hier der zweite Teil Code:
[Registry - Additional Scans - Safe List]
< ActiveX StubPath [HKEY_LOCAL_MACHINE\] > ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\ ->
{08B0E5C0-4FCB-11CF-AAA5-00401C608500} [KeyFileName] ->
C:\Programme\Java\jre1.6.0_07\bin\regutils.dll [(default): Java (Sun);
IsInstalled: 1] -> [2008.06.10 04:44:26 | 000,237,568 | ---- | M | MD5 =
8AEDA6095D274AF81C86712A3F80398C] (Sun Microsystems, Inc.)
{10072CEC-8CC1-11D1-986E-00A0C955B42F} [HKLM] -> Reg Error: Key error.
[(default): Vektorgrafik-Rendering (VML); IsInstalled: 01 00 00 00
[binary data]] -> File not found
{2179C5D3-EBFF-11CF-B6FD-00AA00B4E220} [StubPath] -> [ComponentID:
NetShow; IsInstalled: 1] ->
{22d6f312-b0f6-11d0-94ab-0080c74c7e95} [StubPath] -> [(default):
Microsoft Windows Media Player 6.4; IsInstalled: 1] ->
{283807B5-2C60-11D0-A31D-00AA00B92C03} [HKLM] -> Reg Error: Key error.
[(default): DirectAnimation; IsInstalled: 1] -> File not found
{2A3320D6-C805-4280-B423-B665BDE33D8F} [HKLM] -> Reg Error: Key error.
[(default): Microsoft .NET Framework 1.1 Security Update (KB979906);
IsInstalled: 1] -> File not found
{2C7339CF-2B09-4501-B3F3-F3508C9228ED} [StubPath] ->
%SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall
%SystemRoot%\system32\themeui.dll [(default): Themes Setup; IsInstalled:
1] ->
{36f8ec70-c29a-11d1-b5c7-0000f8051515} [HKLM] -> Reg Error: Key error.
[(default): Dynamic HTML-Datenbindung für Java; IsInstalled: 1] -> File
not found
{3af36230-a269-11d1-b5bf-0000f8051515} [HKLM] -> Reg Error: Key error.
[(default): Offline Browsing Pack; IsInstalled: 1] -> File not found
{3bf42070-b3b1-11d1-b5c5-0000f8051515} [HKLM] -> Reg Error: Key error.
[(default): Uniscribe; IsInstalled: 1] -> File not found
{411EDCF7-755D-414E-A74B-3DCD6583F589} [HKLM] -> Reg Error: Key error.
[(default): Microsoft .NET Framework 1.1 Service Pack 1 (KB867460);
IsInstalled: 1] -> File not found
{4278c270-a269-11d1-b5bf-0000f8051515} [HKLM] -> Reg Error: Key error.
[(default): Erweitertes Authoring; IsInstalled: 1] -> File not found
{44BBA840-CC51-11CF-AAFA-00AA00B6015C} [StubPath] ->
"%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user
/install [(default): Microsoft Outlook Express 6; IsInstalled: 1] ->
{44BBA842-CC51-11CF-AAFA-00AA00B6015B} [StubPath] -> rundll32.exe
advpack.dll,LaunchINFSection
C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT [(default):
NetMeeting 3.01; IsInstalled: 01 00 00 00 [binary data]] ->
{44BBA848-CC51-11CF-AAFA-00AA00B6015C} [HKLM] -> Reg Error: Key error.
[(default): DirectShow; IsInstalled: 1] -> File not found
{44BBA855-CC51-11CF-AAFA-00AA00B6015F} [HKLM] -> Reg Error: Key error.
[(default): DirectDrawEx; IsInstalled: 1] -> File not found
{45ea75a0-a269-11d1-b5bf-0000f8051515} [HKLM] -> Reg Error: Key error.
[(default): Internet Explorer Help; IsInstalled: 1] -> File not found
{4f216970-c90c-11d1-b5c7-0000f8051515} [HKLM] -> Reg Error: Key error.
[(default): DirectAnimation Java Classes; IsInstalled: 1] -> File not found
{4f645220-306d-11d2-995d-00c04f98bbc9} [HKLM] -> Reg Error: Key error.
[(default): Microsoft Windows Script 5.6; IsInstalled: 1] -> File not found
{5945c046-1e7d-11d1-bc44-00c04fd912be} [StubPath] -> rundll32.exe
advpack.dll,LaunchINFSection
C:\WINDOWS\INF\msmsgs.inf,BLC.QuietInstall.PerUser [(default): Windows
Messenger 4.7; IsInstalled: 1] ->
{5A8D6EE0-3E18-11D0-821E-444553540000} [HKLM] -> Reg Error: Key error.
[ComponentID: ICW; IsInstalled: 1] -> File not found
{5fd399c0-a70a-11d1-9948-00c04f98bbc9} [HKLM] -> Reg Error: Key error.
[(default): Internet Explorer Setup Tools; IsInstalled: 1] -> File not found
{6BF52A52-394A-11d3-B153-00C04F79FAA6} [StubPath] -> rundll32.exe
advpack.dll,LaunchINFSection C:\WINDOWS\INF\wmp.inf,PerUserStub
[(default): Microsoft Windows Media Player; IsInstalled: 1] ->
{6fab99d0-bab8-11d1-994a-00c04f98bbc9} [HKLM] -> Reg Error: Key error.
[(default): MSN Site Access; IsInstalled: 1] -> File not found
{73fa19d0-2d75-11d2-995d-00c04f98bbc9} [HKLM] -> Reg Error: Key error.
[(default): Web Folders; IsInstalled: 1] -> File not found
{7790769C-0471-11d2-AF11-00C04FA35D02} [StubPath] ->
"%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT
/user /install [(default): Adressbuch 6; IsInstalled: 1] ->
{89820200-ECBD-11cf-8B85-00AA005B4340} [StubPath] -> regsvr32.exe /s /n
/i:U shell32.dll [(default): Windows Desktop-Update; IsInstalled: 1] ->
{89820200-ECBD-11cf-8B85-00AA005B4383} [StubPath] ->
C:\WINDOWS\system32\ie4uinit.exe -BaseSettings [(default): Internet
Explorer; IsInstalled: 1] ->
{89B4C1CD-B018-4511-B0A1-5476DBF70820} [StubPath] ->
C:\WINDOWS\system32\Rundll32.exe
C:\WINDOWS\system32\mscories.dll,Install [ComponentID: DOTNETFRAMEWORKS;
IsInstalled: 1] ->
{8b15971b-5355-4c82-8c07-7e181ea07608} [StubPath] -> rundll32.exe
advpack.dll,LaunchINFSection
C:\WINDOWS\INF\fxsocm.inf,Fax.Install.PerUser [(default): Fax;
IsInstalled: 1] ->
{9381D8F2-0288-11D0-9501-00AA00B911A5} [HKLM] -> Reg Error: Key error.
[(default): Dynamic HTML Data Binding; IsInstalled: 1] -> File not found
{94de52c8-2d59-4f1b-883e-79663d2d9a8c} [StubPath] -> [(default): Fax
Provider; IsInstalled: 1] ->
{C9E9A340-D1F1-11D0-821E-444553540600} [HKLM] -> Reg Error: Key error.
[(default): Internet Explorer Core Fonts; IsInstalled: 1] -> File not found
{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1} [HKLM] -> Reg Error: Key error.
[(default): .NET Framework] -> File not found
{CC2A9BA0-3BDD-11D0-821E-444553540000} [HKLM] -> Reg Error: Key error.
[(default): Taskplaner; IsInstalled: 1] -> File not found
{CDD7975E-60F8-41d5-8149-19E51D6F71D0} [HKLM] -> Reg Error: Key error.
[ComponentID: Windows Movie Maker v2.1; IsInstalled: 01 00 00 00 [binary
data]] -> File not found
{D27CDB6E-AE6D-11cf-96B8-444553540000} [HKLM] ->
C:\WINDOWS\system32\Macromed\Flash\Flash9e.ocx [(default): Adobe Flash
Player; IsInstalled: 01 00 00 00 [binary data]] -> [2007.11.21 02:04:14
| 002,987,392 | R--- | M | MD5 = D3C50535C26190FEAD7785A03499C0AC]
(Adobe Systems, Inc.)
{de5aed00-a4bf-11d1-9948-00c04f98bbc9} [HKLM] -> Reg Error: Key error.
[(default): HTML Help; IsInstalled: 1] -> File not found
{E78BFA60-5393-4C38-82AB-E8019E464EB4} [HKLM] -> Reg Error: Key error.
[(default): .NET Framework] -> File not found
{E92B03AB-B707-11d2-9CBD-0000F87A369E} [HKLM] -> Reg Error: Key error.
[(default): Active Directory Service Interface; IsInstalled: 01 00 00 00
[binary data]] -> File not found
<{12d0ed0d-0ee0-4f90-8827-78cefb8f4988} [StubPath] ->
C:\WINDOWS\system32\ieudinit.exe [(default): Versions-Update für
Internet Explorer; IsInstalled: 1] ->
>{22d6f312-b0f6-11d0-94ab-0080c74c7e95} [StubPath] ->
C:\WINDOWS\inf\unregmp2.exe /ShowWMP [(default): Windows Media Player;
IsInstalled: 0] ->
>{26923b43-4d38-484f-9b9e-de460746276c} [StubPath] ->
C:\WINDOWS\system32\ie4uinit.exe -UserIconConfig [(default): Internet
Explorer; IsInstalled: 1] ->
>{60B49E34-C7CC-11D0-8953-00A0C90347FF} [StubPath] ->
"C:\WINDOWS\system32\rundll32.exe"
"C:\WINDOWS\system32\iedkcs32.dll",BrandIEActiveSetup SIGNUP [(default):
Browser Customizations; IsInstalled: 1] ->
>{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS [StubPath] -> RunDLL32
IEDKCS32.DLL,BrandIE4 SIGNUP [(default): Browseranpassungen;
IsInstalled: 1] ->
>{881dd1c5-3dcf-431b-b061-f3f88e8be88a} [StubPath] ->
%systemroot%\system32\shmgrate.exe OCInstallUserConfigOE [(default):
Outlook Express; IsInstalled: 1] ->
< ActiveX StubPath [HKEY_USERS\.DEFAULT\] > ->
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Active Setup\Installed
Components\ ->
{44BBA842-CC51-11CF-AAFA-00AA00B6015B} [HKLM] -> Reg Error: Key error.
[(no name)] -> File not found
{44BBA848-CC51-11CF-AAFA-00AA00B6015C} [HKLM] -> Reg Error: Key error.
[(no name)] -> File not found
< ActiveX StubPath [HKEY_USERS\S-1-5-18\] > ->
HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Active Setup\Installed
Components\ ->
{44BBA842-CC51-11CF-AAFA-00AA00B6015B} [HKLM] -> Reg Error: Key error.
[(no name)] -> File not found
{44BBA848-CC51-11CF-AAFA-00AA00B6015C} [HKLM] -> Reg Error: Key error.
[(no name)] -> File not found
< ActiveX StubPath [HKEY_USERS\S-1-5-19\] > ->
HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Active Setup\Installed
Components\ ->
{44BBA842-CC51-11CF-AAFA-00AA00B6015B} [HKLM] -> Reg Error: Key error.
[(no name)] -> File not found
{44BBA848-CC51-11CF-AAFA-00AA00B6015C} [HKLM] -> Reg Error: Key error.
[(no name)] -> File not found
< ActiveX StubPath [HKEY_USERS\S-1-5-20\] > ->
HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Active Setup\Installed
Components\ ->
{44BBA842-CC51-11CF-AAFA-00AA00B6015B} [HKLM] -> Reg Error: Key error.
[(no name)] -> File not found
{44BBA848-CC51-11CF-AAFA-00AA00B6015C} [HKLM] -> Reg Error: Key error.
[(no name)] -> File not found
< ActiveX StubPath
[HKEY_USERS\S-1-5-21-1269871099-218545957-1124453212-1005\] > ->
HKEY_USERS\S-1-5-21-1269871099-218545957-1124453212-1005\SOFTWARE\Microsoft\Active
Setup\Installed Components\ ->
{2C7339CF-2B09-4501-B3F3-F3508C9228ED} [HKLM] -> Reg Error: Key error.
[(no name)] -> File not found
{44BBA840-CC51-11CF-AAFA-00AA00B6015C} [HKLM] -> Reg Error: Key error.
[(no name)] -> File not found
{44BBA842-CC51-11CF-AAFA-00AA00B6015B} [HKLM] -> Reg Error: Key error.
[(no name)] -> File not found
{44BBA848-CC51-11CF-AAFA-00AA00B6015C} [HKLM] -> Reg Error: Key error.
[(no name)] -> File not found
{5945c046-1e7d-11d1-bc44-00c04fd912be} [HKLM] -> Reg Error: Key error.
[(no name)] -> File not found
{7790769C-0471-11d2-AF11-00C04FA35D02} [HKLM] -> Reg Error: Key error.
[(no name)] -> File not found
{89820200-ECBD-11cf-8B85-00AA005B4340} [HKLM] -> Reg Error: Key error.
[(no name)] -> File not found
{89820200-ECBD-11cf-8B85-00AA005B4383} [HKLM] -> Reg Error: Key error.
[(no name)] -> File not found
{89B4C1CD-B018-4511-B0A1-5476DBF70820} [HKLM] -> Reg Error: Key error.
[(no name)] -> File not found
{8b15971b-5355-4c82-8c07-7e181ea07608} [HKLM] -> Reg Error: Key error.
[(no name)] -> File not found
{94de52c8-2d59-4f1b-883e-79663d2d9a8c} [HKLM] -> Reg Error: Key error.
[(no name)] -> File not found
<{12d0ed0d-0ee0-4f90-8827-78cefb8f4988} [HKLM] -> Reg Error: Key error.
[(no name)] -> File not found
>{26923b43-4d38-484f-9b9e-de460746276c} [HKLM] -> Reg Error: Key error.
[(no name)] -> File not found
>{60B49E34-C7CC-11D0-8953-00A0C90347FF} [HKLM] -> Reg Error: Key error.
[(no name)] -> File not found
>{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS [HKLM] -> Reg Error: Key
error. [(no name)] -> File not found
>{881dd1c5-3dcf-431b-b061-f3f88e8be88a} [HKLM] -> Reg Error: Key error.
[(no name)] -> File not found
InitiallyClear [HKLM] -> Reg Error: Key error. [(no name)] -> File not found
< App Paths [HKEY_LOCAL_MACHINE] > ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\ ->
1602.exe -> C:\spiele\ANNO1602\1602.exe [C:\spiele\ANNO1602\1602.exe] ->
[2000.01.19 01:53:00 | 000,651,264 | ---- | M | MD5 =
6F1415DA126CE0473137EA420FDDD931] (MAX DESIGN)
AcroRd32.exe -> C:\Programme\Adobe\Reader 8.0\Reader\AcroRd32.exe
[C:\Programme\Adobe\Reader 8.0\Reader\AcroRd32.exe] -> [2007.05.11
04:06:38 | 000,341,616 | ---- | M | MD5 =
80660C611B596FFE8AF4074B31AA6FB7] (Adobe Systems Incorporated)
bckgzm.exe -> C:\Programme\MSN Gaming Zone\Windows\bckgzm.exe
[C:\Programme\MSN Gaming Zone\Windows\bckgzm.exe] -> [2004.08.04
16:00:00 | 000,042,577 | ---- | M | MD5 =
201CA5901895B439557C945A73F213FD] (Microsoft Corporation)
ccleaner.exe -> C:\Programme\CCleaner\CCleaner.exe
[C:\Programme\CCleaner\ccleaner.exe] -> [2010.06.23 23:07:14 |
001,699,128 | ---- | M | MD5 = 33EF7A3E3B2004E9A225AF3D98D5BC21]
(Piriform Ltd)
chkrzm.exe -> C:\Programme\MSN Gaming Zone\Windows\chkrzm.exe
[C:\Programme\MSN Gaming Zone\Windows\chkrzm.exe] -> [2004.08.04
16:00:00 | 000,042,575 | ---- | M | MD5 =
5CB19E77D8D7EDE3F803B52D3C8CDE16] (Microsoft Corporation)
CloneCD.exe -> C:\Programme\SlySoft\CloneCD\CloneCD.exe
[C:\Programme\SlySoft\CloneCD\CloneCD.exe] -> [2007.10.28 16:57:08 |
001,420,288 | ---- | M | MD5 = D13FB5D4CC4C38A7EBBFA49D7FF6F946]
(SlySoft, Inc.)
CloneCDTray.exe -> C:\Programme\SlySoft\CloneCD\CloneCDTray.exe
[C:\Programme\SlySoft\CloneCD\CloneCDTray.exe] -> [2006.09.28 21:21:04 |
000,057,344 | ---- | M | MD5 = D7779335B0EBC0A7B9C7D0E1105EA078]
(SlySoft, Inc.)
CONF.EXE -> C:\Programme\NetMeeting\conf.exe
[C:\Programme\NetMeeting\conf.exe] -> [2008.04.14 04:22:39 | 001,040,384
| ---- | M | MD5 = D52FA0554CC9A767299710BBE7454A35] (Microsoft Corporation)
CT4IM.exe -> C:\Programme\Creative\Creative Live! Cam\Live! Cam
Avatar\CT4IM.exe [C:\Programme\Creative\Creative Live! Cam\Live! Cam
Avatar\CT4IM.exe] -> [2007.04.11 16:11:20 | 000,917,504 | ---- | M | MD5
= E1A6AFFE6FCE75991AB9F7368C086420] ()
CtAfxApp.exe -> C:\Programme\Creative Live! Cam\AudioFX\CtAfxApp.exe
[C:\Programme\Creative Live! Cam\AudioFX\CtAfxApp.exe] -> [2006.08.15
03:00:02 | 000,024,576 | ---- | M | MD5 =
4DF738E0E559834185AB0DC44D9FD9CF] (Creative Technology Ltd.)
CTIEMain.exe -> C:\Programme\Creative\Creative Live! Cam\Live! Cam
Avatar Creator\CT Program\CTIEMain.exe [C:\Programme\Creative\Creative
Live! Cam\Live! Cam Avatar Creator\CT Program\CTIEMain.exe] ->
[2007.05.17 21:34:40 | 000,200,822 | ---- | M | MD5 =
674E3D3514A737B94B4386684F2A3673] (Reallusion Inc.)
DellWMgr.exe -> C:\Programme\Dell\Dell Webcam Manager\DellWMgr.exe
[C:\Programme\Dell\Dell Webcam Manager\DellWMgr.exe] -> [2007.07.27
18:43:34 | 000,118,784 | ---- | M | MD5 =
DAC9B43BBFA0359E252DDB0CB91DEA6D] (Creative Technology Ltd.)
dialer.exe -> C:\Programme\Windows NT\dialer.exe [C:\Programme\Windows
NT\dialer.exe] -> [2008.04.14 04:22:42 | 000,545,280 | ---- | M | MD5 =
32540B63C37A6592E0FEB8AE598154A7] (Microsoft Corporation)
DLG.exe -> C:\Programme\Digital Line Detect\DLG.exe
[C:\Programme\Digital Line Detect\DLG.exe] -> [2006.11.03 20:02:14 |
000,050,688 | ---- | M | MD5 = F03FFC962E18F36A922E61F96BE09925]
(Avanquest Software )
DModem.exe -> C:\Programme\Modem Diagnostic Tool\DModem.exe
[C:\PROGRA~1\MODEMD~1\DModem.exe] -> [2007.01.19 15:46:38 | 000,374,368
| ---- | M | MD5 = 47A2CF06EF41723E8C7C01AE899F2150] (Conexant Systems,
inc.)
DrgToDsc.exe -> C:\Programme\Roxio\Drag-to-Disc\DrgToDsc.exe
[C:\Programme\Roxio\Drag-to-Disc\DrgToDsc.exe] -> [2006.08.17 11:00:00 |
001,116,920 | ---- | M | MD5 = BD57A6AFA05DF87BCAE9BB11FB0C4DDE] (Roxio)
Eq2001.exe -> C:\Programme\Midas Interactive\Equestriad 2001\eq2001.exe
[C:\Programme\Midas Interactive\Equestriad 2001\Eq2001.exe] ->
[2000.11.11 01:27:38 | 000,450,560 | ---- | M | MD5 =
7CF797FEE257B53EA26CB667E8CB07EC] (Tantalus)
excel.exe -> C:\Programme\Microsoft Office\Office12\EXCEL.EXE
[C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE] -> [2006.10.27 15:07:36 |
017,891,112 | ---- | M | MD5 = 0187BDAFBAFAF967BB91B4F2D8E33BC8]
(Microsoft Corporation)
EyeCatcherEx.dll -> C:\Programme\Creative Live!
Cam\VideoFX\EyeCatcherEx.dll [C:\Programme\Creative Live!
Cam\VideoFX\EyeCatcherEx.dll] -> [2007.07.26 21:08:00 | 000,425,984 |
---- | M | MD5 = 27FAAE79F3094F2E4B4021A1EEDE76BA] ()
firefox.exe -> C:\Programme\Mozilla Firefox\firefox.exe
[C:\Programme\Mozilla Firefox\firefox.exe] -> [2010.06.26 10:43:35 |
000,910,296 | ---- | M | MD5 = 8FC4306F0FFAA592BBA29F9273293D22]
(Mozilla Corporation)
FreeDoko.exe -> C:\spiele\FreeDoko\FreeDoko.exe
[C:\Spiele\FreeDoko\FreeDoko.exe] -> [2008.10.26 14:07:24 | 006,908,315
| ---- | M | MD5 = F5F7C2985AE137AE1468570779666C0E] ()
gimp-2.6.exe -> C:\Programme\Gimp-2.0\bin\gimp-2.6.exe
[C:\Programme\Gimp-2.0\bin\gimp-2.6.exe] -> [2008.10.01 18:53:30 |
004,608,568 | ---- | M | MD5 = 80BC23519D823D7E9B664B20FB86C2E3] ()
HELPCTR.EXE -> C:\WINDOWS\pchealth\helpctr\binaries\helpctr.exe
[C:\WINDOWS\PCHealth\HelpCtr\Binaries\HelpCtr.exe] -> [2008.04.14
04:22:47 | 000,769,024 | ---- | M | MD5 =
B63C804F5777FB0694D083F321ED6071] (Microsoft Corporation)
hrtzzm.exe -> C:\Programme\MSN Gaming Zone\Windows\hrtzzm.exe
[C:\Programme\MSN Gaming Zone\Windows\hrtzzm.exe] -> [2004.08.04
16:00:00 | 000,042,573 | ---- | M | MD5 =
3889F32864A1BCB40B52BAB8DAE7CD79] (Microsoft Corporation)
hypertrm.exe -> C:\Programme\Windows NT\hypertrm.exe
["C:\Programme\Windows NT\hypertrm.exe"] -> [2004.08.04 16:00:00 |
000,028,160 | ---- | M | MD5 = 8430D122A2889AEF9F2783B70A1312F0]
(Hilgraeve, Inc.)
ICQ.exe -> C:\Programme\ICQ7.2\ICQ.exe [C:\Programme\ICQ7.2\ICQ.exe] ->
[2010.07.05 14:42:02 | 000,133,368 | ---- | M | MD5 =
5C2F10972BECA53D9FBE9F44CD567269] (ICQ, LLC.)
ICWCONN1.EXE -> C:\Programme\Internet Explorer\Connection
Wizard\ICWCONN1.EXE ["C:\Programme\Internet Explorer\Connection
Wizard\ICWCONN1.EXE"] -> [2008.04.14 04:22:48 | 000,218,624 | ---- | M |
MD5 = 2E7A34FE32391BE7E355CF2112CBFDA2] (Microsoft Corporation)
ICWCONN2.EXE -> C:\Programme\Internet Explorer\Connection
Wizard\ICWCONN2.EXE ["C:\Programme\Internet Explorer\Connection
Wizard\ICWCONN2.EXE"] -> [2008.04.14 04:22:48 | 000,086,016 | ---- | M |
MD5 = BF8908D9736640CD2B568C360AABAAAD] (Microsoft Corporation)
INETWIZ.EXE -> C:\Programme\Internet Explorer\Connection
Wizard\INETWIZ.EXE ["C:\Programme\Internet Explorer\Connection
Wizard\INETWIZ.EXE"] -> [2008.04.14 04:22:49 | 000,020,480 | ---- | M |
MD5 = B0C09CCBD188660FBEC6780638F7D430] (Microsoft Corporation)
install.exe -> Reg Error: Value error. [Reg Error: Value error.] -> File
not found
ISIGNUP.EXE -> C:\Programme\Internet Explorer\Connection
Wizard\ISIGNUP.EXE ["C:\Programme\Internet Explorer\Connection
Wizard\ISIGNUP.EXE"] -> [2004.08.04 16:00:00 | 000,016,384 | ---- | M |
MD5 = F692F7AAA0A5C08D7C86E9EB799D4FE8] (Microsoft Corporation)
javaws.exe -> C:\Programme\Java\jre1.6.0_07\bin\javaws.exe
[C:\Programme\Java\jre1.6.0_07\bin\javaws.exe] -> [2008.06.10 02:32:34 |
000,139,264 | ---- | M | MD5 = 3106718BBD9FF261C061AF1D86B5C56C] (Sun
Microsystems, Inc.)
LiveCamDe.exe -> C:\Programme\Dell\Dell Webcam Center\LiveCamDe.exe
[C:\Programme\Dell\Dell Webcam Center\LiveCamDe.exe] -> [2007.07.19
13:04:26 | 000,303,211 | ---- | M | MD5 =
E8BD16191FCCD3AAF7CC8F8E3E6E0E36] (Creative Technology Ltd)
mantispm.exe -> C:\Programme\Zone
Labs\ZoneAlarm\MailFrontier\mantispm.exe
[C:\PROGRA~1\ZONELA~1\ZONEAL~1\MAILFR~1\mantispm.exe] -> [2007.05.11
08:50:24 | 000,804,376 | ---- | M | MD5 =
45B259E816083E9F6616BF8885B817C3] ( )
mbam.exe -> C:\Programme\Malwarebytes' Anti-Malware\mbam.exe
[C:\Programme\Malwarebytes' Anti-Malware\mbam.exe] -> [2010.04.29
12:19:18 | 001,090,952 | ---- | M | MD5 =
47EA3CF0F509480554A058C6D7641ED0] (Malwarebytes Corporation)
MDirect.exe -> C:\Programme\Dell\MediaDirect\MDirect.exe
[C:\Programme\Dell\MediaDirect\MDirect.exe] -> [2007.04.16 18:10:26 |
000,040,960 | ---- | M | MD5 = 0D6340BE0D39C430BF08867EBB7EEBB5]
(CyberLink Corp.)
MediaCapture9.exe -> C:\Programme\Roxio\Media Import 9\MediaCapture9.exe
[C:\Programme\Roxio\Media Import 9\MediaCapture9.exe] -> [2006.09.21
03:21:10 | 000,339,968 | ---- | M | MD5 =
151F8C8049D881757A92E41AD0463AED] (Sonic Solutions)
MFTBOX.EXE -> C:\Programme\Canon\MF Toolbox Ver4.7\MfTBox.exe
[C:\Programme\Canon\MF Toolbox Ver4.7\MFTBOX.EXE] -> [2004.11.12
13:15:04 | 000,548,864 | ---- | M | MD5 =
F081A2A9A32D918CFCD5D3A1EFF1028D] (CANON INC.)
migwiz.exe -> C:\WINDOWS\system32\usmt\migwiz.exe
[%SystemRoot%\system32\usmt\migwiz.exe] -> [2008.04.14 04:22:51 |
000,252,416 | ---- | M | MD5 = A85632ECE7174A730217BEA3B18FAE76]
(Microsoft Corporation)
MlfHook.dll -> C:\Programme\Zone Labs\ZoneAlarm\MailFrontier\MlfHook.dll
[C:\PROGRA~1\ZONELA~1\ZONEAL~1\MAILFR~1\MlfHook.dll] -> [2007.05.11
08:50:26 | 000,012,312 | ---- | M | MD5 =
773327620B9021D2516809295EC73D7F] ()
MlfOE.dll -> C:\Programme\Zone Labs\ZoneAlarm\MailFrontier\MlfOE.dll
[C:\PROGRA~1\ZONELA~1\ZONEAL~1\MAILFR~1\MlfOE.dll] -> [2007.05.11
08:50:56 | 000,685,592 | ---- | M | MD5 =
673F35A1B0D0F8D648398E19A86E3DDA] ( )
mlfoshim.dll -> C:\Programme\Zone
Labs\ZoneAlarm\MailFrontier\mlfoshim.dll
[C:\PROGRA~1\ZONELA~1\ZONEAL~1\MAILFR~1\mlfoshim.dll] -> [2007.05.11
08:50:40 | 000,726,552 | ---- | M | MD5 =
72D1B970A00004D05E65183D622A96F3] ( )
moviemk.exe -> C:\Programme\Movie Maker\moviemk.exe [C:\Programme\Movie
Maker\moviemk.exe] -> [2009.10.23 17:28:37 | 003,558,912 | ---- | M |
MD5 = E002A7E05185BD7FC7646CD229311B22] (Microsoft Corporation)
mplayer2.exe -> C:\Programme\Windows Media Player\mplayer2.exe
["C:\Programme\Windows Media Player\mplayer2.exe"] -> [2008.04.14
04:22:53 | 000,004,639 | ---- | M | MD5 =
74454AD03540B9E8B9C39563A4F10FB7] (Microsoft Corporation)
MSACCESS.EXE -> C:\Programme\Microsoft Office\Office12\MSACCESS.EXE
[C:\PROGRA~1\MICROS~3\Office12\MSACCESS.EXE] -> [2006.10.27 15:01:34 |
010,371,880 | ---- | M | MD5 = 68F21BF71D2AFF8D9AD6EC9604E97AC0]
(Microsoft Corporation)
MSCONFIG.EXE -> C:\WINDOWS\pchealth\helpctr\binaries\msconfig.exe
[C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe] -> [2008.04.14
04:22:53 | 000,172,544 | ---- | M | MD5 =
07224089294758E956FA1DBCBF51B801] (Microsoft Corporation)
msimn.exe -> C:\Programme\Outlook Express\msimn.exe
[%ProgramFiles%\Outlook Express\msimn.exe] -> [2008.04.14 04:22:53 |
000,060,416 | ---- | M | MD5 = 426DC783E4E718B9F38A4C31436154FA]
(Microsoft Corporation)
msinfo32.exe -> C:\Programme\Gemeinsame Dateien\Microsoft
Shared\MSInfo\msinfo32.exe [C:\Programme\Gemeinsame Dateien\Microsoft
Shared\MSInfo\MSInfo32.exe] -> [2004.08.04 16:00:00 | 000,040,448 | ----
| M | MD5 = 7A4FB4C5ABEB89628D69AEC1BFD68449] (Microsoft Corporation)
MsoHtmEd.exe -> Reg Error: Value error. [Reg Error: Value error.] ->
File not found
msoxmled.exe -> C:\Programme\Gemeinsame Dateien\Microsoft
Shared\OFFICE12\MSOXMLED.EXE [C:\Programme\Gemeinsame Dateien\Microsoft
Shared\OFFICE12\MSOXMLED.EXE] -> [2006.10.26 21:41:50 | 000,059,152 |
---- | M | MD5 = D62AF8D56065619E3189563099185C45] (Microsoft Corporation)
msworks.exe -> C:\Programme\Microsoft Works\MSWorks.exe
[C:\Programme\Microsoft Works\msworks.exe] -> [2006.06.02 00:46:22 |
000,565,248 | ---- | M | MD5 = 4209E07DCF7AB30B009B35645395192A]
(Microsoft® Corporation)
MyDVD9.exe -> C:\Programme\Roxio\VideoUI 9\MyDVD9.exe
[C:\Programme\Roxio\VideoUI 9\MyDVD9.exe] -> [2006.11.05 14:01:58 |
000,229,376 | ---- | M | MD5 = 7110F035EA40C8733763A1CEFA76649E] ()
netwaiting.exe -> C:\Programme\NetWaiting\NetWaiting.exe
[C:\Programme\NetWaiting\netwaiting.exe] -> [2007.01.08 15:48:58 |
000,026,152 | ---- | M | MD5 = 0B845CF1C6F98729DB07C4DBD6535AA6] (BVRP)
ois.exe -> C:\Programme\Microsoft Office\Office12\OIS.EXE
[C:\PROGRA~1\MICROS~3\Office12\OIS.EXE] -> [2006.10.26 20:00:08 |
000,274,744 | ---- | M | MD5 = FC3396B88F31636817D31F592A0DA848]
(Microsoft Corporation)
Origin81.exe -> C:\Programme\OriginLab\Origin81\Origin81.exe
[C:\Programme\OriginLab\Origin81\Origin81.exe] -> [2010.03.04 13:41:52 |
000,434,176 | ---- | M | MD5 = CCFC8F67E0E389E8D2663484AFF61231]
(OriginLab Corporation)
pbrush.exe -> C:\WINDOWS\system32\mspaint.exe
[%SystemRoot%\system32\mspaint.exe] -> [2009.12.17 09:40:01 |
000,346,624 | ---- | M | MD5 = 8B9D6800D0CAC42132CD1573A13CFE7B]
(Microsoft Corporation)
pinball.exe -> C:\Programme\Windows NT\Pinball\pinball.exe
[C:\Programme\Windows NT\Pinball\pinball.exe] -> [2008.04.14 04:22:57 |
000,282,624 | ---- | M | MD5 = 97738A3B0AC3CD5C52BB350CBEEC2F23]
(Cinematronics)
powerpnt.exe -> C:\Programme\Microsoft Office\Office12\POWERPNT.EXE
[C:\PROGRA~1\MICROS~3\Office12\POWERPNT.EXE] -> [2006.10.27 15:04:06 |
000,465,200 | ---- | M | MD5 = DC53BA349C9284775893B5377E860F2E]
(Microsoft Corporation)
RegCloneCD -> C:\Programme\SlySoft\CloneCD\RegCloneCD.exe
[C:\Programme\SlySoft\CloneCD\RegCloneCD.exe] -> [2007.05.21 21:24:11 |
000,089,288 | ---- | M | MD5 = 7FDDDB5A640C0AC15E64BBC1A00AA652]
(SlySoft, Inc.)
Roxio_Central33.exe -> C:\Programme\Gemeinsame Dateien\Roxio
Shared\9.0\Roxio Central33\Main\Roxio_Central33.exe
[C:\Programme\Gemeinsame Dateien\Roxio Shared\9.0\Roxio
Central33\Main\Roxio_Central33.exe] -> [2006.11.06 05:30:00 |
002,367,488 | ---- | M | MD5 = F354669460AF1397B7E54B374023655C] ()
RoxMediaDB9.exe -> C:\Programme\Gemeinsame Dateien\Roxio
Shared\9.0\SharedCOM\RoxMediaDB9.exe [C:\Programme\Gemeinsame
Dateien\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe] -> [2006.11.05
13:15:12 | 000,880,640 | ---- | M | MD5 =
EBCDE8B48FADC6479D96A56D0A432160] (Sonic Solutions)
RoxWatch9.exe -> C:\Programme\Gemeinsame Dateien\Roxio
Shared\9.0\SharedCOM\RoxWatch9.exe [C:\Programme\Gemeinsame
Dateien\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe] -> [2006.11.05
13:13:00 | 000,159,744 | ---- | M | MD5 =
AB2B1DE1C8F31EFCE2384B14B3DC4260] (Sonic Solutions)
RoxWatchTray9.exe -> C:\Programme\Gemeinsame Dateien\Roxio
Shared\9.0\SharedCOM\RoxWatchTray9.exe [C:\Programme\Gemeinsame
Dateien\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe] -> [2006.11.05
13:22:16 | 000,221,184 | ---- | M | MD5 =
1AAD451CCBECE62987591B35AE8037A8] (Sonic Solutions)
RoxWizardLauncher9.exe -> C:\Programme\Gemeinsame Dateien\Roxio
Shared\9.0\SharedCOM\RoxWizardLauncher9.exe [C:\Programme\Gemeinsame
Dateien\Roxio Shared\9.0\SharedCom\RoxWizardLauncher9.exe] ->
[2006.11.05 13:22:02 | 000,126,976 | ---- | M | MD5 =
C32348D1C0BCAFD15F73EF8B7DC89CAD] (Sonic Solutions)
rvsezm.exe -> C:\Programme\MSN Gaming Zone\Windows\Rvsezm.exe
[C:\Programme\MSN Gaming Zone\Windows\rvsezm.exe] -> [2004.08.04
16:00:00 | 000,042,574 | ---- | M | MD5 =
155494D43CEDCCF40760ACB148A303E3] (Microsoft Corporation)
sbase.exe -> C:\Programme\OpenOffice.org 3\program\sbase.exe
[C:\Programme\OpenOffice.org 3\program\sbase.exe] -> [2008.09.19
19:32:44 | 000,304,128 | ---- | M | MD5 =
C0C1A4E70004BA32BB402C1DAE477794] ()
scalc.exe -> C:\Programme\OpenOffice.org 3\program\scalc.exe
[C:\Programme\OpenOffice.org 3\program\scalc.exe] -> [2008.09.19
19:32:32 | 000,304,128 | ---- | M | MD5 =
53702181EC97172030B4D822404A7C85] ()
sdraw.exe -> C:\Programme\OpenOffice.org 3\program\sdraw.exe
[C:\Programme\OpenOffice.org 3\program\sdraw.exe] -> [2008.09.19
19:32:34 | 000,304,128 | ---- | M | MD5 =
3BA7B20B2C3A01C2C76ED53220EA832A] ()
setup.exe -> Reg Error: Value error. [Reg Error: Value error.] -> File
not found
shvlzm.exe -> C:\Programme\MSN Gaming Zone\Windows\shvlzm.exe
[C:\Programme\MSN Gaming Zone\Windows\shvlzm.exe] -> [2004.08.04
16:00:00 | 000,042,573 | ---- | M | MD5 =
0C06802AE1870C4143021803079FCC99] (Microsoft Corporation)
simpress.exe -> C:\Programme\OpenOffice.org 3\program\simpress.exe
[C:\Programme\OpenOffice.org 3\program\simpress.exe] -> [2008.09.19
19:32:38 | 000,304,128 | ---- | M | MD5 =
D08888BF6B8F91C9336013EB9D7847A7] ()
Sims2.exe -> C:\spiele\EA GAMES\Die Sims 2\TSBin\Sims2.exe [C:\Spiele\EA
GAMES\Die Sims 2\TSBin\Sims2.exe] -> [2005.01.20 14:04:41 | 015,204,977
| ---- | M | MD5 = 755EF789B46C3E23EAF41801136F5611] (Maxis, a division
of Electronic Arts Inc.)
Sims2EP1.exe -> C:\spiele\EA GAMES\Die Sims 2 Wilde
Campus-Jahre\TSBin\Sims2EP1.exe [C:\Spiele\EA GAMES\Die Sims 2 Wilde
Campus-Jahre\TSBin\Sims2EP1.exe] -> [2005.02.15 06:43:08 | 015,757,472 |
---- | M | MD5 = 6BC08714840BE2B7BD686A9BDA128D8F] (Maxis, a division of
Electronic Arts Inc.)
Sims2EP2.exe -> C:\Programme\EA GAMES\Die Sims 2
Nightlife\TSBin\Sims2EP2.exe [C:\Programme\EA GAMES\Die Sims 2
Nightlife\TSBin\Sims2EP2.exe] -> [2005.08.18 02:56:01 | 016,569,658 |
---- | M | MD5 = FADD297A17DA4E5DE6F2A98049ACFA1C] (Maxis, a division of
Electronic Arts Inc.)
Sims2EP3.exe -> C:\spiele\EA GAMES\Die Sims 2 Open For
Business\TSBin\Sims2EP3.exe [C:\Spiele\EA GAMES\Die Sims 2 Open For
Business\TSBin\Sims2EP3.exe] -> [2006.02.07 02:40:36 | 016,760,654 |
---- | M | MD5 = 4662132AECB9D426B926E389719A7BF3] (Maxis, a division of
Electronic Arts Inc.)
Sims2EP4.exe -> C:\spiele\EA GAMES\Die Sims 2
Haustiere\TSBin\Sims2EP4.exe [C:\spiele\EA GAMES\Die Sims 2
Haustiere\TSBin\Sims2EP4.exe] -> [2006.09.09 10:07:17 | 017,565,619 |
---- | M | MD5 = 611962750D0980603D8210D44A8328E1] (Maxis, a division of
Electronic Arts Inc.)
Sims2SP2.exe -> C:\spiele\EA GAMES\Die Sims 2
Glamour-Accessoires\TSBin\Sims2SP2.exe
[C:\spiele\EAGAME~1\DIESIM~4\TSBin\Sims2SP2.exe] -> [2006.07.21 15:10:38
| 016,768,756 | ---- | M | MD5 = AD61848537EDF36D541A225EE88CBAE9]
(Maxis, a division of Electronic Arts Inc.)
smath.exe -> C:\Programme\OpenOffice.org 3\program\smath.exe
[C:\Programme\OpenOffice.org 3\program\smath.exe] -> [2008.09.19
19:32:40 | 000,304,128 | ---- | M | MD5 =
3279DC2F2DA182A22EC5FFD28A6FA155] ()
soffice.exe -> C:\Programme\OpenOffice.org 3\program\soffice.exe
[C:\Programme\OpenOffice.org 3\program\soffice.exe] -> [2008.09.30
17:49:34 | 007,424,000 | ---- | M | MD5 =
D9F39EB720E2E171AD1D1CE0BE1DEF2B] (OpenOffice.org)
StartFX.exe -> C:\Programme\Creative Live! Cam\VideoFX\StartFX.exe
[C:\Programme\Creative Live! Cam\VideoFX\StartFX.exe] -> [2007.07.27
11:23:12 | 000,020,480 | ---- | M | MD5 =
28A19E2D50CBCCFF375720FB14961A26] (Creative Technology Ltd.)
STAX.exe -> C:\Programme\Roxio\Express Labeler 2\stax.exe
[C:\Programme\Roxio\Express Labeler 2\stax.exe] -> [2006.09.14 16:54:36
| 001,175,552 | ---- | M | MD5 = 30CA022F4F5EADFFD7CA00529D580A50]
(MicroVision Development, Inc.)
swriter.exe -> C:\Programme\OpenOffice.org 3\program\swriter.exe
[C:\Programme\OpenOffice.org 3\program\swriter.exe] -> [2008.09.19
19:32:28 | 000,304,128 | ---- | M | MD5 =
4A63AE435D1D267852B6961D89719DA4] ()
table30.exe -> Reg Error: Value error. [Reg Error: Value error.] -> File
not found
Tafelwerk.exe -> C:\Programme\Cornelsen\Das große Tafelwerk
interaktiv\Tafelwerk.exe [C:\Programme\Cornelsen\Das große Tafelwerk
interaktiv\Tafelwerk.exe] -> [2003.04.22 15:26:18 | 000,770,560 | ---- |
M | MD5 = 6A57153F59C397CA694E15487F28713B] (Cornelsen Verlag / VWV)
TextPad.exe -> C:\Programme\TextPad 5\TextPad.exe [C:\Programme\TextPad
5\TextPad.exe] -> [2008.03.10 13:55:50 | 003,005,952 | ---- | M | MD5 =
E7F7A64E1CB63AAA0312BF09ED19F1C1] (Helios Software Solutions)
thunderbird.exe -> C:\Programme\Mozilla Thunderbird\thunderbird.exe
[C:\Programme\Mozilla Thunderbird\thunderbird.exe] -> [2010.07.14
13:55:19 | 012,732,080 | ---- | M | MD5 =
C620B86D3607752BD74463186A1426FB] (Mozilla Messaging)
unopkg.exe -> C:\Programme\OpenOffice.org 3\program\unopkg.exe
[C:\Programme\OpenOffice.org 3\program\unopkg.exe] -> [2008.09.19
19:40:46 | 000,010,752 | ---- | M | MD5 =
258BED2FB2542B0C9930D1FE89AF4D05] ()
VCGProxyFileManager9.exe -> C:\Programme\Roxio\VideoCore
9\VCGProxyFileManager9.exe [C:\Programme\Roxio\VideoCore
9\VCGProxyFileManager9.exe] -> [2006.09.21 01:20:42 | 000,098,304 | ----
| M | MD5 = 203779C176DE443A0A9F80782291FE95] (Sonic Solutions)
VideoWave9.exe -> C:\Programme\Roxio\VideoUI 9\VideoWave9.exe
[C:\Programme\Roxio\VideoUI 9\VideoWave9.exe] -> [2006.11.05 14:03:50 |
001,347,584 | ---- | M | MD5 = FC4B230E4BD82A7275B534C4CE34571A] (Sonic
Solutions)
vpngui.exe -> Reg Error: Value error. [Reg Error: Value error.] -> File
not found
wab.exe -> C:\Programme\Outlook Express\wab.exe [%ProgramFiles%\Outlook
Express\wab.exe] -> [2008.04.14 04:23:04 | 000,046,080 | ---- | M | MD5
= 72AD946DD359A5E3C69B90205007230B] (Microsoft Corporation)
wabmig.exe -> C:\Programme\Outlook Express\wabmig.exe
[%ProgramFiles%\Outlook Express\wabmig.exe] -> [2008.04.14 04:23:04 |
000,030,208 | ---- | M | MD5 = 06526C5E456F78B90593CEC8D4C955E8]
(Microsoft Corporation)
winnt32.exe -> Reg Error: Value error. [Reg Error: Value error.] -> File
not found
WinRAR.exe -> C:\Programme\WinRAR\WinRAR.exe
[C:\Programme\WinRAR\WinRAR.exe] -> [2007.09.20 20:34:22 | 000,936,960 |
---- | M | MD5 = 72A47494EEB5936657BED3B036391209] ()
Winword.exe -> C:\Programme\Microsoft Office\Office12\WINWORD.EXE
[C:\PROGRA~1\MICROS~3\Office12\WINWORD.EXE] -> [2006.10.27 15:23:04 |
000,347,432 | ---- | M | MD5 = CEAA5817A65E914AA178B28F12359A46]
(Microsoft Corporation)
WKPLMSTP.EXE -> C:\Programme\Microsoft Works\wkplmstp.exe
[C:\Programme\Microsoft Works\wkplmstp.exe] -> [2006.06.02 00:47:16 |
000,081,920 | ---- | M | MD5 = 9AB6D938912EF6A5963E701665246BE7]
(Microsoft Corporation)
WKSAB.EXE -> C:\Programme\Microsoft Works\wksab.exe
[C:\Programme\Microsoft Works\WKSAB.exe] -> [2006.06.02 00:47:20 |
000,009,728 | ---- | M | MD5 = 809D8EE1480085D2AF9C2D3A058397BC]
(Microsoft® Corporation)
wkscal.exe -> C:\Programme\Gemeinsame Dateien\Microsoft Shared\Works
Shared\WksCal.exe [C:\Programme\Gemeinsame Dateien\Microsoft
Shared\Works Shared\wkscal.exe] -> [2006.06.02 00:48:26 | 000,114,688 |
---- | M | MD5 = 1BDED31DFDE2D4B0D833C6D06B1AF71E] (Microsoft® Corporation)
wksdb.exe -> C:\Programme\Microsoft Works\wksdb.exe
[C:\Programme\Microsoft Works\wksdb.exe] -> [2006.06.02 00:47:20 |
000,147,456 | ---- | M | MD5 = C37571F7C79C3972D641804F1DF7C0F5]
(Microsoft® Corporation)
WKSSB.EXE -> C:\Programme\Microsoft Works\WksSb.exe
[C:\Programme\Microsoft Works\WKSSB.exe] -> [2006.06.02 00:47:06 |
000,749,568 | ---- | M | MD5 = FE01A9088D1E62B0A4A31084CC6E43FC]
(Microsoft® Corporation)
wksss.exe -> C:\Programme\Microsoft Works\wksss.exe
[C:\Programme\Microsoft Works\wksss.exe] -> [2006.06.02 00:47:20 |
000,122,880 | ---- | M | MD5 = CE56C2B2D0EE4669F2C193147A83E6B7]
(Microsoft® Corporation)
wkswp.exe -> C:\Programme\Microsoft Works\WksWP.exe
[C:\Programme\Microsoft Works\wkswp.exe] -> [2006.06.02 00:47:06 |
000,126,976 | ---- | M | MD5 = 8A63E2C874514DE907AA47D629C6F48D]
(Microsoft® Corporation)
WKWCESTP.EXE -> C:\Programme\Microsoft Works\wkwcestp.exe
[C:\Programme\Microsoft Works\wkwcestp.exe] -> [2006.06.02 00:47:20 |
000,077,824 | ---- | M | MD5 = 60C51F1D270123998A457B0C1C38FAD5] ()
wmplayer.exe -> C:\Programme\Windows Media Player\wmplayer.exe
[C:\Programme\Windows Media Player\wmplayer.exe] -> [2008.04.14 04:23:06
| 000,073,728 | ---- | M | MD5 = 5C27B85537C32C899B4DF07769FAC023]
(Microsoft Corporation)
WORDPAD.EXE -> C:\Programme\Windows NT\Zubehör\WORDPAD.EXE
["%ProgramFiles%\Windows NT\Zubehör\WORDPAD.EXE"] -> [2008.04.21
23:13:26 | 000,217,600 | ---- | M | MD5 =
A03F64E664CDD7D51F75321FF32D7B92] (Microsoft Corporation)
WRITE.EXE -> C:\Programme\Windows NT\Zubehör\WORDPAD.EXE
["%ProgramFiles%\Windows NT\Zubehör\WORDPAD.EXE"] -> [2008.04.21
23:13:26 | 000,217,600 | ---- | M | MD5 =
A03F64E664CDD7D51F75321FF32D7B92] (Microsoft Corporation)
< Approved Shell Extensions [HKEY_LOCAL_MACHINE\] > ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell
Extensions\Approved ->
"{087B3AE3-E237-4467-B8DB-5A38AB959AC9}" [HKLM] ->
C:\Programme\OpenOffice.org 3\Basis\program\shlxthdl\shlxthdl.dll
[OpenOffice.org Infotip Handler] -> [2008.08.28 15:56:30 | 000,357,888 |
---- | M | MD5 = 3F12BDFC669499DAE6B0FBA152C94390] (Sun Microsystems, Inc.)
"{1CDB2949-8F65-4355-8456-263E7C208A5D}" [HKLM] ->
C:\WINDOWS\system32\nvshell.dll [Desktop Explorer] -> [2007.06.06
17:35:02 | 000,466,944 | ---- | M | MD5 =
76DD76CAAEA90E5C12B32D2A3484496C] ()
"{1E9B04FB-F9E5-4718-997B-B8DA88302A47}" [HKLM] ->
C:\WINDOWS\system32\nvshell.dll [Desktop Explorer Menu] -> [2007.06.06
17:35:02 | 000,466,944 | ---- | M | MD5 =
76DD76CAAEA90E5C12B32D2A3484496C] ()
"{1E9B04FB-F9E5-4718-997B-B8DA88302A48}" [HKLM] ->
C:\WINDOWS\system32\nvshell.dll [nView Desktop Context Menu] ->
[2007.06.06 17:35:02 | 000,466,944 | ---- | M | MD5 =
76DD76CAAEA90E5C12B32D2A3484496C] ()
"{2206CDB2-19C1-11D1-89E0-00C04FD7A829}" [HKLM] ->
C:\Programme\Gemeinsame Dateien\System\Ole DB\oledb32.dll [Microsoft
Datenverknüpfung] -> [2008.04.14 04:22:23 | 000,487,424 | ---- | M | MD5
= 56330321BEF8767D8E952886EFD854E0] (Microsoft Corporation)
"{2F603045-309F-11CF-9774-0020AFD0CFF6}" [HKLM] ->
C:\Programme\Synaptics\SynTP\SynTPCpl.dll [Synaptics Control Panel] ->
[2007.07.10 00:21:56 | 000,897,024 | ---- | M | MD5 =
BF3D62E50A480B14E1C12B50159CC194] (Synaptics, Inc.)
"{32714800-2E5F-11d0-8B85-00AA0044F941}" [HKLM] -> C:\Programme\Outlook
Express\wabfind.dll [&Nach Personen...] -> [2008.04.14 04:22:32 |
000,032,768 | ---- | M | MD5 = 77CD31AAC4A19DC893E613893DB9AA91]
(Microsoft Corporation)
"{3B092F0C-7696-40E3-A80F-68D74DA84210}" [HKLM] ->
C:\Programme\OpenOffice.org 3\Basis\program\shlxthdl\shlxthdl.dll
[OpenOffice.org Thumbnail Viewer] -> [2008.08.28 15:56:30 | 000,357,888
| ---- | M | MD5 = 3F12BDFC669499DAE6B0FBA152C94390] (Sun Microsystems,
Inc.)
"{42042206-2D85-11D3-8CFF-005004838597}" [HKLM] ->
C:\Programme\Microsoft Office\Office12\MSOHEVI.DLL [Microsoft Office
HTML Icon Handler] -> [2006.10.26 20:12:30 | 000,061,240 | ---- | M |
MD5 = 63368D3E65AACE7D26F69D8B29384243] (Microsoft Corporation)
"{42071714-76d4-11d1-8b24-00a0c9068ff3}" [HKLM] -> [CPL-Erweiterung für
Anzeigeverschiebung] -> File not found
"{45AC2688-0253-4ED8-97DE-B5370FA7D48A}" [HKLM] ->
C:\Programme\Avira\AntiVir Desktop\shlext.dll [Shell Extension for
Malware scanning] -> [2009.06.12 23:47:16 | 000,286,977 | ---- | M | MD5
= 318B0D2CF5470F724B217498553D36E6] (Avira GmbH)
"{5E44E225-A408-11CF-B581-008029601108}" [HKLM] ->
C:\Programme\Roxio\Drag-to-Disc\Shellex.dll [Roxio DragToDisc Shell
Extension] -> [2006.08.17 11:00:00 | 000,367,352 | ---- | M | MD5 =
3080FDE0A83B388B87DA94E10E6764BA] (Roxio)
"{63542C48-9552-494A-84F7-73AA6A7C99C1}" [HKLM] ->
C:\Programme\OpenOffice.org 3\Basis\program\shlxthdl\shlxthdl.dll
[OpenOffice.org Property Sheet Handler] -> [2008.08.28 15:56:30 |
000,357,888 | ---- | M | MD5 = 3F12BDFC669499DAE6B0FBA152C94390] (Sun
Microsystems, Inc.)
"{764BF0E1-F219-11ce-972D-00AA00A14F56}" [HKLM] -> Reg Error: Key error.
[Shellerweiterungen für die Dateikomprimierung] -> File not found
"{853FE2B1-B769-11d0-9C4E-00C04FB6C6FA}" [HKLM] -> Reg Error: Key error.
[Kontextmenü für die Verschlüsselung] -> File not found
"{88895560-9AA2-1069-930E-00AA0030EBC8}" [HKLM] ->
C:\WINDOWS\system32\hticons.dll [Erweiterung für HyperTerminal-Icons] ->
[2004.08.04 16:00:00 | 000,044,544 | ---- | M | MD5 =
A0273EDC903D503BE8747A1DB6928879] (Hilgraeve, Inc.)
"{993BE281-6695-4BA5-8A2A-7AACBFAAB69E}" [HKLM] ->
C:\Programme\Gemeinsame Dateien\Microsoft Shared\OFFICE12\msoshext.dll
[Microsoft Office Metadata Handler] -> [2006.10.26 20:13:06 |
000,932,688 | ---- | M | MD5 = CA27D8E333F8958C88909268C66D8701]
(Microsoft Corporation)
"{A70C977A-BF00-412C-90B7-034C51DA2439}" [HKLM] ->
C:\WINDOWS\system32\nvcpl.dll [NvCpl DesktopContext Class] ->
[2007.06.06 17:34:42 | 008,429,568 | ---- | M | MD5 =
8267546EDB3952890577598B2DBE6011] (NVIDIA Corporation)
"{B41DB860-8EE4-11D2-9906-E49FADC173CA}" [HKLM] ->
C:\Programme\WinRAR\RarExt.dll [WinRAR shell extension] -> [2007.09.20
20:34:58 | 000,129,024 | ---- | M | MD5 =
023707D932BA31314210E6844D33D500] ()
"{BDEADF00-C265-11D0-BCED-00A0C90AB50F}" [HKLM] ->
C:\Programme\Gemeinsame Dateien\Microsoft Shared\Web
Folders\MSONSEXT.DLL [Web Folders] -> [2006.10.26 19:49:46 | 000,970,528
| ---- | M | MD5 = 43CE38570294FFF605161343E6C334C2] (Microsoft Corporation)
"{C41662BB-1FA0-4CE0-8DC5-9B7F8279FF97}" [HKLM] ->
C:\Programme\Gemeinsame Dateien\Microsoft Shared\OFFICE12\msoshext.dll
[Microsoft Office Thumbnail Handler] -> [2006.10.26 20:13:06 |
000,932,688 | ---- | M | MD5 = CA27D8E333F8958C88909268C66D8701]
(Microsoft Corporation)
"{C52AF81D-F7A0-4AAB-8E87-F80A60CCD396}" [HKLM] ->
C:\Programme\OpenOffice.org 3\Basis\program\shlxthdl\shlxthdl.dll
[OpenOffice.org Column Handler] -> [2008.08.28 15:56:30 | 000,357,888 |
---- | M | MD5 = 3F12BDFC669499DAE6B0FBA152C94390] (Sun Microsystems, Inc.)
"{D5906221-A717-479B-9B49-CD848F9CE816}" [HKLM] ->
C:\Programme\BitZipper\BZSHLEXT.DLL [BitZipper32] -> [2009.05.24
13:31:26 | 000,123,032 | ---- | M | MD5 =
45BC3EC7A3F68DE30B4EF761155A5BE9] (Bitberry Software)
"{D9872D13-7651-4471-9EEE-F0A00218BEBB}" [HKLM] -> C:\Programme\Zone
Labs\ZoneAlarm\zlavscan.dll [Multiscan] -> [2007.12.13 20:26:58 |
000,050,664 | ---- | M | MD5 = 63BCAFE0C48D4E859E318653ACA6B555] (Zone
Labs, LLC)
"{FFB699E0-306A-11d3-8BD1-00104B6F7516}" [HKLM] ->
C:\WINDOWS\system32\nvcpl.dll [Play on my TV helper] -> [2007.06.06
17:34:42 | 008,429,568 | ---- | M | MD5 =
8267546EDB3952890577598B2DBE6011] (NVIDIA Corporation)
< Approved Shell Extensions
[HKEY_USERS\S-1-5-21-1269871099-218545957-1124453212-1005\] > ->
HKEY_USERS\S-1-5-21-1269871099-218545957-1124453212-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell
Extensions\Approved\ ->
{BDEADF00-C265-11d0-BCED-00A0C90AB50F} [HKLM] -> C:\Programme\Gemeinsame
Dateien\Microsoft Shared\Web Folders\MSONSEXT.DLL [Webordner] ->
[2006.10.26 19:49:46 | 000,970,528 | ---- | M | MD5 =
43CE38570294FFF605161343E6C334C2] (Microsoft Corporation)
< Disabled MSConfig Services [HKEY_LOCAL_MACHINE] > ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\services ->
"ALG" -> ->
"BITS" -> ->
"CCALib8" -> ->
"CiSvc" -> ->
"COMSysApp" -> ->
"dmadmin" -> ->
"dmserver" -> ->
"Dot3svc" -> ->
"DSBrokerService" -> ->
"EapHost" -> ->
"ERSvc" -> ->
"Fax" -> ->
"helpsvc" -> ->
"hkmsvc" -> ->
"HTTPFilter" -> ->
"mnmsrvc" -> ->
"MSDTC" -> ->
"Netlogon" -> ->
"RasAuto" -> ->
"RDSessMgr" -> ->
"RemoteRegistry" -> ->
"seclogon" -> ->
"SENS" -> ->
"Spooler" -> ->
"SSDPSRV" -> ->
"stisvc" -> ->
"stllssvr" -> ->
"SwPrv" -> ->
"SysmonLog" -> ->
"TermService" -> ->
"VSS" -> ->
"WmdmPmSN" -> ->
"wuauserv" -> ->
< Disabled MSConfig Folder Items [HKEY_LOCAL_MACHINE] > ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared
Tools\MSConfig\startupfolder\ ->
C:^Dokumente und Einstellungen^All
Users^Startmenü^Programme^Autostart^Digital Line Detect.lnk ->
C:\Programme\Digital Line Detect\DLG.exe -> [2006.11.03 20:02:14 |
000,050,688 | ---- | M | MD5 = F03FFC962E18F36A922E61F96BE09925]
(Avanquest Software )
C:^Dokumente und
Einstellungen^xxx^Startmenü^Programme^Autostart^OpenOffice.org 3.0.lnk
-> C:\Programme\OpenOffice.org 3\program\quickstart.exe -> [2008.09.12
18:49:52 | 000,384,000 | ---- | M | MD5 =
B2901E0C109652046ED3C210C47DA318] ()
< Disabled MSConfig Registry Items [HKEY_LOCAL_MACHINE] > ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ ->
%PROVIDERID% hkey=HKLM key=SOFTWARE\Microsoft\Windows\CurrentVersion\Run
-> -> File not found
Adobe Reader Speed Launcher hkey=HKLM
key=SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
C:\Programme\Adobe\Reader 8.0\Reader\Reader_sl.exe -> [2008.01.11
23:16:38 | 000,039,792 | ---- | M | MD5 =
8B9145D229D4E89D15ACB820D4A3A90F] (Adobe Systems Incorporated)
Broadcom Wireless Manager UI hkey=HKLM
key=SOFTWARE\Microsoft\Windows\CurrentVersion\Run -> -> File not found
CloneCDTray hkey=HKLM key=SOFTWARE\Microsoft\Windows\CurrentVersion\Run
-> C:\Programme\SlySoft\CloneCD\CloneCDTray.exe -> [2006.09.28 21:21:04
| 000,057,344 | ---- | M | MD5 = D7779335B0EBC0A7B9C7D0E1105EA078]
(SlySoft, Inc.)
CTFMON.EXE hkey=HKCU key=SOFTWARE\Microsoft\Windows\CurrentVersion\Run
-> -> File not found
DELL Webcam Manager hkey=HKLM
key=SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
C:\Programme\Dell\Dell Webcam Manager\DellWMgr.exe -> [2007.07.27
18:43:34 | 000,118,784 | ---- | M | MD5 =
DAC9B43BBFA0359E252DDB0CB91DEA6D] (Creative Technology Ltd.)
ISUSPM Startup hkey=HKLM
key=SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
c:\Programme\Gemeinsame Dateien\InstallShield\UpdateService\ISUSPM.exe
-> [2006.10.03 13:35:42 | 000,221,184 | ---- | M | MD5 =
9ABF687071C649609BF7E177062A9008] (Macrovision Corporation)
KADxMain hkey=HKLM key=SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
-> File not found
MSMSGS hkey=HKCU key=SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
C:\Programme\Messenger\msmsgs.exe -> [2008.04.14 04:22:54 | 001,695,232
| ---- | M | MD5 = E2AA953ED6A296B6BF399A783B32CCDE] (Microsoft Corporation)
NvCplDaemon hkey=HKLM key=SOFTWARE\Microsoft\Windows\CurrentVersion\Run
-> -> File not found
NVHotkey hkey=HKLM key=SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
-> File not found
NvMediaCenter hkey=HKLM
key=SOFTWARE\Microsoft\Windows\CurrentVersion\Run -> -> File not found
nwiz hkey=HKLM key=SOFTWARE\Microsoft\Windows\CurrentVersion\Run -> ->
File not found
OEM02Mon.exe hkey=HKLM key=SOFTWARE\Microsoft\Windows\CurrentVersion\Run
-> C:\WINDOWS\OEM02Mon.exe -> [2007.08.28 16:54:58 | 000,036,864 | ----
| M | MD5 = 23242FD6C7D4C61807E84FD3A79248C4] (Creative Technology Ltd.)
PCMService hkey=HKLM key=SOFTWARE\Microsoft\Windows\CurrentVersion\Run
-> C:\Programme\Dell\MediaDirect\PCMService.exe -> [2007.04.16 18:10:26
| 000,184,320 | ---- | M | MD5 = 8289C20BECBEA1348F7FF4D08F4C4F19]
(CyberLink Corp.)
RoxioDragToDisc hkey=HKLM
key=SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
C:\Programme\Roxio\Drag-to-Disc\DrgToDsc.exe -> [2006.08.17 11:00:00 |
001,116,920 | ---- | M | MD5 = BD57A6AFA05DF87BCAE9BB11FB0C4DDE] (Roxio)
SearchSettings hkey=HKLM
key=SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
C:\Programme\pdfforge Toolbar\SearchSettings.exe -> File not found
SigmatelSysTrayApp hkey=HKLM
key=SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
C:\WINDOWS\stsystra.exe -> [2007.07.10 00:03:06 | 000,405,504 | ---- | M
| MD5 = 127E7DD016305FF87B9B59189672C497] (SigmaTel, Inc.)
SunJavaUpdateSched hkey=HKLM
key=SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
C:\Programme\Java\jre1.6.0_07\bin\jusched.exe -> [2008.06.10 04:27:04 |
000,144,784 | ---- | M | MD5 = 6AB4C021FBD36DC6764924C312428D97] (Sun
Microsystems, Inc.)
SynTPEnh hkey=HKLM key=SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
C:\Programme\Synaptics\SynTP\SynTPEnh.exe -> [2007.07.10 00:21:56 |
000,851,968 | ---- | M | MD5 = 4E4B8F8E44F786FC4126D884E6AD892C]
(Synaptics, Inc.)
< Disabled MSConfig State [HKEY_LOCAL_MACHINE] > ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\state ->
"bootini" -> 2 ->
"services" -> 2 ->
"startup" -> 2 ->
"system.ini" -> 0 ->
"win.ini" -> 0 ->
< Drivers32 [HKEY_LOCAL_MACHINE] > ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows
NT\CurrentVersion\Drivers32 ->
"msacm.iac2" -> C:\WINDOWS\system32\iac25_32.ax
[C:\WINDOWS\system32\iac25_32.ax] -> [2008.04.14 04:23:07 | 000,199,680
| ---- | M | MD5 = 793600E335B7D7936FCBE9EB38BA3E0B] (Intel Corporation)
"msacm.l3acm" -> C:\WINDOWS\system32\l3codeca.acm
[C:\WINDOWS\system32\l3codeca.acm] -> [2010.01.29 16:43:35 | 000,307,260
| ---- | M | MD5 = BBD34DCBCEC28E415F634E03C0AB4DF4] (Fraunhofer
Institut Integrierte Schaltungen IIS)
"msacm.sl_anet" -> C:\WINDOWS\System32\sl_anet.acm [sl_anet.acm] ->
[2008.04.14 04:21:29 | 000,086,016 | ---- | M | MD5 =
07C878A1F49E5BD6677366664F68561D] (Sipro Lab Telecom Inc.)
"msacm.trspch" -> C:\WINDOWS\System32\tssoft32.acm [tssoft32.acm] ->
[2004.08.04 16:00:00 | 000,008,192 | ---- | M | MD5 =
E5BECBCCE3AC3E8D594FCBE9A0338DF5] (DSP GROUP, INC.)
"MSVideo8" -> C:\WINDOWS\System32\vfwwdm32.dll [VfWWDM32.dll] ->
[2008.04.14 04:22:31 | 000,054,272 | ---- | M | MD5 =
5B8DD211BBEA1410CE4D7B57BD6BB872] (Microsoft Corporation)
"vidc.cvid" -> C:\WINDOWS\System32\iccvid.dll [iccvid.dll] ->
[2008.04.14 04:22:12 | 000,080,384 | ---- | M | MD5 =
032958A69BB93CB042FECAFC7498BBDE] (Radius Inc.)
"vidc.DIVX" -> C:\WINDOWS\System32\DivX.dll [DivX.dll] -> [2009.11.14
02:47:28 | 000,696,320 | ---- | M | MD5 =
3E57706D1AD3E2FAFEBAA72EBE12939B] (DivX, Inc.)
"vidc.iv31" -> C:\WINDOWS\System32\ir32_32.dll [ir32_32.dll] ->
[2004.08.04 16:00:00 | 000,199,168 | ---- | M | MD5 =
CF159355DE2C8B4633172353CC22ED89] ()
"vidc.iv32" -> C:\WINDOWS\System32\ir32_32.dll [ir32_32.dll] ->
[2004.08.04 16:00:00 | 000,199,168 | ---- | M | MD5 =
CF159355DE2C8B4633172353CC22ED89] ()
"vidc.iv41" -> C:\WINDOWS\System32\ir41_32.ax [ir41_32.ax] ->
[2008.04.14 04:23:07 | 000,848,384 | ---- | M | MD5 =
CADC53118EA7B95D1EA7EBB068871689] (Intel Corporation)
"vidc.iv50" -> C:\WINDOWS\System32\ir50_32.dll [ir50_32.dll] ->
[2008.04.14 04:22:12 | 000,755,200 | ---- | M | MD5 =
E92343AC6AA48A062FE970FA9E5CCF23] (Intel Corporation)
"vidc.VP60" -> C:\WINDOWS\system32\vp6vfw.dll
[C:\WINDOWS\system32\vp6vfw.dll] -> [2004.08.18 10:34:07 | 000,442,368 |
R--- | M | MD5 = 4D6F38D3CDA2D0BA502BC1C499A622CF] (On2.com)
"vidc.VP61" -> C:\WINDOWS\system32\vp6vfw.dll
[C:\WINDOWS\system32\vp6vfw.dll] -> [2004.08.18 10:34:07 | 000,442,368 |
R--- | M | MD5 = 4D6F38D3CDA2D0BA502BC1C499A622CF] (On2.com)
"vidc.yv12" -> C:\WINDOWS\System32\DivX.dll [DivX.dll] -> [2009.11.14
02:47:28 | 000,696,320 | ---- | M | MD5 =
3E57706D1AD3E2FAFEBAA72EBE12939B] (DivX, Inc.)
< File Associations - Select to Repair > ->
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>\ ->
.bat [@ = batfile] -> "%1" %* ->
.cmd [@ = cmdfile] -> "%1" %* ->
.com [@ = comfile] -> "%1" %* ->
.exe [@ = exefile] -> "%1" %* ->
.html [@ = Reg Error: Value error.] -> Reg Error: Key error. -> File not
found
.pif [@ = piffile] -> "%1" %* ->
.scr [@ = scrfile] -> "%1" /S ->
< File Associations - Select to Repair > ->
HKEY_USERS\S-1-5-21-1269871099-218545957-1124453212-1005\SOFTWARE\Classes\<extension>\
->
.html [@ = FirefoxHTML] -> C:\Programme\Mozilla Firefox\firefox.exe ->
[2010.06.26 10:43:35 | 000,910,296 | ---- | M | MD5 =
8FC4306F0FFAA592BBA29F9273293D22] (Mozilla Corporation)
< HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows
NT\CurrentVersion\SvcHost > -> ->
*netsvcs* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows
NT\CurrentVersion\SvcHost\\netsvcs ->
6to4 -> -> File not found
Ias -> -> File not found
Iprip -> -> File not found
Irmon -> -> File not found
NWCWorkstation -> -> File not found
Nwsapagent -> -> File not found
WmdmPmSp -> -> File not found
*MultiFile Done* -> ->
< Protocol Filters [HKEY_LOCAL_MACHINE] > ->
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Filter\ ->
text/xml:{807563E5-5146-11D5-A672-00B0D022E945} [HKLM] ->
C:\Programme\Gemeinsame Dateien\Microsoft
Shared\OFFICE12\MSOXMLMF.DLL[Microsoft Office InfoPath XML Mime Filter]
-> [2006.10.26 21:41:48 | 000,044,344 | ---- | M | MD5 =
1264F787E46DC572FA274CA09B446E01] (Microsoft Corporation)
< Protocol Handlers [HKEY_LOCAL_MACHINE] > ->
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\ ->
ipp\0x00000001:{E1D2BF42-A96B-11d1-9C6B-0000F875AC61} [HKLM] ->
C:\Programme\Gemeinsame Dateien\System\Ole
DB\MSDAIPP.DLL[MSDAMON.BINDER] -> [2006.10.26 19:49:48 | 001,011,488 |
---- | M | MD5 = EDA5ACA3FE63A4FAB4ADB3181A687A59] (Microsoft Corporation)
msdaipp\0x00000001:{E1D2BF42-A96B-11d1-9C6B-0000F875AC61} [HKLM] ->
C:\Programme\Gemeinsame Dateien\System\Ole
DB\MSDAIPP.DLL[MSDAMON.BINDER] -> [2006.10.26 19:49:48 | 001,011,488 |
---- | M | MD5 = EDA5ACA3FE63A4FAB4ADB3181A687A59] (Microsoft Corporation)
msdaipp\oledb:{E1D2BF40-A96B-11d1-9C6B-0000F875AC61} [HKLM] ->
C:\Programme\Gemeinsame Dateien\System\Ole
DB\MSDAIPP.DLL[MSDAIPP.BINDER] -> [2006.10.26 19:49:48 | 001,011,488 |
---- | M | MD5 = EDA5ACA3FE63A4FAB4ADB3181A687A59] (Microsoft Corporation)
ms-help:{314111c7-a502-11d2-bbca-00c04f8ec294} [HKLM] ->
C:\Programme\Gemeinsame Dateien\Microsoft
Shared\Help\hxds.dll[HxProtocol Class] -> [2006.10.26 13:45:02 |
000,873,216 | ---- | M | MD5 = 9E7370CC3D6A43942433F85D0E2BBDD8]
(Microsoft Corporation)
ms-itss:{0A9007C0-4076-11D3-8789-0000F8105754} [HKLM] ->
C:\Programme\Gemeinsame Dateien\Microsoft Shared\Information
Retrieval\msitss.dll[Microsoft Infotech Storage Protocol for IE 4.0] ->
[2006.06.02 00:48:04 | 000,221,184 | ---- | M | MD5 =
FBFEF8D1CCFE1B12C0303F0C4B67EB97] (Microsoft Corporation)
skype4com:{FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} [HKLM] ->
C:\Programme\Gemeinsame Dateien\Skype\Skype4COM.dll[IEProtocolHandler
Class] -> [2009.09.02 15:27:36 | 001,959,208 | R--- | M | MD5 =
1E79B48BC50B99FDC0066860BCEFBC23] (Skype Technologies)
< Security Center Settings > ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center
\\"FirstRunDisabled" -> [1] -> File not found
\\"AntiVirusDisableNotify" -> [0] -> File not found
\\"FirewallDisableNotify" -> [0] -> File not found
\\"UpdatesDisableNotify" -> [0] -> File not found
\\"AntiVirusOverride" -> [0] -> File not found
\\"FirewallOverride" -> [0] -> File not found
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security
Center\Monitoring\AhnlabAntiVirus\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security
Center\Monitoring\ComputerAssociatesAntiVirus\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security
Center\Monitoring\KasperskyAntiVirus\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security
Center\Monitoring\McAfeeAntiVirus\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security
Center\Monitoring\McAfeeFirewall\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security
Center\Monitoring\PandaAntiVirus\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security
Center\Monitoring\PandaFirewall\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security
Center\Monitoring\SophosAntiVirus\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security
Center\Monitoring\SymantecAntiVirus\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security
Center\Monitoring\SymantecFirewall\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security
Center\Monitoring\TinyFirewall\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security
Center\Monitoring\TrendAntiVirus\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security
Center\Monitoring\TrendFirewall\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security
Center\Monitoring\ZoneLabsFirewall\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security
Center\Monitoring\ZoneLabsFirewall
\Monitoring\ZoneLabsFirewall\\"DisableMonitoring" -> [1] -> File not found
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile
\\"EnableFirewall" -> [0] -> File not found
\\"DoNotAllowExceptions" -> [0] -> File not found
\\"DisableNotifications" -> [0] -> File not found
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\
-> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\
-> ->
< Uninstall List [HKEY_LOCAL_MACHINE\] > ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ ->
{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D} -> PDFCreator
{01521746-02A6-4A72-00BD-A285DF6B80C6} -> Die Sims 2: Wilde Campus-Jahre
{01B93B3A-283F-411B-A648-69CABCACC986} -> Canon MF-Treiber
{0394CDC8-FABD-4ed8-B104-03393876DFDF} -> Roxio Creator Tools
{04B45310-A5FE-4425-BFCA-1A6D8920DE74} -> OpenOffice.org 3.0
{0D397393-9B50-4c52-84D5-77E344289F87} -> Roxio Creator Data
{0FDD9B5C-1133-48E2-9B9A-2E5A303D3F5B} -> Origin81
{11801011-D30E-4120-9A89-9A873B1D72DF} -> Canon MF5700-Serie
{132CA5D9-C745-4B0B-A3B2-8C7A6EC3EE7E} -> Canon MF-Toolbox 4.7.0.0.mf04
{18D10072035C4515918F7E37EAFAACFC} -> AutoUpdate
{1D5E29AD-39A9-4D0A-A8B6-46A6FCD8C995} -> Live! Cam Avatar
{1E04F83B-2AB9-4301-9EF7-E86307F79C72} -> Google Earth
{1F1C2DFC-2D24-3E06-BCB8-725134ADF989} -> Microsoft Visual C++ 2008
Redistributable - x86 9.0.30729.4148
{2F4C24E6-CBD4-4AAC-B56F-C9FD44DE5668} -> Roxio Drag-to-Disc
{30465B6C-B53F-49A1-9EBA-A3F187AD502E} -> Roxio Update Manager
{3248F0A8-6813-11D6-A77B-00B0D0150060} -> J2SE Runtime Environment 5.0
Update 6
{3248F0A8-6813-11D6-A77B-00B0D0160030} -> Java(TM) 6 Update 3
{3248F0A8-6813-11D6-A77B-00B0D0160070} -> Java(TM) 6 Update 7
{350C97B3-3D7C-4EE8-BAA9-00BCB3D54227} -> WebFldrs XP
{35E1EC43-D4FC-4E4A-AAB3-20DDA27E8BB0} -> Sonic Activation Module
{3749D33C-26C8-4669-ACAA-DA3B0ADA67B6} -> Das große Tafelwerk interaktiv
{3F92ABBB-6BBF-11D5-B229-002078017FBF} -> NetWaiting
{3FC7CBBC4C1E11DCA1A752EA55D89593} -> DivX Version Checker
{4817189D-1785-4627-A33C-39FD90919300} -> Die Sims™ 2 Haustiere
{4C781ED5-4C2A-4495-875B-85CC9266F1F0} -> ANNO 1602
{4EA2F95F-A537-4d17-9E7F-6B3FF8D9BBE3} -> Microsoft Works
{541DEAC0-5F3D-45E6-B7CB-94ECF3B96748} -> Skype web features
{5EE7D259-D137-4438-9A5F-42F432EC0421} -> VC80CRTRedist - 8.0.50727.4053
{619CDD8A-14B6-43a1-AB6C-0F4EE48CE048} -> Roxio Creator Copy
{65D0C510-D7B6-4438-9FC8-E6B91115AB0D} -> Live! Cam Avatar Creator
{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA} -> Roxio Express Labeler
{6E7DD182-9FC6-4651-0095-2E666CC6AF35} -> Die Sims 2
{72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} -> ICQ7.2
{74F7662C-B1DB-489E-A8AC-07A06B24978B} -> Dell System Restore
{7B3577F5-1D82-4C9B-008B-69D026FD8BCA} -> Die Sims 2: Open For Business
{7B63B2922B174135AFC0E1377DD81EC2} -> DivX Codec
{83FFCFC7-88C6-41c6-8752-958A45325C82} -> Roxio Creator Audio
{880AF49C-34F7-4285-A8AD-8F7A3D1C33DC} -> Roxio Creator BDAV Plugin
{90120000-0010-0407-0000-0000000FF1CE} -> Microsoft Software Update for
Web Folders (German) 12
{90120000-0015-0407-0000-0000000FF1CE} -> Microsoft Office Access MUI
(German) 2007
{90120000-0016-0407-0000-0000000FF1CE} -> Microsoft Office Excel MUI
(German) 2007
{90120000-0018-0407-0000-0000000FF1CE} -> Microsoft Office PowerPoint
MUI (German) 2007
{90120000-0019-0407-0000-0000000FF1CE} -> Microsoft Office Publisher MUI
(German) 2007
{90120000-001A-0407-0000-0000000FF1CE} -> Microsoft Office Outlook MUI
(German) 2007
{90120000-001B-0407-0000-0000000FF1CE} -> Microsoft Office Word MUI
(German) 2007
{90120000-001F-0407-0000-0000000FF1CE} -> Microsoft Office Proof
(German) 2007
{90120000-001F-0409-0000-0000000FF1CE} -> Microsoft Office Proof
(English) 2007
{90120000-001F-040C-0000-0000000FF1CE} -> Microsoft Office Proof
(French) 2007
{90120000-001F-0410-0000-0000000FF1CE} -> Microsoft Office Proof
(Italian) 2007
{90120000-002C-0407-0000-0000000FF1CE} -> Microsoft Office Proofing
(German) 2007
{90120000-0030-0000-0000-0000000FF1CE} -> Microsoft Office Enterprise 2007
{90120000-0044-0407-0000-0000000FF1CE} -> Microsoft Office InfoPath MUI
(German) 2007
{90120000-006E-0407-0000-0000000FF1CE} -> Microsoft Office Shared MUI
(German) 2007
{90120000-00A1-0407-0000-0000000FF1CE} -> Microsoft Office OneNote MUI
(German) 2007
{90120000-00B2-0407-0000-0000000FF1CE} -> Microsoft – Speichern als PDF
oder XPS – Add-In für 2007 Microsoft Office-Programme
{90120000-00BA-0407-0000-0000000FF1CE} -> Microsoft Office Groove MUI
(German) 2007
{9A25302D-30C0-39D9-BD6F-21E6EC160475} -> Microsoft Visual C++ 2008
Redistributable - x86 9.0.30729.17
{9BDEF074-020E-458D-ADC5-8FF68E0C9B56} -> OutlookAddinSetup
{9C6978E8-B6D0-4AB7-A7A0-D81A74FBF745} -> MediaDirect
{9CDBC303-3EED-40b0-8E41-A7C65AA96C26} -> Die Sims™ 2: Glamour-Accessoires
{A3CA5549-E07C-4CF3-99FB-C42C50DFC5CD} -> ANNO 1602 NINA
{A912021A-FEDD-4DA3-8DB4-245EBDA84778} -> OriginPro 8G
{A96E97134CA649888820BCDE5E300BBD} -> H.264 Decoder
{AAC389499AEF40428987B3D30CFC76C9} -> MKV Splitter
{AC76BA86-7AD7-1031-7B44-A81200000003} -> Adobe Reader 8.1.2 - Deutsch
{AEF9DC35ADDF4825B049ACBFD1C6EB37} -> AAC Decoder
{B6EC7388-E277-4A5B-8C8F-71067A41BA64} -> TextPad 5
{B8B0FC8B-E69B-4215-AF1A-4BDFF20D794B} -> pdfforge Toolbar v1.0
{C014E2EB-1FEA-48F8-AE36-912D8FA659DB} -> OriginPro 8.1G
{C5074CC4-0E26-4716-A307-960272A90040} -> QuickSet
{C8B0680B-CDAE-4809-9F91-387B6DE00F7C} -> Roxio Creator DE
{C99C0593-3B48-41D9-B42F-6E035B320449} -> Broadcom Management Programs
{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1} -> Microsoft .NET Framework 1.1
{D103C4BA-F905-437A-8049-DB24763BBE36} -> Skype™ 4.1
{D1B5E9C8-4CCF-44E3-87D6-7C00D7DA5370} -> IntelliSonic Speech Enhancement
{D639085F-4B6E-4105-9F37-A0DBB023E2FB} -> Roxio MyDVD DE
{E55E016B-8254-4A3F-ACEB-FE9988CD880F} -> Origin8
{E646DCF0-5A68-11D5-B229-002078017FBF} -> Digital Line Detect
{E78BFA60-5393-4C38-82AB-E8019E464EB4} -> Microsoft .NET Framework 1.1
German Language Pack
{F3C1DE9E-5E16-4BA9-B854-7B53A45E3579} -> Cisco Systems VPN Client
5.0.05.0290
{F63A3748-B93D-4360-9AD4-B064481A5C7B} -> Modem-Diagnose-Tool
{F7529650-B9DB-481B-0089-A2AC3C2821C1} -> Die Sims 2: Nightlife
Adobe Flash Player ActiveX -> Adobe Flash Player ActiveX
Adobe Flash Player Plugin -> Adobe Flash Player 10 Plugin
Advanced Audio FX Engine -> Advanced Audio FX Engine
Advanced Video FX Engine -> Advanced Video FX Engine
Advent 1.6.0.2 -> Advent 1.6.0.2
Avira AntiVir Desktop -> Avira AntiVir Personal - Free Antivirus
BitZipper_is1 -> BitZipper 2009
BKChem_is1 -> BKChem-0.13.0
Bridge Builder -> Bridge Builder
Broadcom 802.11b Network Adapter -> Dell Wireless WLAN Card
CAL -> Canon Camera Access Library
CameraWindowDVC5 -> Canon Camera Window DC_DV 5 for ZoomBrowser EX
CameraWindowDVC6 -> Canon Camera Window DC_DV 6 for ZoomBrowser EX
CameraWindowMC -> Canon Camera Window MC 6 for ZoomBrowser EX
Canon G.726 WMP-Decoder -> Canon G.726 WMP-Decoder
CANON iMAGE GATEWAY Task -> CANON iMAGE GATEWAY Task for ZoomBrowser EX
Canon Internet Library for ZoomBrowser EX -> Canon Internet Library for
ZoomBrowser EX
CCleaner -> CCleaner
CDex -> CDex extraction audio
CloneCD -> CloneCD
Creative OEM002 -> Laptop Integrated Webcam Driver (1.03.02.0719)
CSCLIB -> Canon Camera Support Core Library
DAEMON Tools Toolbar -> DAEMON Tools Toolbar
Dell Webcam Center -> Dell Webcam Center
Dell Webcam Manager -> Dell Webcam Manager
Diablo II -> Diablo II
DivX Plus DirectShow Filters -> DivX Plus DirectShow Filters
ENTERPRISE -> Microsoft Office Enterprise 2007
EOS Utility -> Canon Utilities EOS Utility
EPSON Printer and Utilities -> EPSON-Drucker-Software
Equestriad 2001 -> Equestriad 2001
Free Download Manager_is1 -> Free Download Manager 3.0
FreeDoko -> FreeDoko 0.7.5
ICQToolbar -> ICQ Toolbar
IDNMitigationAPIs -> Microsoft Internationalized Domain Names Mitigation
APIs
ie7 -> Windows Internet Explorer 7
ie8 -> Windows Internet Explorer 8
Install WinBrick2000 v3.17.0 Shareware -> WinBrick2000
Malwarebytes' Anti-Malware_is1 -> Malwarebytes' Anti-Malware
Microsoft .NET Framework 1.1 (1033) -> Microsoft .NET Framework 1.1
MovieEditTask -> Canon MovieEdit Task for ZoomBrowser EX
Mozilla Firefox (3.6.6) -> Mozilla Firefox (3.6.6)
Mozilla Thunderbird (3.1) -> Mozilla Thunderbird (3.1)
NLSDownlevelMapping -> Microsoft National Language Support Downlevel APIs
NVIDIA Drivers -> NVIDIA Drivers
Orbital Viewer -> Orbital Viewer
PhotoStitch -> Canon Utilities PhotoStitch
R for Windows 2.9.2_is1 -> R for Windows 2.9.2
RAW Image Task -> Canon RAW Image Task for ZoomBrowser EX
RemoteCaptureTask -> Canon RemoteCapture Task for ZoomBrowser EX
Rommé 1 -> Rommé 1
ST5UNST #1 -> Mühle von JMMG Communications
ST6UNST #1 -> Der Restaurant-Manager 1.5 Vollversion.de Edition
SynTPDeinstKey -> Dell Touchpad
VLC media player -> VLC media player 1.0.5
Windows Media Format Runtime -> Windows Media Format Runtime
Windows XP Service Pack -> Windows XP Service Pack 3
WinGimp-2.0_is1 -> Gimp 2.6.0
WinRAR archiver -> WinRAR
ZoneAlarm -> ZoneAlarm
ZoomBrowser EX -> Canon Utilities ZoomBrowser EX
< Uninstall List
[HKEY_USERS\S-1-5-21-1269871099-218545957-1124453212-1005\] > ->
HKEY_USERS\S-1-5-21-1269871099-218545957-1124453212-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\
->
< EventViewer Logs - Last 10 Errors > -> Event Information -> Description
Application [ Error ] 28.06.2010 09:02:45 Computer Name = LAPTOPJENNI |
Source = Application Error | ID = 1000 -> Description = Fehlgeschlagene
Anwendung gimp-2.6.exe, Version 0.0.0.0, fehlgeschlagenes Modul
gimp-2.6.exe, Version 0.0.0.0, Fehleradresse 0x000252ce.
Application [ Error ] 11.07.2010 05:21:43 Computer Name = LAPTOPJENNI |
Source = crypt32 | ID = 131083 -> Description = Die Extrahierung der
Drittanbieterstammlisten aus der automatischen Aktualisierungs-CAB-Datei
bei
<hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>
ist fehlgeschlagen mit dem Fehler: Ein erforderliches Zertifikat
befindet sich nicht im Gültigkeitszeitraum gemessen an der aktuellen
Systemzeit oder dem Zeitstempel in der signierten Datei. .
Application [ Error ] 11.07.2010 05:21:43 Computer Name = LAPTOPJENNI |
Source = crypt32 | ID = 131083 -> Description = Die Extrahierung der
Drittanbieterstammlisten aus der automatischen Aktualisierungs-CAB-Datei
bei
<hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>
ist fehlgeschlagen mit dem Fehler: Ein erforderliches Zertifikat
befindet sich nicht im Gültigkeitszeitraum gemessen an der aktuellen
Systemzeit oder dem Zeitstempel in der signierten Datei. .
Application [ Error ] 11.07.2010 17:18:06 Computer Name = LAPTOPJENNI |
Source = ESENT | ID = 490 -> Description = svchost (1176) Versuch, Datei
"C:\WINDOWS\system32\CatRoot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}\catdb"
für den Lese-/Schreibzugriff zu öffnen, ist mit Systemfehler 32
(0x00000020): "Der Prozess kann nicht auf die Datei zugreifen, da sie
von einem anderen Prozess verwendet wird. " fehlgeschlagen. Fehler -1032
(0xfffffbf8) beim Öffnen von Dateien.
Application [ Error ] 13.07.2010 08:23:44 Computer Name = LAPTOPJENNI |
Source = ESENT | ID = 490 -> Description = svchost (1196) Versuch, Datei
"C:\WINDOWS\system32\CatRoot2\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\catdb"
für den Lese-/Schreibzugriff zu öffnen, ist mit Systemfehler 32
(0x00000020): "Der Prozess kann nicht auf die Datei zugreifen, da sie
von einem anderen Prozess verwendet wird. " fehlgeschlagen. Fehler -1032
(0xfffffbf8) beim Öffnen von Dateien.
Application [ Error ] 13.07.2010 16:07:55 Computer Name = LAPTOPJENNI |
Source = Application Error | ID = 1000 -> Description = Fehlgeschlagene
Anwendung acrord32.exe, Version 8.1.0.137, fehlgeschlagenes Modul
3difr.x3d, Version 8.1.0.0, Fehleradresse 0x0001d3ee.
System [ Error ] 15.07.2010 02:15:51 Computer Name = LAPTOPJENNI |
Source = Service Control Manager | ID = 7001 -> Description = Der Dienst
"TrueVector Internet Monitor" ist vom Dienst "vsdatant" abhängig, der
aufgrund folgenden Fehlers nicht gestartet wurde: %%31
System [ Error ] 15.07.2010 02:15:51 Computer Name = LAPTOPJENNI |
Source = Service Control Manager | ID = 7001 -> Description = Der Dienst
"IPSEC-Dienste" ist vom Dienst "IPSEC-Treiber" abhängig, der aufgrund
folgenden Fehlers nicht gestartet wurde: %%31
System [ Error ] 15.07.2010 02:15:51 Computer Name = LAPTOPJENNI |
Source = Service Control Manager | ID = 7026 -> Description = Das Laden
folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: AFD APPDRV
avgio avipbb ElbyCDIO Fips intelppm IPSec kl1 KLIF MRxSmb NetBIOS NetBT
RasAcd Rdbss ssmdrv Tcpip vsdatant
System [ Error ] 15.07.2010 02:15:54 Computer Name = LAPTOPJENNI |
Source = DCOM | ID = 10005 -> Description = Bei DCOM ist der Fehler
"%1084" aufgetreten, als der Dienst "netman" mit den Argumenten ""
gestartet wurde, um den folgenden Server zu verwenden:
{BA126AE5-2166-11D1-B1D0-00805FC1270E}
System [ Error ] 15.07.2010 02:16:16 Computer Name = LAPTOPJENNI |
Source = DCOM | ID = 10005 -> Description = Bei DCOM ist der Fehler
"%1084" aufgetreten, als der Dienst "EventSystem" mit den Argumenten ""
gestartet wurde, um den folgenden Server zu verwenden:
{1BE1F766-5536-11D1-B726-00C04FB926AF}
System [ Error ] 15.07.2010 02:17:05 Computer Name = LAPTOPJENNI |
Source = DCOM | ID = 10005 -> Description = Bei DCOM ist der Fehler
"%1084" aufgetreten, als der Dienst "EventSystem" mit den Argumenten ""
gestartet wurde, um den folgenden Server zu verwenden:
{1BE1F766-5536-11D1-B726-00C04FB926AF}
System [ Error ] 15.07.2010 02:47:30 Computer Name = LAPTOPJENNI |
Source = DCOM | ID = 10005 -> Description = Bei DCOM ist der Fehler
"%1084" aufgetreten, als der Dienst "EventSystem" mit den Argumenten ""
gestartet wurde, um den folgenden Server zu verwenden:
{1BE1F766-5536-11D1-B726-00C04FB926AF}
System [ Error ] 15.07.2010 12:09:30 Computer Name = LAPTOPJENNI |
Source = Ftdisk | ID = 262189 -> Description = Das System konnte den
Treiber für das Speicherabbild nicht laden.
System [ Error ] 15.07.2010 12:09:30 Computer Name = LAPTOPJENNI |
Source = Ftdisk | ID = 262193 -> Description = Die Konfiguration der
Auslagerungsdatei für das Speicherabbild ist fehlgeschlagen. Stellen Sie
sicher, dass eine Auslagerungsdatei auf der Startpartition vorhanden ist
und dass diese groß genug ist, um den gesamten physikalischen Speicher
abbilden zu können.
System [ Error ] 15.07.2010 12:09:42 Computer Name = LAPTOPJENNI |
Source = Service Control Manager | ID = 7026 -> Description = Das Laden
folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: kl1
[Files/Folders - Created Within 30 Days]
OTS.exe -> C:\Dokumente und Einstellungen\xxx\Desktop\OTS.exe ->
[2010.07.15 18:23:04 | 000,640,512 | ---- | C | MD5 =
13AEC6A0F3E63C3A4BAEB03A98B811EF] (OldTimer Tools)
IECompatCache -> C:\Dokumente und Einstellungen\xxx\IECompatCache ->
[2010.07.15 00:00:11 | 000,000,000 | -HSD | C]
Mozilla Firefox -> C:\Programme\Mozilla Firefox -> [2010.07.14 14:15:03
| 000,000,000 | ---D | C]
Recent -> C:\Dokumente und Einstellungen\xxx\Recent -> [2010.07.13
23:30:34 | 000,000,000 | RH-D | C]
Macromedia -> C:\Dokumente und
Einstellungen\NetworkService\Anwendungsdaten\Macromedia -> [2010.07.13
22:20:27 | 000,000,000 | ---D | C]
Adobe -> C:\Dokumente und
Einstellungen\NetworkService\Anwendungsdaten\Adobe -> [2010.07.13
22:20:26 | 000,000,000 | ---D | C]
PrivacIE -> C:\Dokumente und Einstellungen\xxx\PrivacIE -> [2010.07.13
22:17:12 | 000,000,000 | -HSD | C]
jhbtfvbrp -> C:\Dokumente und Einstellungen\xxx\Lokale
Einstellungen\Anwendungsdaten\jhbtfvbrp -> [2010.07.13 22:07:58 |
000,000,000 | ---D | C]
EPSON -> C:\Programme\EPSON -> [2010.07.13 14:42:07 | 000,000,000 | ---D
| C]
E_DCINST.DLL -> C:\WINDOWS\System32\E_DCINST.DLL -> [2010.07.13 14:42:00
| 000,049,152 | ---- | C | MD5 = 1129871724A26B1DD6678DE88B7FE941]
(SEIKO EPSON CORP.)
E_FLMAEE.DLL -> C:\WINDOWS\System32\E_FLMAEE.DLL -> [2010.07.13 14:41:57
| 000,079,679 | ---- | C | MD5 = 7AEC176A5DE912D440E3B37120E2E38F]
(SEIKO EPSON CORPORATION)
E_FBCBAEE.DLL -> C:\WINDOWS\System32\E_FBCBAEE.DLL -> [2010.07.13
14:41:57 | 000,064,000 | ---- | C | MD5 =
287D9CFC80A94E62437E7CAC7EB32979] (SEIKO EPSON CORPORATION)
E_FBCHAEE.DLL -> C:\WINDOWS\System32\E_FBCHAEE.DLL -> [2010.07.13
14:41:57 | 000,034,304 | ---- | C | MD5 =
3670675EEA8136995287DFB1B7650A5D] (SEIKO EPSON CORPORATION)
DRVSTORE -> C:\WINDOWS\System32\DRVSTORE -> [2010.07.13 14:41:29 |
000,000,000 | ---D | C]
EPSON -> C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\EPSON
-> [2010.07.13 14:41:01 | 000,000,000 | ---D | C]
BitZipper -> C:\Dokumente und
Einstellungen\xxx\Anwendungsdaten\BitZipper -> [2010.07.13 14:34:31 |
000,000,000 | ---D | C]
BitZipper -> C:\Programme\BitZipper -> [2010.07.13 14:34:24 |
000,000,000 | ---D | C]
IETldCache -> C:\Dokumente und Einstellungen\xxx\IETldCache ->
[2010.07.13 13:19:37 | 000,000,000 | -HSD | C]
ie8 -> C:\WINDOWS\ie8 -> [2010.07.13 13:11:29 | 000,000,000 | -H-D | C]
MSXML 4.0 -> C:\Programme\MSXML 4.0 -> [2010.07.12 21:08:06 |
000,000,000 | ---D | C]
aclayers.dll -> C:\WINDOWS\System32\dllcache\aclayers.dll -> [2010.07.12
16:45:56 | 000,471,552 | ---- | C | MD5 =
3820842AC55DCE6B4F8AA1355A6C6255] (Microsoft Corporation)
fontsub.dll -> C:\WINDOWS\System32\dllcache\fontsub.dll -> [2010.07.12
16:45:14 | 000,081,920 | ---- | C | MD5 =
0E5928210CAF6EC213F77A75694F1743] (Microsoft Corporation)
t2embed.dll -> C:\WINDOWS\System32\dllcache\t2embed.dll -> [2010.07.12
16:45:13 | 000,119,808 | ---- | C | MD5 =
316587BBA95A33B771F128308E668F27] (Microsoft Corporation)
moviemk.exe -> C:\WINDOWS\System32\dllcache\moviemk.exe -> [2010.07.12
16:44:50 | 003,558,912 | ---- | C | MD5 =
E002A7E05185BD7FC7646CD229311B22] (Microsoft Corporation)
browserchoice.exe -> C:\WINDOWS\System32\browserchoice.exe ->
[2010.07.12 16:43:19 | 000,293,376 | ---- | C | MD5 =
DA1919D896DBD5895E138932AE9E398B] (Microsoft Corporation)
ESET -> C:\Programme\ESET -> [2010.07.12 16:41:36 | 000,000,000 | ---D | C]
_OTL -> C:\_OTL -> [2010.07.11 23:04:23 | 000,000,000 | ---D | C]
Malwarebytes -> C:\Dokumente und
Einstellungen\xxx\Anwendungsdaten\Malwarebytes -> [2010.07.11 21:39:10 |
000,000,000 | ---D | C]
CCleaner -> C:\Programme\CCleaner -> [2010.07.11 20:26:19 | 000,000,000
| ---D | C]
CSC -> C:\WINDOWS\CSC -> [2010.07.11 20:24:38 | 000,000,000 | ---D | C]
OTL.exe -> C:\Dokumente und Einstellungen\xxx\Desktop\OTL.exe ->
[2010.07.11 19:23:42 | 000,574,976 | ---- | C | MD5 =
C211F9A393E84EF65AA595261A382489] (OldTimer Tools)
mbamswissarmy.sys -> C:\WINDOWS\System32\drivers\mbamswissarmy.sys ->
[2010.07.11 19:23:37 | 000,038,224 | ---- | C | MD5 =
7364D8A830F91C487F430A57FDBD2BBB] (Malwarebytes Corporation)
Malwarebytes -> C:\Dokumente und Einstellungen\All
Users\Anwendungsdaten\Malwarebytes -> [2010.07.11 19:23:31 | 000,000,000
| ---D | C]
mbam.sys -> C:\WINDOWS\System32\drivers\mbam.sys -> [2010.07.11 19:23:30
| 000,020,952 | ---- | C | MD5 = A02C631493AB553A1112A6B699FE61B3]
(Malwarebytes Corporation)
Malwarebytes' Anti-Malware -> C:\Programme\Malwarebytes' Anti-Malware ->
[2010.07.11 19:23:28 | 000,000,000 | ---D | C]
AOL -> C:\Dokumente und Einstellungen\xxx\Lokale
Einstellungen\Anwendungsdaten\AOL -> [2010.07.05 14:43:35 | 000,000,000
| ---D | C]
ICQ7.2 -> C:\Programme\ICQ7.2 -> [2010.07.05 14:41:53 | 000,000,000 |
---D | C]
.jenny -> C:\Dokumente und Einstellungen\xxx\.xxy -> [2010.06.28
16:39:38 | 000,000,000 | ---D | C]
1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp ->
[Files/Folders - Modified Within 30 Days]
fidbox.dat -> C:\WINDOWS\System32\drivers\fidbox.dat -> [2010.07.15
18:27:04 | 074,776,608 | -HS- | M | Unable to obtain MD5] ()
OTS.exe -> C:\Dokumente und Einstellungen\xxx\Desktop\OTS.exe ->
[2010.07.15 18:23:04 | 000,640,512 | ---- | M | MD5 =
13AEC6A0F3E63C3A4BAEB03A98B811EF] (OldTimer Tools)
VPN Client.lnk -> C:\Dokumente und Einstellungen\All
Users\Startmenü\Programme\Autostart\VPN Client.lnk -> [2010.07.15
18:15:47 | 000,002,423 | ---- | M | MD5 =
B4849AF00C0A9FF0BC18A1F2A96E6735] ()
nvModes.001 -> C:\WINDOWS\System32\nvModes.001 -> [2010.07.15 18:15:46 |
000,222,883 | ---- | M | MD5 = 8A7F0500C8A4FEC04D5713903D0E61B6] ()
wpa.dbl -> C:\WINDOWS\System32\wpa.dbl -> [2010.07.15 18:15:32 |
000,002,206 | ---- | M | MD5 = 25EB87A7CF6BF78E299B54FB5390176E] ()
PerfStringBackup.INI -> C:\WINDOWS\System32\PerfStringBackup.INI ->
[2010.07.15 18:13:45 | 000,884,200 | ---- | M | MD5 =
9E8457DF7CE107223F268CEA150FD851] ()
perfh007.dat -> C:\WINDOWS\System32\perfh007.dat -> [2010.07.15 18:13:45
| 000,386,302 | ---- | M | MD5 = F63BF1C1E551A2DC9E98EC3C411CAFFE] ()
perfh009.dat -> C:\WINDOWS\System32\perfh009.dat -> [2010.07.15 18:13:45
| 000,375,740 | ---- | M | MD5 = C1E065F01843D11110426D1C9839CC21] ()
perfc007.dat -> C:\WINDOWS\System32\perfc007.dat -> [2010.07.15 18:13:45
| 000,062,364 | ---- | M | MD5 = CB2A8F757D4B9C9714147DCC230A1B8D] ()
perfc009.dat -> C:\WINDOWS\System32\perfc009.dat -> [2010.07.15 18:13:45
| 000,051,538 | ---- | M | MD5 = B1F7A043B077AEEC430D30088D173963] ()
vsconfig.xml -> C:\WINDOWS\System32\vsconfig.xml -> [2010.07.15 18:09:21
| 000,358,829 | ---- | M | Unable to obtain MD5] ()
SA.DAT -> C:\WINDOWS\tasks\SA.DAT -> [2010.07.15 18:09:21 | 000,000,006
| -H-- | M | MD5 = F1A6CD5ADAAB953A6764EA364E17BFB8] ()
bootstat.dat -> C:\WINDOWS\bootstat.dat -> [2010.07.15 18:09:13 |
000,002,048 | --S- | M | MD5 = 6A2CB42966136854F4464516FBB4AE72] ()
hiberfil.sys -> C:\hiberfil.sys -> [2010.07.15 18:09:01 | 1071,239,168 |
-HS- | M | Unable to obtain MD5] ()
NTUSER.DAT -> C:\Dokumente und Einstellungen\xxx\NTUSER.DAT ->
[2010.07.15 08:47:31 | 007,340,032 | -H-- | M | Unable to obtain MD5] ()
ntuser.ini -> C:\Dokumente und Einstellungen\xxx\ntuser.ini ->
[2010.07.15 08:47:31 | 000,000,190 | -HS- | M | MD5 =
3437668D99DBC2C3B952F11649E2AD49] ()
fidbox.idx -> C:\WINDOWS\System32\drivers\fidbox.idx -> [2010.07.15
08:13:19 | 000,878,192 | -HS- | M | Unable to obtain MD5] ()
EPISMG00.SWB -> C:\WINDOWS\EPISMG00.SWB -> [2010.07.13 22:41:57 |
000,012,862 | ---- | M | MD5 = 48928C58587872859DC7340562A0068D] ()
FNTCACHE.DAT -> C:\WINDOWS\System32\FNTCACHE.DAT -> [2010.07.13 07:26:56
| 000,290,888 | ---- | M | MD5 = FE4D6AE32582DEAF19B3ED26849A269A] ()
.recently-used.xbel -> C:\Dokumente und
Einstellungen\xxx\.recently-used.xbel -> [2010.07.12 20:05:37 |
000,010,656 | ---- | M | MD5 = AC1C9348BB6D3B5A160BD6AA0802E58D] ()
WVCheck.exe -> C:\Dokumente und Einstellungen\xxx\Desktop\WVCheck.exe ->
[2010.07.12 15:16:01 | 003,513,237 | ---- | M | MD5 =
7B982D1D4D8C261AFEA098D57A06E976] ()
Hosts -> C:\WINDOWS\System32\drivers\etc\Hosts -> [2010.07.11 23:04:28 |
000,000,098 | ---- | M | MD5 = F9C056369E96130CEAD3623A430D925F] ()
Malwarebytes' Anti-Malware.lnk -> C:\Dokumente und Einstellungen\All
Users\Desktop\Malwarebytes' Anti-Malware.lnk -> [2010.07.11 20:13:26 |
000,000,676 | ---- | M | MD5 = 43A8CB8BF2CBB2104EA14809651025D9] ()
OTL.exe -> C:\Dokumente und Einstellungen\xxx\Desktop\OTL.exe ->
[2010.07.11 19:23:49 | 000,574,976 | ---- | M | MD5 =
C211F9A393E84EF65AA595261A382489] (OldTimer Tools)
DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini -> C:\Dokumente und
Einstellungen\xxx\Lokale
Einstellungen\Anwendungsdaten\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
-> [2010.06.28 11:56:06 | 000,144,384 | ---- | M | MD5 =
1B03A753AA3F77BB8CB3A96BCF12765C] ()
Blumengießplan.pdf -> C:\Dokumente und
Einstellungen\xxx\Desktop\Blumengießplan.pdf -> [2010.06.20 21:42:44 |
000,178,791 | ---- | M | MD5 = 6A206AD920F7E9335F20621A7A10AE2B] ()
Blumengießplan.docx -> C:\Dokumente und
Einstellungen\xxx\Desktop\Blumengießplan.docx -> [2010.06.20 21:42:38 |
000,012,132 | ---- | M | MD5 = D86173535271E25B4CAEC121851FEA22] ()
1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp ->
[Files - No Company Name]
hiberfil.sys -> C:\hiberfil.sys -> [2010.07.15 18:09:01 | 1071,239,168 |
-HS- | C | Unable to obtain MD5] ()
EPISMG00.SWB -> C:\WINDOWS\EPISMG00.SWB -> [2010.07.13 22:41:57 |
000,012,862 | ---- | C | MD5 = 48928C58587872859DC7340562A0068D] ()
.recently-used.xbel -> C:\Dokumente und
Einstellungen\xxx\.recently-used.xbel -> [2010.07.12 20:05:37 |
000,010,656 | ---- | C | MD5 = AC1C9348BB6D3B5A160BD6AA0802E58D] ()
sysmain.sdb -> C:\WINDOWS\System32\dllcache\sysmain.sdb -> [2010.07.12
16:39:58 | 001,206,508 | ---- | C | MD5 =
DB46D0795811616B5EB2C5F352236486] ()
WVCheck.exe -> C:\Dokumente und Einstellungen\xxx\Desktop\WVCheck.exe ->
[2010.07.12 15:15:21 | 003,513,237 | ---- | C | MD5 =
7B982D1D4D8C261AFEA098D57A06E976] ()
Malwarebytes' Anti-Malware.lnk -> C:\Dokumente und Einstellungen\All
Users\Desktop\Malwarebytes' Anti-Malware.lnk -> [2010.07.11 19:23:42 |
000,000,676 | ---- | C | MD5 = 43A8CB8BF2CBB2104EA14809651025D9] ()
Blumengießplan.pdf -> C:\Dokumente und
Einstellungen\xxx\Desktop\Blumengießplan.pdf -> [2010.06.20 21:42:43 |
000,178,791 | ---- | C | MD5 = 6A206AD920F7E9335F20621A7A10AE2B] ()
Blumengießplan.docx -> C:\Dokumente und
Einstellungen\xxx\Desktop\Blumengießplan.docx -> [2010.06.20 21:42:37 |
000,012,132 | ---- | C | MD5 = D86173535271E25B4CAEC121851FEA22] ()
LTDLGFILE14N.INI -> C:\WINDOWS\LTDLGFILE14N.INI -> [2010.06.06 00:32:54
| 000,000,059 | ---- | C | MD5 = A254BBDB96D6C21D56470F06D5D90A8E] ()
pdfcmnnt.dll -> C:\WINDOWS\System32\pdfcmnnt.dll -> [2010.04.11 19:52:46
| 000,116,224 | ---- | C | MD5 = 1574DD9D409F2DC45CF82C22B99164A4] ()
sptd.sys -> C:\WINDOWS\System32\drivers\sptd.sys -> [2009.09.12 16:43:41
| 000,721,904 | ---- | C | Unable to obtain MD5] ()
diqp2981.sys -> C:\WINDOWS\System32\diqp2981.sys -> [2009.05.26 22:39:19
| 000,000,045 | ---- | C | MD5 = C1E72EF977D05FAE21AAD1EB0C1108C9] ()
vswin.ini -> C:\WINDOWS\vswin.ini -> [2009.05.26 22:39:19 | 000,000,000
| ---- | C | MD5 = D41D8CD98F00B204E9800998ECF8427E] ()
u2s8i.ini -> C:\WINDOWS\u2s8i.ini -> [2009.05.26 22:39:18 | 000,000,028
| ---- | C | MD5 = 01D7535D902E40FFFB70A6AB30666736] ()
CNCMFP12.INI -> C:\WINDOWS\System32\CNCMFP12.INI -> [2009.05.09 20:02:01
| 000,000,367 | ---- | C | MD5 = E1C3925D2621BE6C737FDFAA180F1468] ()
mamba.ini -> C:\WINDOWS\mamba.ini -> [2009.03.24 22:31:36 | 000,000,596
| ---- | C | MD5 = A5F98D341DD12E72B4B47419F2EB2714] ()
dokop301.ini -> C:\WINDOWS\dokop301.ini -> [2009.03.03 21:16:17 |
000,000,976 | ---- | C | MD5 = 02BEA76A5D9F4C5067D3D7A13AA15B5F] ()
SBINET.INI -> C:\WINDOWS\SBINET.INI -> [2009.03.03 21:16:17 |
000,000,024 | ---- | C | MD5 = FC8A5861A3D528340A4CE63756BF5C06] ()
mupkernps11.dll -> C:\WINDOWS\System32\mupkernps11.dll -> [2009.01.13
21:59:19 | 000,057,344 | ---- | C | MD5 =
C1701FCA31AD91C0F868268A5D712B0D] ()
vpnapi.dll -> C:\WINDOWS\System32\vpnapi.dll -> [2009.01.13 11:29:00 |
000,197,408 | ---- | C | MD5 = 0EA75188212358DC46C3BEFAA861F48E] ()
CSGina.dll -> C:\WINDOWS\System32\CSGina.dll -> [2009.01.13 11:28:44 |
000,193,312 | ---- | C | MD5 = 74818C1AEC5562430B1D2873498C401D] ()
SIntfNT.dll -> C:\WINDOWS\System32\SIntfNT.dll -> [2008.06.26 17:03:50 |
000,021,840 | ---- | C | MD5 = 222810667D9FC2FAB1BEF82A8E510A1B] ()
SIntf32.dll -> C:\WINDOWS\System32\SIntf32.dll -> [2008.06.26 17:03:50 |
000,017,212 | ---- | C | MD5 = 9A7A95E48E629A075C6D883D0EE524C8] ()
SIntf16.dll -> C:\WINDOWS\System32\SIntf16.dll -> [2008.06.26 17:03:50 |
000,012,067 | ---- | C | MD5 = C72263A0B16B36E0B4BD2FD442FFFD54] ()
imsinstall_loc0407.dll -> C:\WINDOWS\System32\imsinstall_loc0407.dll ->
[2007.12.29 21:42:41 | 000,021,904 | ---- | C | MD5 =
038AD1101DB9FF257F444B1F876637C3] ()
imslsp_install_loc0407.dll ->
C:\WINDOWS\System32\imslsp_install_loc0407.dll -> [2007.12.29 21:42:41 |
000,017,808 | ---- | C | MD5 = 698D7F648E87FCADD8F1BD3229880508] ()
libeay32_0.9.6l.dll -> C:\WINDOWS\System32\libeay32_0.9.6l.dll ->
[2007.12.29 21:42:09 | 000,796,048 | ---- | C | MD5 =
237DA013653DE8CEC807B47EA9FFC34C] ()
WORDPAD.INI -> C:\WINDOWS\WORDPAD.INI -> [2007.12.25 17:43:57 |
000,000,754 | ---- | C | MD5 = 1A18B1069E20042FADDD3FDF03699A54] ()
atksgt.sys -> C:\WINDOWS\System32\drivers\atksgt.sys -> [2007.12.08
13:15:40 | 000,281,760 | ---- | C | MD5 =
F0D933B42CD0594048E4D5200AE9E417] ()
lirsgt.sys -> C:\WINDOWS\System32\drivers\lirsgt.sys -> [2007.12.08
13:15:40 | 000,025,888 | ---- | C | MD5 =
F8A7212D0864EF5E9185FB95E6623F4D] ()
Romme.INI -> C:\WINDOWS\Romme.INI -> [2007.12.08 13:12:41 | 000,000,307
| ---- | C | MD5 = 6579C48186856375911C9A8B11C58642] ()
TETRIS.INI -> C:\WINDOWS\TETRIS.INI -> [2007.12.02 12:50:51 |
000,000,038 | ---- | C | MD5 = 38836595D0BB1B6A4831546A3A1B81F9] ()
smscfg.ini -> C:\WINDOWS\smscfg.ini -> [2007.11.18 15:41:25 |
000,000,061 | ---- | C | MD5 = C0759373CABA4620D082671DC8B0B919] ()
_psisdecd.dll -> C:\WINDOWS\System32\_psisdecd.dll -> [2007.11.18
15:36:23 | 000,198,144 | ---- | C | MD5 =
DCCF363DADFCF9BC838C7F81702A51B7] ()
DLAAPI_W.DLL -> C:\WINDOWS\System32\DLAAPI_W.DLL -> [2007.11.18 15:33:27
| 000,056,056 | ---- | C | MD5 = 378894E833489C07AAE541BE974CB59B] ()
wininit.ini -> C:\WINDOWS\wininit.ini -> [2007.11.18 15:33:27 |
000,000,120 | ---- | C | MD5 = 123782FDAC6072948187E119D3355191] ()
preflib.dll -> C:\WINDOWS\System32\preflib.dll -> [2007.11.18 15:29:22 |
000,086,016 | ---- | C | MD5 = 2A5A6D43CFE2FB2C89B175E4F07FF635] ()
bcm1xsup.dll -> C:\WINDOWS\System32\bcm1xsup.dll -> [2007.11.18 15:29:20
| 000,757,760 | ---- | C | MD5 = 4E8964A5564D27BE3F336AAD47D5D6E8] ()
rixdicon.dll -> C:\WINDOWS\System32\rixdicon.dll -> [2007.11.18 15:00:28
| 000,016,480 | ---- | C | MD5 = F95EA7FEF807F995B1D1136AF68F5BFF] ()
nvwimg.dll -> C:\WINDOWS\System32\nvwimg.dll -> [2007.11.18 15:00:15 |
001,019,904 | ---- | C | MD5 = 933E09C36538E196C8A99AF488B20879] ()
nvwdmcpl.dll -> C:\WINDOWS\System32\nvwdmcpl.dll -> [2007.11.18 15:00:14
| 001,703,936 | ---- | C | MD5 = 1F9F8D75A6F7C95B7FB6234A0A702706] ()
nvshell.dll -> C:\WINDOWS\System32\nvshell.dll -> [2007.11.18 15:00:14 |
000,466,944 | ---- | C | MD5 = 76DD76CAAEA90E5C12B32D2A3484496C] ()
nview.dll -> C:\WINDOWS\System32\nview.dll -> [2007.11.18 15:00:13 |
001,474,560 | ---- | C | MD5 = 842D0968906CA259EAA1700752D2D6D5] ()
OEMINFO.INI -> C:\WINDOWS\System32\OEMINFO.INI -> [2007.11.18 14:58:57 |
000,001,504 | ---- | C | MD5 = 75BE19F1BE28D1D3C25B1B6316EAE9D8] ()
px.ini -> C:\WINDOWS\System32\px.ini -> [2006.11.07 06:25:58 |
000,000,000 | ---- | C | MD5 = D41D8CD98F00B204E9800998ECF8427E] ()
CddbPlaylist2Roxio.dll -> C:\WINDOWS\System32\CddbPlaylist2Roxio.dll ->
[2006.09.17 01:36:50 | 000,520,192 | ---- | C | MD5 =
04D589D10843AB801BF20AA8238EF030] ()
CddbFileTaggerRoxio.dll -> C:\WINDOWS\System32\CddbFileTaggerRoxio.dll
-> [2006.09.17 01:36:50 | 000,204,800 | ---- | C | MD5 =
F33FE25F897D6E8BF79D996F973A36CE] ()
orun32.ini -> C:\WINDOWS\orun32.ini -> [2004.08.13 15:04:30 |
000,000,849 | ---- | C | MD5 = E843BF2B7B481E0772DE3BD2CF06BC80] ()
fxsperf.ini -> C:\WINDOWS\System32\fxsperf.ini -> [2004.08.13 14:51:43 |
000,003,776 | ---- | C | MD5 = 221FCC75D1FB9664146B8C682ECF094D] ()
[File - Lop Check]
DAEMON Tools Lite -> C:\Dokumente und Einstellungen\All
Users\Anwendungsdaten\DAEMON Tools Lite -> [2009.09.12 17:01:39 |
000,000,000 | ---D | M]
EPSON -> C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\EPSON
-> [2010.07.13 14:41:01 | 000,000,000 | ---D | M]
FreeDownloadManager.ORG -> C:\Dokumente und Einstellungen\All
Users\Anwendungsdaten\FreeDownloadManager.ORG -> [2009.05.02 16:42:33 |
000,000,000 | ---D | M]
ICQ -> C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\ICQ ->
[2010.07.05 15:02:23 | 000,000,000 | ---D | M]
MailFrontier -> C:\Dokumente und Einstellungen\All
Users\Anwendungsdaten\MailFrontier -> [2007.12.29 21:42:55 | 000,000,000
| ---D | M]
OriginLab -> C:\Dokumente und Einstellungen\All
Users\Anwendungsdaten\OriginLab -> [2010.04.19 14:56:46 | 000,000,000 |
---D | M]
Tages -> C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Tages
-> [2009.09.12 17:17:38 | 000,000,000 | ---D | M]
BitZipper -> C:\Dokumente und
Einstellungen\xxx\Anwendungsdaten\BitZipper -> [2010.07.13 14:34:31 |
000,000,000 | ---D | M]
bkchem -> C:\Dokumente und Einstellungen\xxx\Anwendungsdaten\bkchem ->
[2009.10.29 22:20:59 | 000,000,000 | ---D | M]
Canon -> C:\Dokumente und Einstellungen\xxx\Anwendungsdaten\Canon ->
[2008.03.29 19:26:08 | 000,000,000 | ---D | M]
cerasus.media -> C:\Dokumente und
Einstellungen\xxx\Anwendungsdaten\cerasus.media -> [2007.12.09 02:19:39
| 000,000,000 | ---D | M]
DAEMON Tools Lite -> C:\Dokumente und
Einstellungen\xxx\Anwendungsdaten\DAEMON Tools Lite -> [2009.09.12
17:03:26 | 000,000,000 | ---D | M]
DAEMON Tools Pro -> C:\Dokumente und
Einstellungen\xxx\Anwendungsdaten\DAEMON Tools Pro -> [2009.09.12
16:49:16 | 000,000,000 | ---D | M]
Free Download Manager -> C:\Dokumente und
Einstellungen\xxx\Anwendungsdaten\Free Download Manager -> [2010.07.15
18:32:31 | 000,000,000 | ---D | M]
FreeDoko -> C:\Dokumente und Einstellungen\xxx\Anwendungsdaten\FreeDoko
-> [2009.03.13 13:46:46 | 000,000,000 | ---D | M]
GetRightToGo -> C:\Dokumente und
Einstellungen\xxx\Anwendungsdaten\GetRightToGo -> [2009.05.09 20:07:46 |
000,000,000 | ---D | M]
gtk-2.0 -> C:\Dokumente und Einstellungen\xxx\Anwendungsdaten\gtk-2.0 ->
[2010.07.12 16:57:52 | 000,000,000 | ---D | M]
Helios -> C:\Dokumente und Einstellungen\xxx\Anwendungsdaten\Helios ->
[2009.05.02 15:36:49 | 000,000,000 | ---D | M]
ICQ -> C:\Dokumente und Einstellungen\xxx\Anwendungsdaten\ICQ ->
[2010.07.07 23:27:02 | 000,000,000 | ---D | M]
ICQ Toolbar -> C:\Dokumente und Einstellungen\xxx\Anwendungsdaten\ICQ
Toolbar -> [2007.11.22 19:59:11 | 000,000,000 | ---D | M]
ImgBurn -> C:\Dokumente und Einstellungen\xxx\Anwendungsdaten\ImgBurn ->
[2007.12.11 13:50:45 | 000,000,000 | ---D | M]
Jomedia -> C:\Dokumente und Einstellungen\xxx\Anwendungsdaten\Jomedia ->
[2009.03.08 20:08:24 | 000,000,000 | ---D | M]
OpenOffice.org -> C:\Dokumente und
Einstellungen\xxx\Anwendungsdaten\OpenOffice.org -> [2008.11.16 01:31:00
| 000,000,000 | ---D | M]
pdfforge -> C:\Dokumente und Einstellungen\xxx\Anwendungsdaten\pdfforge
-> [2009.08.07 14:18:05 | 000,000,000 | ---D | M]
Search Settings -> C:\Dokumente und
Einstellungen\xxx\Anwendungsdaten\Search Settings -> [2009.03.09
01:15:55 | 000,000,000 | ---D | M]
Template -> C:\Dokumente und Einstellungen\xxx\Anwendungsdaten\Template
-> [2007.12.03 23:56:25 | 000,000,000 | ---D | M]
Thunderbird -> C:\Dokumente und
Einstellungen\xxx\Anwendungsdaten\Thunderbird -> [2010.04.21 19:43:48 |
000,000,000 | ---D | M]
Ubisoft -> C:\Dokumente und Einstellungen\xxx\Anwendungsdaten\Ubisoft ->
[2009.09.12 17:30:00 | 000,000,000 | ---D | M]
[File - Purity Scan]
[Custom Scans]
< %SYSTEMDRIVE%\*.exe >
< %systemroot%\*. /mp /s >
Restore point Set: OTS Restore Point (0)
< %systemroot%\system32\*.dll /lockedfiles >
expsrv.dll : Unable to obtain MD5 -> C:\WINDOWS\system32\expsrv.dll ->
[2008.04.14 04:22:10 | 000,380,445 | ---- | M | Unable to obtain MD5]
(Microsoft Corporation)
< %systemroot%\Tasks\*.job /lockedfiles >
< %systemroot%\system32\drivers\*.sys /90 >
mbam.sys -> C:\WINDOWS\system32\drivers\mbam.sys -> [2010.04.29 12:19:14
| 000,020,952 | ---- | M | MD5 = A02C631493AB553A1112A6B699FE61B3]
(Malwarebytes Corporation)
mbamswissarmy.sys -> C:\WINDOWS\system32\drivers\mbamswissarmy.sys ->
[2010.04.29 12:19:24 | 000,038,224 | ---- | M | MD5 =
7364D8A830F91C487F430A57FDBD2BBB] (Malwarebytes Corporation)
< %systemroot%\system32\ws2help.dll /md5 >
ws2help.dll : MD5=C7D8A0517CBF16B84F657DE87EBE9D4B ->
C:\WINDOWS\system32\ws2help.dll -> [2008.04.14 04:22:32 | 000,019,968 |
---- | M | MD5 = C7D8A0517CBF16B84F657DE87EBE9D4B] (Microsoft Corporation)
< HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU >
Reg Error: Key
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU\
not found. -> ->
<
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto
Update\Results\Install|LastSuccessTime /rs >
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto
Update\Results\Install -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto
Update\Results\Install\\LastSuccessTime -> 2010-07-13 11:23:30 ->
[Alternate Data Streams]
@Alternate Data Stream - 76 bytes -> C:\Dokumente und
Einstellungen\xxx\Desktop\dum di dum:Roxio EMC Stream
@Alternate Data Stream - 76 bytes -> C:\Dokumente und
Einstellungen\xxx\Desktop\für Rob:Roxio EMC Stream
@Alternate Data Stream - 76 bytes -> C:\Dokumente und
Einstellungen\xxx\Desktop\Irland CD:Roxio EMC Stream
@Alternate Data Stream - 76 bytes -> C:\Dokumente und
Einstellungen\xxx\Desktop\MPlayer-1.0rc2-gui:Roxio EMC Stream
@Alternate Data Stream - 76 bytes -> C:\Dokumente und
Einstellungen\xxx\Eigene Dateien\Dell Webcam Center:Roxio EMC Stream
@Alternate Data Stream - 76 bytes -> C:\Dokumente und
Einstellungen\xxx\Eigene Dateien\downloads:Roxio EMC Stream
@Alternate Data Stream - 76 bytes -> C:\Dokumente und
Einstellungen\xxx\Eigene Dateien\DSA:Roxio EMC Stream
@Alternate Data Stream - 76 bytes -> C:\Dokumente und
Einstellungen\xxx\Eigene Dateien\EA Games:Roxio EMC Stream
@Alternate Data Stream - 76 bytes -> C:\Dokumente und
Einstellungen\xxx\Eigene Dateien\ICQ:Roxio EMC Stream
@Alternate Data Stream - 76 bytes -> C:\Dokumente und
Einstellungen\xxx\Eigene Dateien\jenni-kram:Roxio EMC Stream
@Alternate Data Stream - 76 bytes -> C:\Dokumente und
Einstellungen\xxx\Eigene Dateien\kalender:Roxio EMC Stream
@Alternate Data Stream - 76 bytes -> C:\Dokumente und
Einstellungen\xxx\Eigene Dateien\mietvertrag:Roxio EMC Stream
@Alternate Data Stream - 76 bytes -> C:\Dokumente und
Einstellungen\xxx\Eigene Dateien\My Music:Roxio EMC Stream
@Alternate Data Stream - 76 bytes -> C:\Dokumente und
Einstellungen\xxx\Eigene Dateien\OriginLab:Roxio EMC Stream
< End of report > |