.043 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\aeset.dat"
19 May 2008 14:11:36 102.772 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\aevdf.dll"
19 May 2008 14:11:36 95.552 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avadmin.exe"
19 May 2008 14:11:36 307.457 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avarkt.dll"
19 May 2008 14:11:36 360.705 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avcenter.exe"
19 May 2008 14:11:36 9.985 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avconfig.dll"
19 May 2008 14:11:36 241.921 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avconfig.exe"
19 May 2008 14:11:36 114.945 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avevtlog.dll"
30 May 2008 22:06:48 124.161 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgio.dll"
19 May 2008 14:11:36 262.401 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe"
30 May 2008 22:07:00 52.032 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgntflt.sys"
19 May 2008 14:11:36 147.201 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe"
19 May 2008 14:11:32 10.497 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avinet.dll"
19 May 2008 14:11:36 73.985 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avipc.dll"
19 May 2008 14:11:36 8.449 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avnotify.dll"
19 May 2008 14:11:36 184.577 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avnotify.exe"
19 May 2008 14:11:36 25.857 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avpref.dll"
19 May 2008 14:11:36 30.977 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avreg.dll"
19 May 2008 14:11:36 57.601 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avscan.dll"
19 May 2008 14:11:36 311.553 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avscan.exe"
19 May 2008 14:11:36 14.593 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avwinll.dll"
30 May 2008 22:06:50 208.592 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avwsc.exe"
30 May 2008 22:07:00 16.478 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\build.dat"
19 May 2008 14:11:36 151.809 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\ccev.dll"
19 May 2008 14:11:36 13.569 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\ccevrc.dll"
19 May 2008 14:11:36 270.593 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\ccgen.dll"
19 May 2008 14:11:36 18.689 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\ccgenrc.dll"
19 May 2008 14:11:36 21.249 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\ccgrdrc.dll"
19 May 2008 14:11:36 217.345 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\ccguard.dll"
19 May 2008 14:11:36 160.001 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\cclib.dll"
19 May 2008 14:11:36 61.697 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\cclic.dll"
19 May 2008 14:11:36 5.889 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\cclicrc.dll"
19 May 2008 14:11:36 22.273 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\ccmainrc.dll"
19 May 2008 14:11:36 155.905 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\ccmsg.dll"
19 May 2008 14:11:36 262.401 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\ccprofil.dll"
19 May 2008 14:11:36 217.345 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\ccquamgr.dll"
19 May 2008 14:11:36 16.641 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\ccquarc.dll"
19 May 2008 14:11:36 12.545 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\ccreporc.dll"
19 May 2008 14:11:36 131.329 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\ccreport.dll"
19 May 2008 14:11:36 23.809 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\ccscanrc.dll"
19 May 2008 14:11:36 151.809 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\ccsched.dll"
19 May 2008 14:11:36 20.225 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\ccscherc.dll"
19 May 2008 14:11:36 246.017 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\cctpc.dll"
19 May 2008 14:11:36 114.945 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\ccupdate.dll"
19 May 2008 14:11:36 13.057 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\ccupdrc.dll"
19 May 2008 14:11:36 11.009 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\guardevt.dll"
19 May 2008 14:11:36 53.505 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\guardgui.exe"
19 May 2008 14:11:36 54.017 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\guardmsg.dll"
19 May 2008 14:11:36 11.009 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\licmgr.dll"
19 May 2008 14:11:36 123.137 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\licmgr.exe"
19 May 2008 14:11:36 151.809 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\luke.dll"
19 May 2008 14:11:36 12.545 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\lukeres.dll"
19 May 2008 14:11:36 258.305 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\mgrs.dll"
19 May 2008 14:11:36 13.569 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\msgclient.dll"
19 May 2008 14:11:36 7.937 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\netnt.dll"
19 May 2008 14:11:36 94.465 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\preupd.exe"
19 May 2008 14:11:36 538 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\prodinfo.dat"
19 May 2008 14:11:36 65.793 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\rchelp.dll"
19 May 2008 14:11:32 2.371.841 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\rcimage.dll"
19 May 2008 14:11:32 86.273 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\rctext.dll"
19 May 2008 14:11:32 102.400 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\scewxml.dll"
19 May 2008 14:11:36 68.865 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe"
19 May 2008 14:11:36 8.449 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\schedr.dll"
19 May 2008 14:11:36 78.081 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\setup.dll"
30 May 2008 22:06:58 631.041 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\setup.exe"
19 May 2008 14:11:36 69.889 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\shlext.dll"
19 May 2008 14:11:36 28.929 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\smtplib.dll"
19 May 2008 14:11:36 339.968 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\sqlite3.dll"
19 May 2008 14:11:36 47.466 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\sweb.zip"
19 May 2008 14:11:32 442.625 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\update.exe"
19 May 2008 14:11:32 147.713 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\updgui.dll"
19 May 2008 14:11:32 11.009 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\updguirc.dll"
19 May 2008 14:11:32 459.009 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\updlib.dll"
19 May 2008 14:11:32 26.881 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\updlibrc.dll"
30 May 2008 22:07:00 57.601 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\wksstats.dll"
19 May 2008 14:11:36 156.992 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\wsctool.exe"
19 May 2008 18:57:28 554 A.... "C:\Program Files\Google\Google Desktop Search\ak ### GoogleDesktopSetup.exe -uninstall"
19 May 2008 18:57:32 200.704 A.... "C:\Program Files\Google\Google Desktop Search\GoogleDesktopCommon.dll"
19 May 2008 18:57:32 1.990.656 A.... "C:\Program Files\Google\Google Desktop Search\GoogleServices.dll"
19 May 2008 18:57:32 112.640 A.... "C:\Program Files\Google\Google Desktop Search\GoogleDesktopMail.dll"
19 May 2008 18:57:32 122.880 A.... "C:\Program Files\Google\Google Desktop Search\GoogleDesktopMozilla.dll"
19 May 2008 18:57:32 66.048 A.... "C:\Program Files\Google\Google Desktop Search\GoogleDesktopActions.dll"
19 May 2008 18:57:32 150.016 A.... "C:\Program Files\Google\Google Desktop Search\GoogleDesktopSSD.dll"
19 May 2008 18:57:32 135.168 A.... "C:\Program Files\Google\Google Desktop Search\GoogleDesktopHyper.dll"
19 May 2008 18:57:32 405.504 A.... "C:\Program Files\Google\Google Desktop Search\GoogleUIEngine.dll"
19 May 2008 18:57:32 162.816 A.... "C:\Program Files\Google\Google Desktop Search\GoogleDesktopDeskbar2.dll"
19 May 2008 18:57:32 112.128 A.... "C:\Program Files\Google\Google Desktop Search\GoogleDesktopNetwork3.dll"
19 May 2008 18:57:26 571.904 A.... "C:\Program Files\Google\Google Desktop Search\GoogleDesktopResources_de.dll"
19 May 2008 18:57:26 1.838.640 A.... "C:\Program Files\Google\Google Desktop Search\GoogleDesktopSetup.exe"
19 May 2008 18:57:32 103.936 A.... "C:\Program Files\Google\Google Desktop Search\GoogleDesktopIE.dll"
19 May 2008 18:57:26 29.744 A.... "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe"
19 May 2008 18:57:32 500.224 A.... "C:\Program Files\Google\Google Desktop Search\GoogleDesktopAPI2.dll"
19 May 2008 18:57:32 204.288 A.... "C:\Program Files\Google\Google Desktop Search\GoogleDesktopOffice.dll"
19 May 2008 18:57:32 34.816 A.... "C:\Program Files\Google\Google Desktop Search\gzlib.dll"
19 May 2008 19:15:58 212.992 A.... "C:\Program Files\Google\Google Desktop Search\pdftotext.exe"
19 May 2008 18:57:26 4.999 A.... "C:\Program Files\Google\Google Desktop Search\topic_sites.dat"
19 May 2008 18:57:28 554 A.... "C:\Program Files\Google\Google Desktop Search\ak ### GoogleDesktopSetup.exe -uninstall"
19 May 2008 18:57:32 200.704 A.... "C:\Program Files\Google\Google Desktop Search\GoogleDesktopCommon.dll"
19 May 2008 18:57:32 1.990.656 A.... "C:\Program Files\Google\Google Desktop Search\GoogleServices.dll"
19 May 2008 18:57:32 112.640 A.... "C:\Program Files\Google\Google Desktop Search\GoogleDesktopMail.dll"
19 May 2008 18:57:32 122.880 A.... "C:\Program Files\Google\Google Desktop Search\GoogleDesktopMozilla.dll"
19 May 2008 18:57:32 66.048 A.... "C:\Program Files\Google\Google Desktop Search\GoogleDesktopActions.dll"
19 May 2008 18:57:32 150.016 A.... "C:\Program Files\Google\Google Desktop Search\GoogleDesktopSSD.dll"
19 May 2008 18:57:32 135.168 A.... "C:\Program Files\Google\Google Desktop Search\GoogleDesktopHyper.dll"
19 May 2008 18:57:32 405.504 A.... "C:\Program Files\Google\Google Desktop Search\GoogleUIEngine.dll"
19 May 2008 18:57:32 162.816 A.... "C:\Program Files\Google\Google Desktop Search\GoogleDesktopDeskbar2.dll"
19 May 2008 18:57:32 112.128 A.... "C:\Program Files\Google\Google Desktop Search\GoogleDesktopNetwork3.dll"
19 May 2008 18:57:26 571.904 A.... "C:\Program Files\Google\Google Desktop Search\GoogleDesktopResources_de.dll"
19 May 2008 18:57:26 1.838.640 A.... "C:\Program Files\Google\Google Desktop Search\GoogleDesktopSetup.exe"
19 May 2008 18:57:32 103.936 A.... "C:\Program Files\Google\Google Desktop Search\GoogleDesktopIE.dll"
19 May 2008 18:57:26 29.744 A.... "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe"
19 May 2008 18:57:32 500.224 A.... "C:\Program Files\Google\Google Desktop Search\GoogleDesktopAPI2.dll"
19 May 2008 18:57:32 204.288 A.... "C:\Program Files\Google\Google Desktop Search\GoogleDesktopOffice.dll"
19 May 2008 18:57:32 34.816 A.... "C:\Program Files\Google\Google Desktop Search\gzlib.dll"
19 May 2008 19:15:58 212.992 A.... "C:\Program Files\Google\Google Desktop Search\pdftotext.exe"
19 May 2008 18:57:26 4.999 A.... "C:\Program Files\Google\Google Desktop Search\topic_sites.dat"
24 Apr 2008 22:52:04 167.424 A.... "C:\Program Files\Google\Google Earth\earthflashsol.exe"
24 Apr 2008 22:52:04 54.784 A.... "C:\Program Files\Google\Google Earth\earthps.dll"
24 Apr 2008 22:58:02 13.278.720 A.... "C:\Program Files\Google\Google Earth\googleearth.exe"
24 Apr 2008 22:35:16 285.184 A.... "C:\Program Files\Google\Google Earth\gpsbabel.exe"
24 Apr 2008 22:36:18 667.648 A.... "C:\Program Files\Google\Google Earth\ijl20.dll"
24 Apr 2008 22:36:18 151.552 A.... "C:\Program Files\Google\Google Earth\libexpatw.dll"
24 Apr 2008 22:36:20 548.864 A.... "C:\Program Files\Google\Google Earth\msvcp80.dll"
24 Apr 2008 22:36:20 626.688 A.... "C:\Program Files\Google\Google Earth\msvcr80.dll"
24 Apr 2008 22:36:26 106.496 A.... "C:\Program Files\Google\Google Earth\SketchUpExporter.dll"
19 May 2008 18:57:28 554 A.... "C:\Program Files\Google\Google Desktop Search\ak ### GoogleDesktopSetup.exe -uninstall"
19 May 2008 18:57:32 200.704 A.... "C:\Program Files\Google\Google Desktop Search\GoogleDesktopCommon.dll"
19 May 2008 18:57:32 1.990.656 A.... "C:\Program Files\Google\Google Desktop Search\GoogleServices.dll"
19 May 2008 18:57:32 112.640 A.... "C:\Program Files\Google\Google Desktop Search\GoogleDesktopMail.dll"
19 May 2008 18:57:32 122.880 A.... "C:\Program Files\Google\Google Desktop Search\GoogleDesktopMozilla.dll"
19 May 2008 18:57:32 66.048 A.... "C:\Program Files\Google\Google Desktop Search\GoogleDesktopActions.dll"
19 May 2008 18:57:32 150.016 A.... "C:\Program Files\Google\Google Desktop Search\GoogleDesktopSSD.dll"
19 May 2008 18:57:32 135.168 A.... "C:\Program Files\Google\Google Desktop Search\GoogleDesktopHyper.dll"
19 May 2008 18:57:32 405.504 A.... "C:\Program Files\Google\Google Desktop Search\GoogleUIEngine.dll"
19 May 2008 18:57:32 162.816 A.... "C:\Program Files\Google\Google Desktop Search\GoogleDesktopDeskbar2.dll"
19 May 2008 18:57:32 112.128 A.... "C:\Program Files\Google\Google Desktop Search\GoogleDesktopNetwork3.dll"
19 May 2008 18:57:26 571.904 A.... "C:\Program Files\Google\Google Desktop Search\GoogleDesktopResources_de.dll"
19 May 2008 18:57:26 1.838.640 A.... "C:\Program Files\Google\Google Desktop Search\GoogleDesktopSetup.exe"
19 May 2008 18:57:32 103.936 A.... "C:\Program Files\Google\Google Desktop Search\GoogleDesktopIE.dll"
19 May 2008 18:57:26 29.744 A.... "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe"
19 May 2008 18:57:32 500.224 A.... "C:\Program Files\Google\Google Desktop Search\GoogleDesktopAPI2.dll"
19 May 2008 18:57:32 204.288 A.... "C:\Program Files\Google\Google Desktop Search\GoogleDesktopOffice.dll"
19 May 2008 18:57:32 34.816 A.... "C:\Program Files\Google\Google Desktop Search\gzlib.dll"
19 May 2008 19:15:58 212.992 A.... "C:\Program Files\Google\Google Desktop Search\pdftotext.exe"
19 May 2008 18:57:26 4.999 A.... "C:\Program Files\Google\Google Desktop Search\topic_sites.dat"
20 Jun 2008 9:46:38 492.032 ..... "C:\Program Files\InstallShield Installation Information\{F0312AC6-988B-11DA-9C49-000476F770CC}\ISSetup.dll"
20 Jun 2008 9:46:38 455.600 A.... "C:\Program Files\InstallShield Installation Information\{F0312AC6-988B-11DA-9C49-000476F770CC}\setup.exe"
20 Jun 2008 9:46:38 164.784 A.... "C:\Program Files\InstallShield Installation Information\{F0312AC6-988B-11DA-9C49-000476F770CC}\_Setup.dll"
19 May 2008 18:57:32 122.880 A.... "C:\Program Files\Mozilla Firefox\components\GoogleDesktopMozilla.dll"
20 May 2008 22:19:48 67.696 A.... "C:\Program Files\Mozilla Firefox\components\jar50.dll"
20 May 2008 22:19:48 54.376 A.... "C:\Program Files\Mozilla Firefox\components\jsd3250.dll"
20 May 2008 22:19:48 34.952 A.... "C:\Program Files\Mozilla Firefox\components\myspell.dll"
20 May 2008 22:19:48 46.720 A.... "C:\Program Files\Mozilla Firefox\components\spellchk.dll"
20 May 2008 22:19:48 172.144 A.... "C:\Program Files\Mozilla Firefox\components\xpinstal.dll"
20 May 2008 22:19:52 22.664 A.... "C:\Program Files\Mozilla Firefox\plugins\npnul32.dll"
20 May 2008 22:19:54 117 A.... "C:\Program Files\Mozilla Firefox\res\hiddenWindow.html"
20 May 2008 22:19:56 451.928 A.... "C:\Program Files\Mozilla Firefox\uninstall\helper.exe"
18 Jun 2008 17:07:38 4.897 A.... "C:\Program Files\Navilog1\Backupnavi\rwbgswjg.dat"
13 Jun 2008 16:02:58 303.104 A.... "C:\Program Files\Navilog1\Backupnavi\rwbgswjg.exe"
13 Jun 2008 16:03:04 435.102 A.... "C:\Program Files\Navilog1\Backupnavi\rwbgswjg_nav.dat"
18 Jun 2008 17:08:02 2.040 A.... "C:\Program Files\Navilog1\Backupnavi\rwbgswjg_navps.dat"
19 Jun 2008 18:57:56 185.255.566 A.... "C:\Program Files\Navilog1\Safebackup\backup_registry.dat"
19 Jun 2008 18:57:24 1.090 A.... "C:\Program Files\Navilog1\Safebackup\HKCU_Run.reg"
19 Jun 2008 18:57:24 3.984 A.... "C:\Program Files\Navilog1\Safebackup\HKLM_Run.reg"
19 Jun 2008 18:57:24 234 A.... "C:\Program Files\Navilog1\Safebackup\HKLM_Startupreg.reg"
19 Jun 2008 18:57:24 208.838 A.... "C:\Program Files\Navilog1\Safebackup\HKLM_Uninstall.reg"
19 May 2008 19:00:32 3 A.... "C:\Program Files\Picasa2\runtime\hlpsys.dll"
18 Jun 2008 16:59:30 396.288 A.... "C:\Program Files\Trend Micro\HijackThis\HijackThis.exe"
25 May 2008 14:09:50 176.222 A.... "C:\Program Files\VideoLAN\VLC\uninstall.exe"
6 Jun 2008 13:47:10 168.310 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\FAILSAFE\aecore.dll"
19 May 2008 14:11:36 430.451 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\FAILSAFE\aeemu.dll"
6 Jun 2008 13:47:14 307.572 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\FAILSAFE\aegen.dll"
29 May 2008 20:41:54 115.063 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\FAILSAFE\aehelp.dll"
6 Jun 2008 13:47:28 1.253.750 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\FAILSAFE\aeheur.dll"
19 May 2008 14:11:36 192.890 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\FAILSAFE\aeoffice.dll"
19 May 2008 14:11:36 364.918 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\FAILSAFE\aepack.dll"
19 May 2008 14:11:36 418.165 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\FAILSAFE\aerdl.dll"
6 Jun 2008 13:47:32 119.156 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\FAILSAFE\aescn.dll"
6 Jun 2008 13:47:36 266.618 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\FAILSAFE\aescript.dll"
6 Jun 2008 13:47:36 2.043 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\FAILSAFE\aeset.dat"
19 May 2008 14:11:36 102.772 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\FAILSAFE\aevdf.dll"
6 Jun 2008 13:47:10 168.310 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\FAILSAFE\aecore.dll"
19 May 2008 14:11:36 430.451 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\FAILSAFE\aeemu.dll"
6 Jun 2008 13:47:14 307.572 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\FAILSAFE\aegen.dll"
29 May 2008 20:41:54 115.063 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\FAILSAFE\aehelp.dll"
6 Jun 2008 13:47:28 1.253.750 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\FAILSAFE\aeheur.dll"
19 May 2008 14:11:36 192.890 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\FAILSAFE\aeoffice.dll"
19 May 2008 14:11:36 364.918 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\FAILSAFE\aepack.dll"
19 May 2008 14:11:36 418.165 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\FAILSAFE\aerdl.dll"
6 Jun 2008 13:47:32 119.156 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\FAILSAFE\aescn.dll"
6 Jun 2008 13:47:36 266.618 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\FAILSAFE\aescript.dll"
6 Jun 2008 13:47:36 2.043 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\FAILSAFE\aeset.dat"
19 May 2008 14:11:36 102.772 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\FAILSAFE\aevdf.dll"
20 May 2008 22:19:48 7.164 A.... "C:\Program Files\Mozilla Firefox\defaults\profile\bookmarks.html"
19 May 2008 12:26:30 172.544 A.... "C:\Program Files\Fujitsu Siemens Computers\FSCLounge\FSCWCOM\1.05\FSCWCOM.dll"
19 May 2008 12:27:02 6.404.096 A.... "C:\Program Files\Fujitsu Siemens Computers\FSCLounge\FSCWorld\1.02\FSCWorld.dll"
19 May 2008 12:27:32 714.752 A.... "C:\Program Files\Fujitsu Siemens Computers\FSCLounge\FSCWService_Netleih\1.04\FSCWService_Netleih.dll"
19 May 2008 12:27:16 850.944 A.... "C:\Program Files\Fujitsu Siemens Computers\FSCLounge\FSCWService_Bilder\1.02\FSCWService_Bilder.dll"
19 May 2008 12:27:18 143.360 A.... "C:\Program Files\Fujitsu Siemens Computers\FSCLounge\FSCWService_HWSW\1.02\FSCWService_HWSW.dll"
19 May 2008 12:27:04 30.208 A.... "C:\Program Files\Fujitsu Siemens Computers\FSCLounge\iFSCWTransfer\1.01\iFSCWTransfer.dll"
20 May 2008 22:19:48 99.840 A.... "C:\Program Files\Mozilla Firefox\extensions\talkback@mozilla.org\components\BrandRes.dll"
20 May 2008 22:19:48 156.544 A.... "C:\Program Files\Mozilla Firefox\extensions\talkback@mozilla.org\components\fullsoft.dll"
20 May 2008 22:19:48 14.456 A.... "C:\Program Files\Mozilla Firefox\extensions\talkback@mozilla.org\components\qfaservices.dll"
20 May 2008 22:19:50 407.040 A.... "C:\Program Files\Mozilla Firefox\extensions\talkback@mozilla.org\components\talkback.exe"
19 May 2008 20:00:38 1 A.... "C:\Program Files\Sun\StarOffice 8\share\uno_packages\cache\stamp.sys"
19 May 2008 20:00:38 0 A.... "C:\Program Files\Sun\StarOffice 8\share\uno_packages\cache\uno_packages\40AA.tmp"
19 May 2008 20:00:38 114.688 A.... "C:\Program Files\Sun\StarOffice 8\share\uno_packages\cache\uno_packages\40AA.tmp_\SunSearchToolbar.oxt\c9680mi.dll"


Files with hidden attributes:

Mon 19 May 2008 6,104,632 A..H. --- "C:\Program Files\Picasa2\setup.exe"
Thu 2 Nov 2006 524,288 A.SH. --- "C:\Users\Default\NTUSER.DAT{3a539871-6a70-11db-887c-d362bd253390}.TMContainer00000000000000000001.regtrans-ms"
Thu 2 Nov 2006 524,288 A.SH. --- "C:\Users\Default\NTUSER.DAT{3a539871-6a70-11db-887c-d362bd253390}.TMContainer00000000000000000002.regtrans-ms"
Mon 24 Dec 2007 524,288 A.SH. --- "C:\Users\Kiki\NTUSER.DAT{3a539871-6a70-11db-887c-d362bd253390}.TMContainer00000000000000000001.regtrans-ms"
Mon 24 Dec 2007 524,288 A.SH. --- "C:\Users\Kiki\NTUSER.DAT{3a539871-6a70-11db-887c-d362bd253390}.TMContainer00000000000000000002.regtrans-ms"
Fri 18 Jan 2008 4,348 A.SH. --- "C:\ProgramData\Microsoft\Windows\DRM\DRMv1.bak"
Wed 18 Jun 2008 170,697,558 A..H. --- "C:\Windows\SoftwareDistribution\Download\26924cbc8132a10b438ce6e2b49d4652\BITA192.tmp"
Fri 20 Jun 2008 5,242,880 A.SH. --- "C:\Windows\System32\config\TxR\{250834b7-750c-494d-bdc3-da86b6e2101a}.TxR.2.regtrans-ms"
Wed 4 Jun 2008 524,288 A.SH. --- "C:\Windows\System32\config\TxR\{250834B7-750C-494d-BDC3-DA86B6E2101B}.TMContainer00000000000000000001.regtrans-ms"
Mon 16 Jun 2008 524,288 A.SH. --- "C:\Windows\System32\config\TxR\{250834B7-750C-494d-BDC3-DA86B6E2101B}.TMContainer00000000000000000002.regtrans-ms"
Mon 19 May 2008 5,242,880 A.SH. --- "C:\Windows\System32\config\TxR\{250834b7-750c-494d-bdc3-da86b6e2101a}.TxR.0.regtrans-ms"
Wed 11 Jun 2008 5,242,880 A.SH. --- "C:\Windows\System32\config\TxR\{250834b7-750c-494d-bdc3-da86b6e2101a}.TxR.1.regtrans-ms"
Fri 23 May 2008 524,288 A.SH. --- "C:\Windows\System32\config\TxR\{250834B7-750C-494d-BDC3-DA86B6E2101B}.TMContainer00000000000000000004.regtrans-ms"
Fri 20 Jun 2008 524,288 A.SH. --- "C:\Windows\System32\config\TxR\{250834B7-750C-494d-BDC3-DA86B6E2101B}.TMContainer00000000000000000003.regtrans-ms"
Fri 18 Jan 2008 0 A.SH. --- "C:\ProgramData\Microsoft\Windows\DRM\Cache\Indiv01.tmp"
Fri 18 Jan 2008 4,348 A.SH. --- "C:\Users\All Users\Microsoft\Windows\DRM\DRMv1.bak"
Wed 30 Jul 2003 34,304 A.SH. --- "C:\Users\Kiki\Desktop\Alter Computer\Studium\~WRL0009.tmp"
Fri 26 Aug 2005 53,826 A.SH. --- "C:\Users\Kiki\Desktop\Alter Computer\Studium\~WRL0109.tmp"
Mon 28 Jul 2003 30,720 A.SH. --- "C:\Users\Kiki\Desktop\Alter Computer\Studium\~WRL0217.tmp"
Wed 26 Jan 2005 86,016 A.SH. --- "C:\Users\Kiki\Desktop\Alter Computer\Studium\~WRL3523.tmp"
Wed 11 Jun 2008 524,288 A.SH. --- "C:\Windows\System32\SMI\Store\Machine\SCHEMA.DAT{3a53986d-6a70-11db-887c-d362bd253390}.TMContainer00000000000000000001.regtrans-ms"
Thu 2 Nov 2006 524,288 A.SH. --- "C:\Windows\System32\SMI\Store\Machine\SCHEMA.DAT{3a53986d-6a70-11db-887c-d362bd253390}.TMContainer00000000000000000002.regtrans-ms"
Fri 18 Jan 2008 0 A.SH. --- "C:\Users\All Users\Microsoft\Windows\DRM\Cache\Indiv01.tmp"
Mon 24 Dec 2007 524,288 A.SH. --- "C:\Users\Kiki\AppData\Local\Microsoft\Windows\UsrClass.dat{ce36a560-b23e-11dc-a799-001060d00fe5}.TMContainer00000000000000000001.regtrans-ms"
Mon 24 Dec 2007 524,288 A.SH. --- "C:\Users\Kiki\AppData\Local\Microsoft\Windows\UsrClass.dat{ce36a560-b23e-11dc-a799-001060d00fe5}.TMContainer00000000000000000002.regtrans-ms"
Wed 30 Jul 2003 34,304 A.SH. --- "C:\Users\Kiki\Desktop\Alter Computer\Strafrecht Frommel\Studium\~WRL0009.tmp"
Fri 26 Aug 2005 53,826 A.SH. --- "C:\Users\Kiki\Desktop\Alter Computer\Strafrecht Frommel\Studium\~WRL0109.tmp"
Mon 28 Jul 2003 30,720 A.SH. --- "C:\Users\Kiki\Desktop\Alter Computer\Strafrecht Frommel\Studium\~WRL0217.tmp"
Wed 26 Jan 2005 86,016 A.SH. --- "C:\Users\Kiki\Desktop\Alter Computer\Strafrecht Frommel\Studium\~WRL3523.tmp"
Thu 12 Jun 2008 16,162 A..H. --- "C:\Users\Kiki\AppData\Local\Google\Google Desktop\94789dab4849\Slideshow\api.flickr.com~services~feeds~photos_public.gne\BIT204C.tmp"
Tue 10 Jun 2008 28,040 A..H. --- "C:\Users\Kiki\AppData\Local\Google\Google Desktop\94789dab4849\Slideshow\api.flickr.com~services~feeds~photos_public.gne\BIT206C.tmp"
Tue 10 Jun 2008 33,415 A..H. --- "C:\Users\Kiki\AppData\Local\Google\Google Desktop\94789dab4849\Slideshow\api.flickr.com~services~feeds~photos_public.gne\BIT20BB.tmp"
Tue 10 Jun 2008 23,078 A..H. --- "C:\Users\Kiki\AppData\Local\Google\Google Desktop\94789dab4849\Slideshow\api.flickr.com~services~feeds~photos_public.gne\BIT20DB.tmp"
Thu 29 May 2008 24,928 A..H. --- "C:\Users\Kiki\AppData\Local\Google\Google Desktop\94789dab4849\Slideshow\api.flickr.com~services~feeds~photos_public.gne\BIT20FB.tmp"
Wed 28 May 2008 34,488 A..H. --- "C:\Users\Kiki\AppData\Local\Google\Google Desktop\94789dab4849\Slideshow\api.flickr.com~services~feeds~photos_public.gne\BIT211B.tmp"
Tue 27 May 2008 21,144 A..H. --- "C:\Users\Kiki\AppData\Local\Google\Google Desktop\94789dab4849\Slideshow\api.flickr.com~services~feeds~photos_public.gne\BIT213C.tmp"
Tue 27 May 2008 23,896 A..H. --- "C:\Users\Kiki\AppData\Local\Google\Google Desktop\94789dab4849\Slideshow\api.flickr.com~services~feeds~photos_public.gne\BIT214C.tmp"
Tue 27 May 2008 20,528 A..H. --- "C:\Users\Kiki\AppData\Local\Google\Google Desktop\94789dab4849\Slideshow\api.flickr.com~services~feeds~photos_public.gne\BIT217C.tmp"
Mon 26 May 2008 18,236 A..H. --- "C:\Users\Kiki\AppData\Local\Google\Google Desktop\94789dab4849\Slideshow\api.flickr.com~services~feeds~photos_public.gne\BIT218D.tmp"
Mon 26 May 2008 25,847 A..H. --- "C:\Users\Kiki\AppData\Local\Google\Google Desktop\94789dab4849\Slideshow\api.flickr.com~services~feeds~photos_public.gne\BIT219D.tmp"
Sat 24 May 2008 13,372 A..H. --- "C:\Users\Kiki\AppData\Local\Google\Google Desktop\94789dab4849\Slideshow\api.flickr.com~services~feeds~photos_public.gne\BIT21BD.tmp"
Fri 23 May 2008 42,610 A..H. --- "C:\Users\Kiki\AppData\Local\Google\Google Desktop\94789dab4849\Slideshow\api.flickr.com~services~feeds~photos_public.gne\BIT221C.tmp"
Fri 23 May 2008 29,497 A..H. --- "C:\Users\Kiki\AppData\Local\Google\Google Desktop\94789dab4849\Slideshow\api.flickr.com~services~feeds~photos_public.gne\BIT222D.tmp"
Fri 23 May 2008 30,216 A..H. --- "C:\Users\Kiki\AppData\Local\Google\Google Desktop\94789dab4849\Slideshow\api.flickr.com~services~feeds~photos_public.gne\BIT224D.tmp"
Tue 20 May 2008 10,517 A..H. --- "C:\Users\Kiki\AppData\Local\Google\Google Desktop\94789dab4849\Slideshow\api.flickr.com~services~feeds~photos_public.gne\BIT227D.tmp"
Tue 20 May 2008 9,862 A..H. --- "C:\Users\Kiki\AppData\Local\Google\Google Desktop\94789dab4849\Slideshow\api.flickr.com~services~feeds~photos_public.gne\BIT22AC.tmp"
Mon 19 May 2008 19,855 A..H. --- "C:\Users\Kiki\AppData\Local\Google\Google Desktop\94789dab4849\Slideshow\api.flickr.com~services~feeds~photos_public.gne\BIT22EC.tmp"
Wed 30 Apr 2008 16,657 A..H. --- "C:\Users\Kiki\AppData\Local\Google\Google Desktop\94789dab4849\Slideshow\api.flickr.com~services~feeds~photos_public.gne\BIT232B.tmp"
Mon 21 Apr 2008 19,806 A..H. --- "C:\Users\Kiki\AppData\Local\Google\Google Desktop\94789dab4849\Slideshow\api.flickr.com~services~feeds~photos_public.gne\BIT2399.tmp"


Program Folders:

C:\Program Files\

Adobe
Alice
Avira
BFG
C&E
CCleaner
CIB software GmbH
Common Files
CyberLink
DIFX
Fujitsu Siemens Computers
Gemeinsame Dateien
Google
Hewlett-Packard
HP
InstallShield Installation Information
Internet Explorer
Java
Malwarebytes' Anti-Malware
Microsoft CAPICOM 2.1.0.2
Microsoft Games
Microsoft Office
Microsoft Works
Microsoft.NET
Mindjet
Motorola
Movie Maker
Mozilla Firefox
MSBuild
MSN
MSXML 4.0
Navilog1
Nero
Norton Security Scan
PC Connectivity Solution
Picasa2
Real
Reference Assemblies
Skype
Spyware Doctor
Sun
Tracker Software
Trend Micro
Uninstall Information
VideoLAN
Windows Calendar
Windows Collaboration
Windows Defender
Windows Journal
Windows Mail
Windows Media Player
Windows NT
Windows Photo Gallery
Windows Sidebar

C:\Program Files\Common Files\

Adobe
Ahead
DESIGNER
Fujitsu Siemens Computers
Hewlett-Packard
HP
InstallShield
Java
microsoft shared
MSSoap
Real
Services
Skype
SpeechEngines
Symantec Shared
System
xing shared


Add/Remove Programs:

Avira AntiVir Personal – Free Antivirus
Big Fish Games Center (remove only)
Big Fish Games Sudoku (remove only)
CCleaner (remove only)
Cradle of Rome (remove only)
Google Desktop
Google Updater
HijackThis 2.0.2
Microsoft Office Home and Student 2007
HP Imaging Device Functions 8.0
HP Solution Center 8.0
HP Customer Participation Program 8.0
Security Update for CAPICOM (KB931906)
Luxor Amun Rising (remove only)
Mahjong Towers Eternity EU (remove only)
Malwarebytes' Anti-Malware
Mozilla Firefox (2.0.0.14)
Mystery Case Files - Prime Suspects (remove only)
Navilog1 3.5.8
NVIDIA Drivers
PDF-XChange 3.0
Picasa 2
Poker Superstars II (remove only)
RealPlayer
Motorola SM56 Data Fax Modem
Spyware Doctor 5.5
Virtual Villagers (remove only)
VideoLAN VLC media player 0.8.6f
Security Update for CAPICOM (KB931906)
Scan
WebReg
MSVC80_x86
Google Toolbar for Internet Explorer
MindManager X5 Pro
Java(TM) 6 Update 3
Java(TM) 6 Update 5
HP Officejet All-In-One Series
J5700
BPD_Scan
ProductContext
WebCam
Microsoft Works
Skype™ 3.5
5700_Help
eSupportQFolder
HPProductAssistant
Windows Media Player Firefox Plugin
CustomerResearchQFolder
Fax
Nero 7 Essentials
StarOffice 8
HP Update
Microsoft Office Professional Edition 2003
Microsoft Office Excel MUI (German) 2007
Microsoft Office PowerPoint MUI (German) 2007
Microsoft Office Word MUI (German) 2007
Microsoft Office Proof (German) 2007
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (Italian) 2007
Microsoft Office Proofing (German) 2007
Microsoft Office Shared MUI (German) 2007
Microsoft Office OneNote MUI (German) 2007
Microsoft Office Home and Student 2007
Security Update for Office 2007 (KB947801)
Security Update for Office 2007 (KB934062)
Security Update for the 2007 Microsoft Office System (KB936960)
Security Update for Excel 2007 (KB946974)
Security Update for Microsoft Office system 2007 (KB951808)
Update for Office 2007 (KB946691)
Security Update for Microsoft Office Word 2007 (KB950113)
Update for Office 2007 (KB932080)
FirstSteps Diagnostics
MarketResearch
Status
Google Earth
FSCLounge
Destinations
BPDSoftware_Ini
SolutionCenter
DeviceManagementQFolder
Adobe Reader 8.1.2 - Deutsch
PowerDV
PC Connectivity Solution
BufferChm
MSXML 4.0 SP2 (KB941833)
Toolbox
Norton Security Scan
Google Toolbar for Internet Explorer
OSDInstall
BPDSoftware
CIB pdf brewer 2.3.10
Realtek High Definition Audio Driver
32 Bit HP CIO Components Installer
TrayApp


Run Values:

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
"Windows Defender"=hex(2):25,00,50,00,72,00,6f,00,67,00,72,00,61,00,6d,00,46,\
00,69,00,6c,00,65,00,73,00,25,00,5c,00,57,00,69,00,6e,00,64,00,6f,00,77,00,\
73,00,20,00,44,00,65,00,66,00,65,00,6e,00,64,00,65,00,72,00,5c,00,4d,00,53,\
00,41,00,53,00,43,00,75,00,69,00,2e,00,65,00,78,00,65,00,20,00,2d,00,68,00,\
69,00,64,00,65,00,00,00
"NvSvc"="RUNDLL32.EXE C:\\Windows\\system32\\nvsvc.dll,nvsvcStart"
"NvCplDaemon"="RUNDLL32.EXE C:\\Windows\\system32\\NvCpl.dll,NvStartup"
"NvMediaCenter"="RUNDLL32.EXE C:\\Windows\\system32\\NvMcTray.dll,NvTaskbarInit"
"RtHDVCpl"="RtHDVCpl.exe"
"SMSERIAL"="C:\\Program Files\\Motorola\\SMSERIAL\\sm56hlpr.exe"
"OSD"="C:\\Program Files\\C&E\\OSD\\osd.exe"
"NeroFilterCheck"="C:\\Program Files\\Common Files\\Ahead\\Lib\\NeroCheck.exe"
"TkBellExe"="\"C:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe\" -osboot"
"pdfSaver3"=""
"Adobe Reader Speed Launcher"="\"C:\\Program Files\\Adobe\\Reader 8.0\\Reader\\Reader_sl.exe\""
"avgnt"="\"C:\\Program Files\\Avira\\AntiVir PersonalEdition Classic\\avgnt.exe\" /min"
"HP Software Update"="C:\\Program Files\\HP\\HP Software Update\\HPWuSchd2.exe"
"Google Desktop Search"="\"C:\\Program Files\\Google\\Google Desktop Search\\GoogleDesktop.exe\" /startup"
"ISTray"="\"C:\\Program Files\\Spyware Doctor\\pctsTray.exe\""
"SunJavaUpdateSched"="\"C:\\Program Files\\Java\\jre1.6.0_05\\bin\\jusched.exe\""

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents]
@=""

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL]
"Installed"="1"
@=""

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI]
"NoChange"="1"
"Installed"="1"
@=""

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS]
"Installed"="1"
@=""

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run]
"Sidebar"="C:\\Program Files\\Windows Sidebar\\sidebar.exe"
"ehTray.exe"="C:\\Windows\\ehome\\ehTray.exe"
"swg"="C:\\Program Files\\Google\\GoogleToolbarNotifier\\GoogleToolbarNotifier.exe"
"Skype"="\"C:\\Program Files\\Skype\\Phone\\Skype.exe\" /nosplash /minimized"
"pdfSaver3"="\"C:\\Program Files\\Tracker Software\\PDF-XChange 3\\pdfSaver\\pdfSaver3.exe\""
"WMPNSCFG"="C:\\Program Files\\Windows Media Player\\WMPNSCFG.exe"


Bot Check:

SERVICE_NAME: wscsvc
DISPLAY_NAME : Sicherheitscenter
START_TYPE : 2 AUTO_START

SERVICE_NAME: sharedaccess
DISPLAY_NAME : Gemeinsame Nutzung der Internetverbindung
START_TYPE : 3 DEMAND_START

SERVICE_NAME: wuauserv
DISPLAY_NAME : Windows Update
START_TYPE : 2 AUTO_START

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole]
"EnableDCOM"="Y"

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"disableregistrytools"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"restrictanonymous"=dword:00000000

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update]
"AUOptions"=dword:00000004

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"UacDisableNotify"=dword:00000000
"InternetSettingsDisableNotify"=dword:00000000
"AutoUpdateDisableNotify"=dword:00000000
"AntiVirusOverride"=dword:00000000
"AntiSpywareOverride"=dword:00000000
"FirewallOverride"=dword:00000000

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"WaitToKillServiceTimeout"="20000"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"Shell"="explorer.exe"
"Userinit"="C:\\Windows\\system32\\userinit.exe,"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shell extensions]


[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NetBT\Parameters]
"TransportBindName"="\\Device\\"


ShellExecuteHooks:


Environment:


HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager\environment
ComSpec REG_EXPAND_SZ %SystemRoot%\system32\cmd.exe
OS REG_SZ Windows_NT
Path REG_EXPAND_SZ C:\Program Files\PC Connectivity Solution\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\CIB software GmbH\CIB pdf brewer
PATHEXT REG_SZ .COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
TEMP REG_EXPAND_SZ %SystemRoot%\TEMP
TMP REG_EXPAND_SZ %SystemRoot%\TEMP
USERNAME REG_SZ SYSTEM
windir REG_EXPAND_SZ %SystemRoot%

SecurityProviders:

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders
SecurityProviders REG_SZ credssp.dll


Authentication Packages:

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa
Authentication Packages REG_MULTI_SZ msv1_0\0\0


Subsystem Startup:

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems]
"Windows"="%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThreads=16"


Midi Drivers:

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midi"="wdmaud.drv"


Non-Default IFEO Debugger:


Non-Default Installed Components:


Non-Default Safeboot Minimal:


HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\appinfo
<NO NAME> REG_SZ Service


HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\keyiso
<NO NAME> REG_SZ Service


HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\ntds
<NO NAME> REG_SZ Service


HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\profsvc
<NO NAME> REG_SZ Service


HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\sacsvr
<NO NAME> REG_SZ Service


HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\sdauxservice


HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\sdcoreservice


HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\swprv
<NO NAME> REG_SZ Service


HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\tabletinputservice
<NO NAME> REG_SZ Service


HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\tbs
<NO NAME> REG_SZ Service


HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\trustedinstaller
<NO NAME> REG_SZ Service


HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\volmgr.sys
<NO NAME> REG_SZ Driver


HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\volmgrx.sys
<NO NAME> REG_SZ Driver


HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\windefend
<NO NAME> REG_SZ Service


HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\{6bdd1fc1-810f-11d0-bec7-08002be2092f}
<NO NAME> REG_SZ IEEE 1394 Bus host controllers


HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\{d48179be-ec20-11d1-b6b8-00c04fa372a7}
<NO NAME> REG_SZ SBP2 IEEE 1394 Devices


HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\{d94ee5d8-d189-4994-83d2-f68d7d41b0e6}
<NO NAME> REG_SZ SecurityDevices


File Associations:


[HKEY_CLASSES_ROOT\batfile\shell\open\command]
@="\"%1\" %*"

[HKEY_CLASSES_ROOT\cmdfile\shell\open\command]
@="\"%1\" %*"

[HKEY_CLASSES_ROOT\comfile\shell\open\command]
@="\"%1\" %*"

[HKEY_CLASSES_ROOT\exefile\shell\open\command]
@="\"%1\" %*"
"IsolatedCommand"="\"%1\" %*"

[HKEY_CLASSES_ROOT\htafile\shell\open\command]
@="C:\\Windows\\system32\\mshta.exe \"%1\" %*"

[HKEY_CLASSES_ROOT\http\shell\open\command]
@="\"C:\\Program Files\\Internet Explorer\\iexplore.exe\" -nohome"

[HKEY_CLASSES_ROOT\htmlfile\shell\open\command]
@="\"C:\\Program Files\\Internet Explorer\\iexplore.exe\" -nohome"

[HKEY_CLASSES_ROOT\regedit\shell\open\command]
@="regedit.exe \"%1\""

[HKEY_CLASSES_ROOT\regfile\shell\open\command]
@="regedit.exe \"%1\" %*"

[HKEY_CLASSES_ROOT\scrfile\shell\open\command]
@="\"%1\" %*"

[HKEY_CLASSES_ROOT\txtfile\shell\open\command]
@="%SystemRoot%\system32\NOTEPAD.EXE %1"


Finished!
Seitenanfang Seitenende
20.06.2008, 13:28
Ehrenmitglied
Avatar Sabina

Beiträge: 29434
#22 Hallo,

Virustotal http://www.virustotal.com/flash/index_en.html

C:\Program Files\C&E\OSD\OsdService\OsdService.exe

Auf Durchsuchen klicken --> Datei aussuchen (oder gleich die Datei mit korrektem Pfad einkopieren mit Strg V) --> Klick auf die zu prüfende Datei und öffnen--> klick auf "Senden der Datei"... jetzt abwarten - dann mit der rechten Maustaste den Text markieren -> kopieren
__________
MfG Sabina

rund um die PC-Sicherheit
Seitenanfang Seitenende
20.06.2008, 13:35
Member

Themenstarter

Beiträge: 16
#23 Antivirus Version letzte aktualisierung Ergebnis
AhnLab-V3 2008.6.19.0 2008.06.20 -
AntiVir 7.8.0.59 2008.06.20 -
Authentium 5.1.0.4 2008.06.20 -
Avast 4.8.1195.0 2008.06.19 -
AVG 7.5.0.516 2008.06.19 -
BitDefender 7.2 2008.06.20 -
CAT-QuickHeal 9.50 2008.06.19 -
ClamAV 0.93.1 2008.06.20 -
DrWeb 4.44.0.09170 2008.06.20 -
eSafe 7.0.15.0 2008.06.19 -
eTrust-Vet 31.6.5890 2008.06.20 -
Ewido 4.0 2008.06.20 -
F-Prot 4.4.4.56 2008.06.19 -
F-Secure 7.60.13501.0 2008.06.20 -
Fortinet 3.14.0.0 2008.06.20 -
GData 2.0.7306.1023 2008.06.20 -
Ikarus T3.1.1.26.0 2008.06.20 -
Kaspersky 7.0.0.125 2008.06.20 -
McAfee 5321 2008.06.19 -
Microsoft 1.3604 2008.06.20 -
NOD32v2 3202 2008.06.20 -
Norman 5.80.02 2008.06.19 -
Panda 9.0.0.4 2008.06.19 -
Prevx1 V2 2008.06.20 -
Rising 20.49.42.00 2008.06.20 -
Sophos 4.30.0 2008.06.20 -
Sunbelt 3.0.1153.1 2008.06.15 -
Symantec 10 2008.06.20 -
TheHacker 6.2.92.355 2008.06.19 -
TrendMicro 8.700.0.1004 2008.06.20 -
VBA32 3.12.6.7 2008.06.19 -
VirusBuster 4.3.26:9 2008.06.12 -
Webwasher-Gateway 6.6.2 2008.06.20 -
weitere Informationen
File size: 53248 bytes
MD5...: fd8ce9dde60565d4158f9dd7c179e002
SHA1..: a93ac9845c21ca1533e2414212ffd723eb1973e0
SHA256: 9f191313f53ebe7488c9fec4a8a12da8bfa3f54b113b5d8ef4d1410b271985cc
SHA512: 60139dded01d01ca6bb63ba3f02e7e8c5f3486375ab07cf315b16a767f12d7df
ab32b2c5652e8d714411c0a3c8b3b2157b2d3d2f3215d9348e563de1f0d846d5
PEiD..: -
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x40345b
timedatestamp.....: 0x46dbcd7e (Mon Sep 03 09:01:50 2007)
machinetype.......: 0x14c (I386)

( 4 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x7de2 0x8000 6.55 f13a8332849655e4694ceffcf8458ef2
.rdata 0x9000 0x193c 0x2000 4.38 3d8abaee17196e75fdf2a3925c3d300d
.data 0xb000 0x3338 0x1000 3.30 2bb25d2eb7ea9091a91f6e38125f5752
.rsrc 0xf000 0x9b0 0x1000 2.49 f0df0bdfe15c82d241899d890d57b4e4

( 5 imports )
> ATL.DLL: -, -, -, -, -, -
> KERNEL32.dll: GetCurrentThread, GetCurrentProcess, CloseHandle, GetLastError, GetCommandLineA, lstrcmpiA, GetCurrentThreadId, GetModuleFileNameA, lstrlenA, FlushFileBuffers, ExitProcess, GetProcAddress, GetModuleHandleA, RtlUnwind, HeapFree, HeapAlloc, GetStartupInfoA, GetVersionExA, GetACP, GetOEMCP, GetCPInfo, EnterCriticalSection, LeaveCriticalSection, DeleteCriticalSection, TlsFree, SetLastError, TlsSetValue, TlsGetValue, TlsAlloc, HeapDestroy, HeapCreate, VirtualFree, VirtualAlloc, HeapReAlloc, IsBadWritePtr, WriteFile, GetStdHandle, UnhandledExceptionFilter, FreeEnvironmentStringsA, GetEnvironmentStrings, FreeEnvironmentStringsW, WideCharToMultiByte, GetEnvironmentStringsW, SetHandleCount, GetFileType, SetFilePointer, LCMapStringA, MultiByteToWideChar, LCMapStringW, GetStringTypeA, GetStringTypeW, InitializeCriticalSection, SetUnhandledExceptionFilter, IsBadReadPtr, IsBadCodePtr, LoadLibraryA, SetStdHandle, GetLocaleInfoA, VirtualProtect, GetSystemInfo, VirtualQuery
> USER32.dll: LoadStringA, CharNextA, PostThreadMessageA, DispatchMessageA, MessageBoxA
> ADVAPI32.dll: OpenServiceA, GetTokenInformation, OpenThreadToken, OpenProcessToken, SetSecurityDescriptorGroup, SetSecurityDescriptorOwner, GetLengthSid, CopySid, InitializeSecurityDescriptor, SetSecurityDescriptorDacl, RegOpenKeyExA, StartServiceCtrlDispatcherA, ControlService, DeleteService, ChangeServiceConfig2A, RegDeleteValueA, RegQueryValueExA, SetServiceStatus, RegisterServiceCtrlHandlerA, RegisterEventSourceA, ReportEventA, DeregisterEventSource, OpenSCManagerA, RegCreateKeyA, CloseServiceHandle, StartServiceA, CreateServiceA, RegCloseKey, RegSetValueExA
> ole32.dll: CoUninitialize, CoInitializeSecurity, CoInitialize
Seitenanfang Seitenende
20.06.2008, 14:27
Ehrenmitglied
Avatar Sabina

Beiträge: 29434
#24 Hallo kiki

mache einen Onlinscan mit a-squared Web Malware Scanner + poste hier den report
http://virus-protect.org/onlinescan.html
__________
MfG Sabina

rund um die PC-Sicherheit
Seitenanfang Seitenende
20.06.2008, 16:19
Member

Themenstarter

Beiträge: 16
#25 a-squared Anti-Malware - Version 3.5
Letztes Update: 20.06.2008 14:46:14

Scan Einstellungen:

Objekte: Speicher, Traces, Cookies, C:\, D:\
Archiv Scan: An
Heuristik: An
ADS Scan: An

Scan Beginn: 20.06.2008 14:46:22

C:\Users\Kiki\AppData\Roaming\Microsoft\Windows\Cookies\kiki@advertising[2].txt gefunden: Trace.TrackingCookie
C:\Users\Kiki\AppData\Roaming\Mozilla\Firefox\Profiles\49y9bkvi.default\cookies.txt:39 gefunden: Trace.TrackingCookie
C:\Users\Kiki\AppData\Roaming\Mozilla\Firefox\Profiles\49y9bkvi.default\cookies.txt:81 gefunden: Trace.TrackingCookie
C:\Users\Kiki\AppData\Roaming\Mozilla\Firefox\Profiles\49y9bkvi.default\cookies.txt:84 gefunden: Trace.TrackingCookie
C:\$Recycle.Bin\S-1-5-21-3354835929-3464886680-2845337313-1000\$R9KXOC5.exe/Process.exe gefunden: Riskware.RiskTool.Win32.Processor.20
C:\Program Files\Navilog1\Process.exe gefunden: Riskware.RiskTool.Win32.Processor.20
C:\Program Files\Navilog1\reboot.exe gefunden: Riskware.RiskTool.Win32.Reboot.f
C:\SDFix\apps\Process.exe gefunden: Riskware.RiskTool.Win32.Processor.20
C:\Users\Kiki\AppData\Local\Mozilla\Firefox\Profiles\49y9bkvi.default\Cache\DD0DA363d01/Process.exe gefunden: Riskware.RiskTool.Win32.Processor.20
C:\Users\Kiki\AppData\Local\Mozilla\Firefox\Profiles\49y9bkvi.default\Cache\DD0DBD66d01/Process.exe gefunden: Riskware.RiskTool.Win32.Processor.20
C:\Users\Kiki\AppData\Local\Temp\SDFix.zip/Process.exe gefunden: Riskware.RiskTool.Win32.Processor.20
C:\Users\Kiki\Documents\SDFix\SDFix\apps\Process.exe gefunden: Riskware.RiskTool.Win32.Processor.20

Gescannt

Dateien: 173188
Traces: 334648
Cookies: 154
Prozesse: 75

Gefunden

Dateien: 8
Traces: 0
Cookies: 4
Prozesse: 0
Registry Keys: 0

Scan Ende: 20.06.2008 16:15:46
Scan Zeit: 1:29:24
Seitenanfang Seitenende
20.06.2008, 16:24
Member

Beiträge: 3716
#26 Ich würde dir übrigens avira premium empfehlen.
Belegt bei av-comperatives und vielen anderen tests regelmäßig den ersten platz.
Seitenanfang Seitenende
20.06.2008, 16:32
Member

Themenstarter

Beiträge: 16
#27 Danke für deine Tips :-). Bin ich denn jetzt von den Parasiten befreit???
Seitenanfang Seitenende
20.06.2008, 16:46
Member

Beiträge: 3716
#28 hi, du kannst dir ja mal die testlizens besorgen und einspielen. dann updaten und heuristik auf hoch stellen. hier gibts auch eienn artikel dazu. avira und die heuristik die agressive variante. ist zwar für antivir 7 die einstellmöglichkeiten sind aber die selben. stell dann die heuristik auf jeden fall auf hoch scanne und schiebe alle funde in quarantäne und zeig den bericht.
Seitenanfang Seitenende
20.06.2008, 16:51
Member

Themenstarter

Beiträge: 16
#29 Ich habe Avira AntiVir-Personal- Free drauf und den habe ich durchlaufen lassen und der findet nichts. Wo bekomme ich denn die Testlizens? Auf der Internetseite von Avira?
Seitenanfang Seitenende
20.06.2008, 17:40
Ehrenmitglied
Avatar Sabina

Beiträge: 29434
#30 Hallo kiki,

es ist alles wieder o.k. ;)

http://virus-protect.org/antivirus.html
Heuristik-Einstellung:
Erkennungsstufe "mittel" oder "hoch" einstellen - (Expertenmodus anhaken)



pass in Zukunft auf, wo du surfst und was du lädst....
__________
MfG Sabina

rund um die PC-Sicherheit
Seitenanfang Seitenende
Um auf dieses Thema zu ANTWORTEN
bitte erst » hier kostenlos registrieren!!

Folgende Themen könnten Dich auch interessieren: