Hallo,
Ich habe im Internet eine Logfileauswertung von hijackthis gemacht, wobei er mir einen eintrag als shcädlich und zwei als unbekannt anzeigte...
ich habe die zwei Programme laufen lassen und folgende Reporte:
Malwarebytes' Anti-Malware 1.39
Datenbank Version: 2511
Windows 5.1.2600 Service Pack 3
27.07.2009 19:04:12
mbam-log-2009-07-27 (19-04-06).txt
Scan-Methode: Vollständiger Scan (C:\|)
Durchsuchte Objekte: 153923
Laufzeit: 2 hour(s), 25 minute(s), 45 second(s)
Infizierte Speicherprozesse: 0
Infizierte Speichermodule: 0
Infizierte Registrierungsschlüssel: 0
Infizierte Registrierungswerte: 0
Infizierte Dateiobjekte der Registrierung: 0
Infizierte Verzeichnisse: 0
Infizierte Dateien: 2
Infizierte Speicherprozesse:
(Keine bösartigen Objekte gefunden)
Infizierte Speichermodule:
(Keine bösartigen Objekte gefunden)
Infizierte Registrierungsschlüssel:
(Keine bösartigen Objekte gefunden)
Infizierte Registrierungswerte:
(Keine bösartigen Objekte gefunden)
Infizierte Dateiobjekte der Registrierung:
(Keine bösartigen Objekte gefunden)
Infizierte Verzeichnisse:
(Keine bösartigen Objekte gefunden)
Infizierte Dateien:
C:\Dokumente und Einstellungen\XP nur zum PC testen\Cookies\MM2048.DAT (Trojan.Agent) -> No action taken.
C:\Dokumente und Einstellungen\XP nur zum PC testen\Cookies\MM256.DAT (Trojan.Agent) -> No action taken.
und den zweiten:
Logfile of random's system information tool 1.06 (written by random/random)
Run by XP nur zum PC testen at 2009-07-27 16:20:08
Microsoft Windows XP Professional Service Pack 3
System drive C: has 139 GB (88%) free of 157 GB
Total RAM: 1023 MB (60% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 16:20:10, on 27.07.2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal
======Scheduled tasks folder======
C:\WINDOWS\tasks\1-Klick-Wartung.job
======Registry dump======
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Ptipbmf"=ptipbmf.dll,SetWriteCacheMode []
"WorksFUD"=C:\Programme\Microsoft Works\wkfud.exe [2000-07-12 24576]
"Microsoft Works Portfolio"=C:\Programme\Microsoft Works\WksSb.exe [2000-07-12 311350]
"Microsoft Works Update Detection"=C:\Programme\Microsoft Works\WkDetect.exe [2000-07-21 28739]
"NeroCheck"=C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
"ISUSPM Startup"=C:\PROGRA~1\GEMEIN~1\INSTAL~1\UPDATE~1\isuspm.exe [2004-06-16 221184]
"ISUSScheduler"=C:\Programme\Gemeinsame Dateien\InstallShield\UpdateService\issch.exe [2004-06-16 81920]
"C-Media Mixer"=Mixer.exe /startup []
"StartCCC"=C:\Programme\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2006-11-10 90112]
"avgnt"=C:\Programme\Avira\AntiVir Desktop\avgnt.exe [2009-03-02 209153]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"H/PC Connection Agent"=C:\Programme\Microsoft ActiveSync\WCESCOMM.EXE [2005-01-04 405583]
"updateMgr"=C:\Programme\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_9 -reboot 1 []
C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart
Erinnerungen in Microsoft Works-Kalender.lnk - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Works Shared\wkcalrem.exe
GetRight Taskleisten-Symbol.lnk - C:\Programme\GetRight\getright.exe
InterVideo WinCinema Manager.lnk - C:\Programme\InterVideo\Common\Bin\WinCinemaMgr.exe
Microsoft Office.lnk - C:\Programme\Microsoft Office\Office\OSA9.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2007-06-13 118784]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UploadMgr]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Team17\Worms2\frontend.exe"="C:\Team17\Worms2\frontend.exe:*:Enabled:Worms 2 Frontend"
"C:\Programme\devolo\dlan\dlanconf\dlanconf.exe"="C:\Programme\devolo\dlan\dlanconf\dlanconf.exe:*:Enabled:dLAN-Konfigurationsassistent"
"C:\Programme\xp-AntiSpy\xp-AntiSpy.exe"="C:\Programme\xp-AntiSpy\xp-AntiSpy.exe:*:Enabled:xp-AntiSpy"
"C:\Programme\EA Games\Command and Conquer Generäle\game.dat"="C:\Programme\EA Games\Command and Conquer Generäle\game.dat:*:Enabled:game"
"C:\Programme\Electronic Arts\Command & Conquer 3\CNC3.exe"="C:\Programme\Electronic Arts\Command & Conquer 3\CNC3.exe:*:Enabled:Command & Conquer 3 Tiberium Wars™ spielen"
"C:\Programme\Codemasters\Race Driver 3\RD3.exe"="C:\Programme\Codemasters\Race Driver 3\RD3.exe:*:Enabled:RaceDriver 3 Application"
"C:\Programme\Electronic Arts\Command & Conquer 3\RetailExe\1.0\cnc3game.dat"="C:\Programme\Electronic Arts\Command & Conquer 3\RetailExe\1.0\cnc3game.dat:*:Enabled:Command & Conquer 3 Tiberium Wars"
"C:\Programme\SEGA\Medieval II Total War\medieval2.exe"="C:\Programme\SEGA\Medieval II Total War\medieval2.exe:*:Enabled:Medieval 2: Total War"
"C:\Bernd\Müll\thandor.exe"="C:\Bernd\Müll\thandor.exe:*:Enabled:thandor"
"C:\Programme\Sierra\Empire Earth II\EE2.exe"="C:\Programme\Sierra\Empire Earth II\EE2.exe:*:Enabled:Empire Earth II"
"C:\Programme\Activision\Call of Duty 2\CoD2MP_s.exe"="C:\Programme\Activision\Call of Duty 2\CoD2MP_s.exe:*:Enabled:CoD2MP_s"
"C:\Programme\Atari\Crashday\Crashday.exe"="C:\Programme\Atari\Crashday\Crashday.exe:*:Enabled:Crashday"
"C:\Programme\Atari\Test Drive Unlimited\TestDriveUnlimited.exe"="C:\Programme\Atari\Test Drive Unlimited\TestDriveUnlimited.exe:*:Enabled:Test Drive Unlimited"
"C:\Bernd\Medal of Honor Pazific Assault\mohpa.exe"="C:\Bernd\Medal of Honor Pazific Assault\mohpa.exe:*:Enabled:Medal of Honor Pacific Assault(tm)"
"C:\UbiSoft\F1 Racing Championship\F1RC.exe"="C:\UbiSoft\F1 Racing Championship\F1RC.exe:*:Enabled:F1 Racing Championship"
"C:\Programme\Firaxis Games\Sid Meier's Alpha Centauri\terran.exe"="C:\Programme\Firaxis Games\Sid Meier's Alpha Centauri\terran.exe:*:Enabled:terran"
"C:\Programme\Microsoft ActiveSync\wcescomm.exe"="C:\Programme\Microsoft ActiveSync\wcescomm.exe:*:Enabled:ActiveSync Connection Manager"
"C:\Programme\Microsoft ActiveSync\WCESMgr.exe"="C:\Programme\Microsoft ActiveSync\WCESMgr.exe:*:Enabled:ActiveSync Application"
"C:\Bernd\CS\hl.exe"="C:\Bernd\CS\hl.exe:*:Disabled:Half-Life Launcher"
"C:\Bernd\CS\hltv.exe"="C:\Bernd\CS\hltv.exe:*:Enabled:HLTV Launcher"
"C:\Programme\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe"="C:\Programme\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe:*:Enabled:Kaspersky Anti-Virus"
"C:\Programme\KONAMI\Pro Evolution Soccer 2008\PES2008.exe"="C:\Programme\KONAMI\Pro Evolution Soccer 2008\PES2008.exe:*:Enabled:Pro Evolution Soccer 2008"
"C:\Programme\Gemeinsame Dateien\PocketSoft\RTPatch\AutoRTP\artpschd.exe"="C:\Programme\Gemeinsame Dateien\PocketSoft\RTPatch\AutoRTP\artpschd.exe:*:Enabled:artpschd"
"C:\Programme\Messenger\msmsgs.exe"="C:\Programme\Messenger\msmsgs.exe:*:Enabled:Windows Messenger"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
======List of files/folders created in the last 1 months======
2009-07-27 16:20:08 ----D---- C:\rsit
2009-07-27 16:10:58 ----A---- C:\WINDOWS\OEWABLog.txt
2009-07-27 16:08:24 ----D---- C:\WINDOWS\Prefetch
2009-07-27 15:43:44 ----HDC---- C:\WINDOWS\$NtUninstallKB971633$
2009-07-27 15:42:36 ----HDC---- C:\WINDOWS\$NtUninstallKB970238$
2009-07-27 15:41:16 ----HDC---- C:\WINDOWS\$NtUninstallKB969897$
2009-07-27 15:40:06 ----HDC---- C:\WINDOWS\$NtUninstallKB968537$
2009-07-27 15:38:42 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
2009-07-27 15:37:34 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2009-07-27 15:36:23 ----HDC---- C:\WINDOWS\$NtUninstallKB961371$
2009-07-27 15:35:13 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2009-07-27 15:34:03 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$
2009-07-27 15:32:56 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2009-07-27 15:31:50 ----HDC---- C:\WINDOWS\$NtUninstallKB958687$
2009-07-27 15:30:44 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2009-07-27 15:29:36 ----HDC---- C:\WINDOWS\$NtUninstallKB957097$
2009-07-27 15:28:32 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2009-07-27 15:27:24 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2009-07-27 15:25:59 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2009-07-27 15:24:44 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2009-07-27 15:23:33 ----HDC---- C:\WINDOWS\$NtUninstallKB954600$
2009-07-27 15:22:25 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2009-07-27 15:21:17 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2009-07-27 15:20:06 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2009-07-27 15:18:57 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2009-07-27 15:17:47 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2009-07-27 15:16:41 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2009-07-27 15:15:30 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2009-07-27 15:14:19 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2009-07-27 15:13:11 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2009-07-27 15:12:05 ----HDC---- C:\WINDOWS\$NtUninstallKB938464-v2$
2009-07-27 15:10:31 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2009-07-27 15:10:14 ----D---- C:\WINDOWS\LastGood.Tmp
2009-07-27 15:06:12 ----A---- C:\WINDOWS\setuplog.txt
2009-07-27 15:04:52 ----N---- C:\WINDOWS\system32\aaclient.dll
2009-07-27 15:04:51 ----N---- C:\WINDOWS\system32\credssp.dll
2009-07-27 15:04:51 ----N---- C:\WINDOWS\system32\bitsprx4.dll
2009-07-27 15:04:51 ----N---- C:\WINDOWS\system32\azroles.dll
2009-07-27 15:04:50 ----N---- C:\WINDOWS\system32\dot3svc.dll
2009-07-27 15:04:50 ----N---- C:\WINDOWS\system32\dot3msm.dll
2009-07-27 15:04:50 ----N---- C:\WINDOWS\system32\dot3gpclnt.dll
2009-07-27 15:04:50 ----N---- C:\WINDOWS\system32\dot3dlg.dll
2009-07-27 15:04:50 ----N---- C:\WINDOWS\system32\dot3cfg.dll
2009-07-27 15:04:50 ----N---- C:\WINDOWS\system32\dot3api.dll
2009-07-27 15:04:50 ----N---- C:\WINDOWS\system32\dimsroam.dll
2009-07-27 15:04:50 ----N---- C:\WINDOWS\system32\dimsntfy.dll
2009-07-27 15:04:50 ----N---- C:\WINDOWS\system32\dhcpqec.dll
2009-07-27 15:04:49 ----N---- C:\WINDOWS\system32\dot3ui.dll
2009-07-27 15:04:48 ----N---- C:\WINDOWS\system32\eappgnui.dll
2009-07-27 15:04:48 ----N---- C:\WINDOWS\system32\eappcfg.dll
2009-07-27 15:04:48 ----N---- C:\WINDOWS\system32\eapp3hst.dll
2009-07-27 15:04:48 ----N---- C:\WINDOWS\system32\eapolqec.dll
2009-07-27 15:04:47 ----N---- C:\WINDOWS\system32\eapsvc.dll
2009-07-27 15:04:47 ----N---- C:\WINDOWS\system32\eapqec.dll
2009-07-27 15:04:47 ----N---- C:\WINDOWS\system32\eappprxy.dll
2009-07-27 15:04:47 ----N---- C:\WINDOWS\system32\eapphost.dll
2009-07-27 15:04:44 ----N---- C:\WINDOWS\system32\l2gpstore.dll
2009-07-27 15:04:44 ----N---- C:\WINDOWS\system32\kmsvc.dll
2009-07-27 15:04:44 ----N---- C:\WINDOWS\system32\kbdpash.dll
2009-07-27 15:04:44 ----N---- C:\WINDOWS\system32\kbdnepr.dll
2009-07-27 15:04:44 ----N---- C:\WINDOWS\system32\kbdiultn.dll
2009-07-27 15:04:44 ----N---- C:\WINDOWS\system32\kbdbhc.dll
2009-07-27 15:04:42 ----N---- C:\WINDOWS\system32\mmcperf.exe
2009-07-27 15:04:42 ----N---- C:\WINDOWS\system32\mmcfxcommon.dll
2009-07-27 15:04:42 ----N---- C:\WINDOWS\system32\mmcex.dll
2009-07-27 15:04:42 ----N---- C:\WINDOWS\system32\microsoft.managementconsole.dll
2009-07-27 15:04:41 ----N---- C:\WINDOWS\system32\msshavmsg.dll
2009-07-27 15:04:41 ----N---- C:\WINDOWS\system32\mssha.dll
2009-07-27 15:04:40 ----N---- C:\WINDOWS\system32\napstat.exe
2009-07-27 15:04:40 ----N---- C:\WINDOWS\system32\napmontr.dll
2009-07-27 15:04:40 ----N---- C:\WINDOWS\system32\napipsec.dll
2009-07-27 15:04:38 ----N---- C:\WINDOWS\system32\onex.dll
2009-07-27 15:04:36 ----N---- C:\WINDOWS\system32\rhttpaa.dll
2009-07-27 15:04:36 ----N---- C:\WINDOWS\system32\rasqec.dll
2009-07-27 15:04:36 ----N---- C:\WINDOWS\system32\qutil.dll
2009-07-27 15:04:36 ----N---- C:\WINDOWS\system32\qcliprov.dll
2009-07-27 15:04:36 ----N---- C:\WINDOWS\system32\qagentrt.dll
2009-07-27 15:04:36 ----N---- C:\WINDOWS\system32\qagent.dll
2009-07-27 15:04:35 ----N---- C:\WINDOWS\system32\setupn.exe
2009-07-27 15:04:29 ----N---- C:\WINDOWS\system32\tspkg.dll
2009-07-27 15:04:29 ----N---- C:\WINDOWS\system32\tsgqec.dll
2009-07-27 15:04:26 ----N---- C:\WINDOWS\system32\wlanapi.dll
2009-07-27 15:04:25 ----N---- C:\WINDOWS\system32\xmllite.dll
2009-07-27 15:04:16 ----D---- C:\WINDOWS\system32\de
2009-07-27 15:04:16 ----D---- C:\WINDOWS\l2schemas
2009-07-27 14:53:23 ----D---- C:\WINDOWS\network diagnostic
2009-07-27 14:51:01 ----A---- C:\WINDOWS\005829_.tmp
2009-07-27 13:05:11 ----D---- C:\Dokumente und Einstellungen\XP nur zum PC testen\Anwendungsdaten\Mozilla
2009-07-27 13:04:43 ----D---- C:\Programme\Mozilla Firefox
2009-07-27 13:00:34 ----D---- C:\Programme\Foxit Software
2009-07-27 13:00:34 ----D---- C:\Dokumente und Einstellungen\XP nur zum PC testen\Anwendungsdaten\Foxit
2009-07-27 11:59:12 ----D---- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Avira
2009-07-27 11:25:47 ----A---- C:\WINDOWS\system32\mucltui.dll.mui
2009-07-26 18:23:47 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2_0$
2009-07-26 18:23:40 ----HDC---- C:\WINDOWS\$NtUninstallKB952954_0$
2009-07-26 18:23:29 ----HDC---- C:\WINDOWS\$NtUninstallKB959426_0$
2009-07-26 18:23:21 ----HDC---- C:\WINDOWS\$NtUninstallKB946648_0$
2009-07-26 18:23:13 ----HDC---- C:\WINDOWS\$NtUninstallKB956803_0$
2009-07-26 18:23:07 ----HDC---- C:\WINDOWS\$NtUninstallKB955839$
2009-07-26 18:22:56 ----HDC---- C:\WINDOWS\$NtUninstallKB950974_0$
2009-07-26 18:22:49 ----HDC---- C:\WINDOWS\$NtUninstallKB960225_0$
2009-07-26 18:22:42 ----HDC---- C:\WINDOWS\$NtUninstallKB973346$
2009-07-26 18:22:37 ----D---- C:\Programme\Microsoft CAPICOM 2.1.0.2
2009-07-26 18:21:40 ----HDC---- C:\WINDOWS\$NtUninstallKB956572_0$
2009-07-26 18:21:25 ----HDC---- C:\WINDOWS\$NtUninstallKB961501_0$
2009-07-26 18:20:40 ----HDC---- C:\WINDOWS\$NtUninstallKB969897_0$
2009-07-26 18:20:27 ----D---- C:\Programme\MSXML 6.0
2009-07-26 18:20:17 ----HDC---- C:\WINDOWS\$NtUninstallKB938464-v2_0$
2009-07-26 18:20:06 ----HDC---- C:\WINDOWS\$NtUninstallKB971633_0$
2009-07-26 18:19:58 ----HDC---- C:\WINDOWS\$NtUninstallKB925720$
2009-07-26 18:19:47 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2009-07-26 18:19:32 ----HDC---- C:\WINDOWS\$NtUninstallKB952004_0$
2009-07-26 18:19:26 ----HDC---- C:\WINDOWS\$NtUninstallKB941569$
2009-07-26 18:19:08 ----HDC---- C:\WINDOWS\$NtUninstallKB950762_0$
2009-07-26 18:18:59 ----HDC---- C:\WINDOWS\$NtUninstallKB957097_0$
2009-07-26 18:18:52 ----HDC---- C:\WINDOWS\$NtUninstallKB923689$
2009-07-26 18:18:32 ----HDC---- C:\WINDOWS\$NtUninstallKB958687_0$
2009-07-26 18:18:23 ----HDC---- C:\WINDOWS\$NtUninstallKB952287_0$
2009-07-26 18:17:45 ----HDC---- C:\WINDOWS\$NtUninstallKB967715_0$
2009-07-26 18:17:28 ----HDC---- C:\WINDOWS\$NtUninstallKB951066_0$
2009-07-26 18:17:15 ----HDC---- C:\WINDOWS\$NtUninstallKB951748_0$
2009-07-26 18:17:05 ----HDC---- C:\WINDOWS\$NtUninstallKB970238_0$
2009-07-26 18:16:57 ----HDC---- C:\WINDOWS\$NtUninstallKB960803_0$
2009-07-26 18:16:44 ----HDC---- C:\WINDOWS\$NtUninstallKB968537_0$
2009-07-26 18:16:36 ----HDC---- C:\WINDOWS\$NtUninstallKB954600_0$
2009-07-26 18:16:28 ----HDC---- C:\WINDOWS\$NtUninstallKB958644_0$
2009-07-26 18:16:21 ----HDC---- C:\WINDOWS\$NtUninstallKB961371_0$
2009-07-26 18:16:09 ----HDC---- C:\WINDOWS\$NtUninstallKB955069_0$
2009-07-26 18:16:00 ----HDC---- C:\WINDOWS\$NtUninstallKB956802_0$
2009-07-26 18:15:38 ----HDC---- C:\WINDOWS\$NtUninstallKB944338-v2$
2009-07-26 18:15:25 ----HDC---- C:\WINDOWS\$NtUninstallKB923561_0$
2009-07-26 18:14:55 ----HDC---- C:\WINDOWS\$NtUninstallKB936782_WMP10$
2009-07-26 16:26:43 ----D---- C:\Programme\Trend Micro
2009-07-26 16:18:19 ----A---- C:\WINDOWS\system32\wucltui.dll.mui
2009-07-26 16:18:18 ----A---- C:\WINDOWS\system32\wuaueng.dll.mui
2009-07-26 16:18:16 ----A---- C:\WINDOWS\system32\wuapi.dll.mui
======List of files/folders modified in the last 1 months======
2009-07-27 16:18:44 ----RD---- C:\Eigene Dateien
2009-07-27 16:17:05 ----D---- C:\Programme\GetRight
2009-07-27 16:12:21 ----D---- C:\WINDOWS\system32
2009-07-27 16:12:18 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2009-07-27 16:11:16 ----SHD---- C:\WINDOWS\Installer
2009-07-27 16:11:16 ----D---- C:\Config.Msi
2009-07-27 16:11:07 ----D---- C:\WINDOWS\Temp
2009-07-27 16:10:58 ----D---- C:\WINDOWS
2009-07-27 16:10:52 ----D---- C:\WINDOWS\Debug
2009-07-27 16:08:58 ----D---- C:\WINDOWS\system32\CatRoot2
2009-07-27 16:07:24 ----D---- C:\WINDOWS\system32\Setup
2009-07-27 16:07:24 ----D---- C:\WINDOWS\AppPatch
2009-07-27 16:07:23 ----D---- C:\WINDOWS\system32\wbem
2009-07-27 16:07:22 ----D---- C:\WINDOWS\Fonts
2009-07-27 16:07:13 ----D---- C:\WINDOWS\system32\drivers
2009-07-27 16:07:12 ----D---- C:\Programme\Avira
2009-07-27 16:06:15 ----A---- C:\WINDOWS\SchedLgU.Txt
2009-07-27 15:44:41 ----D---- C:\WINDOWS\inf
2009-07-27 15:44:34 ----D---- C:\WINDOWS\system32\CatRoot
2009-07-27 15:44:33 ----DC---- C:\WINDOWS\system32\dllcache
2009-07-27 15:13:59 ----D---- C:\Programme\Messenger
2009-07-27 15:12:51 ----D---- C:\WINDOWS\WinSxS
2009-07-27 15:09:55 ----D---- C:\WINDOWS\security
2009-07-27 15:05:07 ----D---- C:\WINDOWS\ServicePackFiles
2009-07-27 15:05:05 ----D---- C:\WINDOWS\EHome
2009-07-27 15:05:02 ----D---- C:\WINDOWS\system32\inetsrv
2009-07-27 15:05:00 ----D---- C:\WINDOWS\ime
2009-07-27 15:05:00 ----D---- C:\WINDOWS\Help
2009-07-27 15:04:25 ----D---- C:\WINDOWS\system32\usmt
2009-07-27 15:04:25 ----D---- C:\WINDOWS\system32\de-DE
2009-07-27 15:04:17 ----D---- C:\Programme\Internet Explorer
2009-07-27 15:04:15 ----D---- C:\WINDOWS\system32\bits
2009-07-27 15:04:15 ----D---- C:\WINDOWS\peernet
2009-07-27 15:04:15 ----D---- C:\Programme\Movie Maker
2009-07-27 14:57:52 ----D---- C:\WINDOWS\system32\Restore
2009-07-27 14:57:52 ----D---- C:\WINDOWS\system32\npp
2009-07-27 14:57:50 ----D---- C:\WINDOWS\msagent
2009-07-27 14:57:46 ----D---- C:\WINDOWS\srchasst
2009-07-27 14:57:44 ----D---- C:\Programme\NetMeeting
2009-07-27 14:57:41 ----D---- C:\WINDOWS\system32\Com
2009-07-27 14:57:38 ----D---- C:\Programme\Windows Media Player
2009-07-27 14:57:31 ----D---- C:\Programme\Windows NT
2009-07-27 14:57:31 ----D---- C:\Programme\Outlook Express
2009-07-27 14:57:23 ----D---- C:\Programme\Gemeinsame Dateien\System
2009-07-27 14:56:52 ----D---- C:\WINDOWS\system32\oobe
2009-07-27 14:56:47 ----D---- C:\WINDOWS\system
2009-07-27 14:50:51 ----D---- C:\WINDOWS\system32\ReinstallBackups
2009-07-27 14:50:30 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2009-07-27 14:08:19 ----D---- C:\Downloads
2009-07-27 13:04:43 ----RD---- C:\Programme
2009-07-27 13:04:39 ----D---- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Adobe
2009-07-27 13:04:35 ----D---- C:\Programme\Gemeinsame Dateien\Adobe
2009-07-26 18:23:47 ----D---- C:\WINDOWS\$hf_mig$
2009-07-26 16:52:48 ----D---- C:\Programme\QuickTime
2009-07-26 16:49:22 ----DC---- C:\WINDOWS\system32\DRVSTORE
2009-07-26 16:49:21 ----D---- C:\Programme\Gemeinsame Dateien
2009-07-26 16:46:16 ----D---- C:\Programme\Apple Software Update
2009-07-26 16:46:09 ----D---- C:\WINDOWS\Tasks
2009-07-26 16:45:33 ----D---- C:\Programme\Ashampoo
2009-07-26 16:43:59 ----HD---- C:\Programme\InstallShield Installation Information
2009-07-26 16:43:42 ----D---- C:\WINDOWS\twain_32
2009-07-26 16:35:02 ----SD---- C:\WINDOWS\Downloaded Program Files
2009-07-26 16:19:04 ----D---- C:\WINDOWS\SoftwareDistribution
2009-07-21 17:20:51 ----A---- C:\WINDOWS\IE4 Error Log.txt
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 avgio;avgio; \??\C:\Programme\Avira\AntiVir Desktop\avgio.sys []
R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [2009-03-30 96104]
R1 prodrv06;StarForce Protection Environment Driver v6; C:\WINDOWS\System32\drivers\prodrv06.sys [2004-09-03 54368]
R1 SSHDRV5C;SSHDRV5C; \??\C:\WINDOWS\System32\drivers\SSHDRV5C.sys []
R1 ssmdrv;ssmdrv; C:\WINDOWS\system32\DRIVERS\ssmdrv.sys [2009-05-11 28520]
R2 aslm75;aslm75; \??\C:\WINDOWS\system32\drivers\aslm75.sys []
R2 atksgt;atksgt; C:\WINDOWS\System32\DRIVERS\atksgt.sys [2006-10-16 271360]
R2 avgntflt;avgntflt; C:\WINDOWS\system32\DRIVERS\avgntflt.sys [2009-03-24 55640]
R2 BrPar;BrPar; C:\WINDOWS\System32\drivers\BrPar.sys [2000-07-24 19537]
R2 lirsgt;lirsgt; C:\WINDOWS\System32\DRIVERS\lirsgt.sys [2006-07-13 18048]
R2 SVKP;SVKP; \??\C:\WINDOWS\System32\SVKP.sys []
R3 Arp1394;1394-ARP-Clientprotokoll; C:\WINDOWS\System32\DRIVERS\arp1394.sys [2008-04-14 60800]
R3 ati2mtag;ati2mtag; C:\WINDOWS\System32\DRIVERS\ati2mtag.sys [2007-06-13 2155520]
R3 cmpci;C-Media PCI Audio Driver (WDM); C:\WINDOWS\system32\drivers\cmaudio.sys [2002-07-16 379726]
R3 EL2000;3Com 3C2000x EtherLink XL Adapter; C:\WINDOWS\System32\DRIVERS\EL2K_XP.sys [2003-07-31 147456]
R3 NIC1394;1394-Netzwerktreiber; C:\WINDOWS\System32\DRIVERS\nic1394.sys [2008-04-14 61824]
R3 usbehci;Miniporttreiber für erweiterten Microsoft USB 2.0-Hostcontroller; C:\WINDOWS\System32\DRIVERS\usbehci.sys [2008-04-14 30208]
R3 usbhub;USB2-aktivierter Hub; C:\WINDOWS\System32\DRIVERS\usbhub.sys [2008-04-14 59520]
R3 usbprint;Microsoft USB-Druckerklasse; C:\WINDOWS\System32\DRIVERS\usbprint.sys [2008-04-14 25856]
R3 usbuhci;Miniporttreiber für universellen Microsoft USB-Hostcontroller; C:\WINDOWS\System32\DRIVERS\usbuhci.sys [2008-04-14 20608]
S1 ASPI32;ASPI32; C:\WINDOWS\system32\drivers\ASPI32.sys []
S2 SampleScanner;USB-Flachbettscanner; C:\WINDOWS\System32\DRIVERS\ArtecGT.sys [2001-06-07 18120]
S3 aeaudio;aeaudio; C:\WINDOWS\system32\drivers\aeaudio.sys []
S3 asbp2poa;asbp2poa; \??\C:\DOKUME~1\XPNURZ~1\LOKALE~1\Temp\asbp2poa.sys []
S3 Bridge;MAC-Brücke; C:\WINDOWS\System32\DRIVERS\bridge.sys [2008-04-14 71552]
S3 BridgeMP;MAC-Brückenminiport; C:\WINDOWS\System32\DRIVERS\bridge.sys [2008-04-14 71552]
S3 Camdrv30;Philips ToUcam XS; C:\WINDOWS\System32\Drivers\camdrv30.sys [2001-08-17 171264]
S3 CCDECODE;Closed Caption Decoder; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [2008-04-14 17024]
S3 CO_Mon;CO_Mon; \??\C:\WINDOWS\system32\Drivers\CO_Mon.sys []
S3 ENTECH;ENTECH; \??\C:\WINDOWS\System32\DRIVERS\ENTECH.SYS []
S3 FWLANUSB;AVM FRITZ!WLAN; C:\WINDOWS\System32\DRIVERS\fwlanusb.sys [2005-10-18 264704]
S3 HCF_MSFT;HCF_MSFT; C:\WINDOWS\System32\DRIVERS\HCF_MSFT.sys [2001-08-18 908352]
S3 HidUsb;Microsoft HID Class-Treiber; C:\WINDOWS\System32\DRIVERS\hidusb.sys [2008-04-14 10368]
S3 LVUSBSta;Logitech USB Monitor Filter; C:\WINDOWS\system32\drivers\lvusbsta.sys []
S3 mouhid;Maus-HID-Treiber; C:\WINDOWS\System32\DRIVERS\mouhid.sys [2001-08-18 12288]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-14 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\System32\DRIVERS\NABTSFEC.sys [2008-04-14 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [2008-04-14 10880]
S3 nv;nv; C:\WINDOWS\System32\DRIVERS\nv4_mini.sys [2004-08-03 1897408]
S3 PLCMPR5;PLCMPR5 NDIS Protocol Driver; \??\C:\WINDOWS\System32\PLCMPR5.SYS []
S3 QCMerced;Logitech QuickCam Communicate; C:\WINDOWS\System32\DRIVERS\LVCM.sys []
S3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\WINDOWS\System32\Drivers\RootMdm.sys [2001-08-18 5888]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\System32\DRIVERS\SLIP.sys [2008-04-14 11136]
S3 smwdm;smwdm; C:\WINDOWS\system32\drivers\smwdm.sys []
S3 StillCam;Treiber für serielle Digitalkamera; C:\WINDOWS\System32\DRIVERS\serscan.sys [2001-08-18 7040]
S3 streamip;BDA IPSink; C:\WINDOWS\System32\DRIVERS\StreamIP.sys [2008-04-14 15232]
S3 usbaudio;USB-Audiotreiber (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2008-04-14 60032]
S3 usbccgp;Microsoft Standard-USB-Haupttreiber; C:\WINDOWS\System32\DRIVERS\usbccgp.sys [2008-04-14 32128]
S3 USBSTOR;USB-Massenspeichertreiber; C:\WINDOWS\System32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 wceusbsh;Windows CE USB Serial Host Driver; C:\WINDOWS\system32\DRIVERS\wceusbsh.sys [2004-12-06 104064]
S3 Wdf01000;Wdf01000; C:\WINDOWS\system32\DRIVERS\Wdf01000.sys [2006-04-20 479200]
S3 WSTCODEC;World Standard Teletext Codec; C:\WINDOWS\System32\DRIVERS\WSTCODEC.SYS [2008-04-14 19200]
S3 xusb21;Xbox 360 Wireless Receiver Driver Service 21; C:\WINDOWS\system32\DRIVERS\xusb21.sys [2007-02-26 61984]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AAV UpdateService;AAV UpdateService; C:\Programme\Gemeinsame Dateien\AAV\aavus.exe [2007-10-04 122880]
R2 AntiVirSchedulerService;Avira AntiVir Planer; C:\Programme\Avira\AntiVir Desktop\sched.exe [2009-05-13 108289]
R2 AntiVirService;Avira AntiVir Guard; C:\Programme\Avira\AntiVir Desktop\avguard.exe [2009-05-11 185089]
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2007-06-13 483328]
R2 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\System32\wdfmgr.exe [2005-01-28 38912]
S2 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [2007-06-13 520192]
S2 Brother XP spl Service;BrSplService; C:\WINDOWS\System32\brsvc01a.exe [2002-04-12 57344]
S2 wservtime;Windows Time Sync; C:\WINDOWS\csrss.exe []
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2005-09-23 29896]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2005-09-23 66240]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2006-10-20 36864]
S3 IDriverT;InstallDriver Table Manager; C:\Programme\Gemeinsame Dateien\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2006-10-30 741376]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2006-10-30 122880]
S4 Srv32;Srv32; C:\WINDOWS\system32\srv32.exe S []
-----------------EOF-----------------
info.txt logfile of random's system information tool 1.06 2009-07-27 16:20:13
======Uninstall list======
-->MsiExec.exe /X{27579b3c-5470-4496-be6c-0c872674f19f}
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
Adobe Flash Player 9 ActiveX-->C:\WINDOWS\System32\Macromed\Flash\FlashUtil9b.exe -uninstallDelete
ASUS Probe V2.21.08-->C:\WINDOWS\uninst.exe -f"C:\Program Files\ASUS\Probe\DeIsL1.isu" -c"C:\Program Files\ASUS\Probe\probunis.dll"
ATI - Software Uninstall Utility-->C:\Programme\ATI Technologies\UninstallAll\AtiCimUn.exe
ATI Catalyst Control Center-->RunDll32 C:\PROGRA~1\GEMEIN~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Programme\InstallShield Installation Information\{055EE59D-217B-43A7-ABFF-507B966405D8}\setup.exe" -l0x6974
ATI Display Driver-->rundll32 C:\WINDOWS\system32\atiiiexx.dll,_InfEngUnInstallINFFile_RunDLL@16 -force_restart -flags:0x2010001 -inf_class:DISPLAY -clean
Avira AntiVir Personal - Free Antivirus-->C:\Programme\Avira\AntiVir Desktop\setup.exe /REMOVE
Brother HL-1430-->"C:\Programme\Brother\BRHL1430\IsUn0407.exe" -f"C:\Programme\Brother\BRHL1430\DeIsL7.isu" -cbruninst.dll
Crashday-->RunDll32 C:\PROGRA~1\GEMEIN~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Programme\InstallShield Installation Information\{9C27ADE1-EAFB-4BB7-9FE3-5DD9BA9A3DD2}\SETUP.EXE" -l0x7 -removeonly
Direct Show Ogg Vorbis Filter (remove only)-->"C:\WINDOWS\System32\OggDSuninst.exe"
EAX Unified-->C:\WINDOWS\IsUninst.exe -f"C:\Programme\Creative\EAX Unified\Uninst.isu"
Foxit Reader-->C:\Programme\Foxit Software\Foxit Reader\Uninstall.exe
GetRight-->C:\Programme\GetRight\GETRIGHT.EXE /UNINSTALL
HijackThis 2.0.2-->"C:\Programme\Trend Micro\HijackThis\HijackThis.exe" /uninstall
Hotfix für Windows XP (KB952287)-->"C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
InstallRTC-->MsiExec.exe /X{200F584F-848D-4B6B-B1A1-C74D735F18A4}
InterBase-->"C:\Programme\Borland\InterBase\ibuninst.exe" "C:\Programme\Borland\InterBase\ibuninst.000"
InterVideo WinDVD-->"C:\Programme\InstallShield Installation Information\{91810AFC-A4F8-4EBA-A5AA-B198BBC81144}\setup.exe" REMOVEALL
Microsoft .NET Framework 2.0 Language Pack - DEU-->C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0 Language Pack - DEU\install.exe
Microsoft .NET Framework 2.0-->C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\install.exe
Microsoft .NET Framework 3.0 German Language Pack-->c:\WINDOWS\Microsoft.NET\Framework\v3.0\Microsoft .NET Framework 3.0 German Language Pack\setup.exe
Microsoft .NET Framework 3.0 German Language Pack-->MsiExec.exe /X{F2A7F421-1679-48D5-B918-96999014ED53}
Microsoft .NET Framework 3.0-->C:\WINDOWS\Microsoft.NET\Framework\v3.0\Microsoft .NET Framework 3.0\setup.exe
Microsoft ActiveSync 3.8-->"C:\WINDOWS\ISUN0407.EXE" -f"C:\Programme\Microsoft ActiveSync\DeIsL1.isu" -c"C:\Programme\Microsoft ActiveSync\ceuninst.dll"
Microsoft AutoRoute 2001-->MsiExec.exe /I{4D719053-5593-11D3-8F25-0060085C1758}
Microsoft Business Solutions-Navision 4.0-->MsiExec.exe /I{00000000-0000-4000-3600-0000836BD2D2}
Microsoft Encarta Enzyklopädie PLUS 2001-->MsiExec.exe /I{01008101-5D65-445A-B3B4-3DCE72BA0C6C}
Microsoft Encarta Weltatlas 2001-->MsiExec.exe /I{02008202-5D65-445A-B3B4-3DCE72BA0C6C}
Microsoft Kernel-Mode Driver Framework Feature Pack 1.1-->"C:\WINDOWS\$NtUninstallWdf01001$\spuninst\spuninst.exe"
Microsoft Office 2000 SR-1 Disc 2-->MsiExec.exe /I{00040407-78E1-11D2-B60F-006097C998E7}
Microsoft Office 2000 SR-1 Premium-->MsiExec.exe /I{00000407-78E1-11D2-B60F-006097C998E7}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
Microsoft Works 2001-Setup-Start-->C:\Programme\Microsoft Works Suite 2001\Setup\Launcher.exe D:\
Microsoft Works 6.0-->MsiExec.exe /I{D0AC6844-79D4-11D4-AFEE-00C04F443448}
Mozilla Firefox (3.5.1)-->C:\Programme\Mozilla Firefox\uninstall\helper.exe
MSXML 4.0 SP2 (KB925672)-->MsiExec.exe /I{A9CF9052-F4A0-475D-A00F-A8388C62DD63}
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
MSXML 4.0 SP2 Parser and SDK-->MsiExec.exe /I{716E0306-8318-4364-8B8F-0CC4E9376BAC}
MSXML 6 Service Pack 2 (KB954459)-->MsiExec.exe /I{1A528690-6A2D-4BC5-B143-8C4AE8D19D96}
MSXML4 Parser-->MsiExec.exe /I{01501EBA-EC35-4F9F-8889-3BE346E5DA13}
Nero OEM-->C:\Programme\Ahead\nero\uninstall\UNNERO.exe /UNINSTALL
PCI Audio Driver-->cmuninst.exe
prospector-->C:\WINDOWS\unin0407.exe -fC:\Programme\prospector\DeIsL1.isu -cC:\Programme\prospector\_ISREG32.DLL
Security Update for CAPICOM (KB931906)-->MsiExec.exe /I{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for CAPICOM (KB931906)-->MsiExec.exe /X{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Shockwave-->C:\WINDOWS\system32\Macromed\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\Macromed\SHOCKW~1\INSTALL.LOG
Sicherheitsupdate für Windows Media Player (KB952069)-->"C:\WINDOWS\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe"
Sicherheitsupdate für Windows Media Player 10 (KB917734)-->"C:\WINDOWS\$NtUninstallKB917734_WMP10$\spuninst\spuninst.exe"
Sicherheitsupdate für Windows Media Player 10 (KB936782)-->"C:\WINDOWS\$NtUninstallKB936782_WMP10$\spuninst\spuninst.exe"
Sicherheitsupdate für Windows XP (KB904706)-->"C:\WINDOWS\$NtUninstallKB904706$\spuninst\spuninst.exe"
Sicherheitsupdate für Windows XP (KB923561)-->"C:\WINDOWS\$NtUninstallKB923561$\spuninst\spuninst.exe"
Sicherheitsupdate für Windows XP (KB938464-v2)-->"C:\WINDOWS\$NtUninstallKB938464-v2$\spuninst\spuninst.exe"
Sicherheitsupdate für Windows XP (KB941569)-->"C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
Sicherheitsupdate für Windows XP (KB946648)-->"C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
Sicherheitsupdate für Windows XP (KB950762)-->"C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
Sicherheitsupdate für Windows XP (KB950974)-->"C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
Sicherheitsupdate für Windows XP (KB951066)-->"C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
Sicherheitsupdate für Windows XP (KB951376-v2)-->"C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
Sicherheitsupdate für Windows XP (KB951748)-->"C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
Sicherheitsupdate für Windows XP (KB952004)-->"C:\WINDOWS\$NtUninstallKB952004$\spuninst\spuninst.exe"
Sicherheitsupdate für Windows XP (KB952954)-->"C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
Sicherheitsupdate für Windows XP (KB954600)-->"C:\WINDOWS\$NtUninstallKB954600$\spuninst\spuninst.exe"
Sicherheitsupdate für Windows XP (KB955069)-->"C:\WINDOWS\$NtUninstallKB955069$\spuninst\spuninst.exe"
Sicherheitsupdate für Windows XP (KB956572)-->"C:\WINDOWS\$NtUninstallKB956572$\spuninst\spuninst.exe"
Sicherheitsupdate für Windows XP (KB956802)-->"C:\WINDOWS\$NtUninstallKB956802$\spuninst\spuninst.exe"
Sicherheitsupdate für Windows XP (KB956803)-->"C:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe"
Sicherheitsupdate für Windows XP (KB957097)-->"C:\WINDOWS\$NtUninstallKB957097$\spuninst\spuninst.exe"
Sicherheitsupdate für Windows XP (KB958644)-->"C:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe"
Sicherheitsupdate für Windows XP (KB958687)-->"C:\WINDOWS\$NtUninstallKB958687$\spuninst\spuninst.exe"
Sicherheitsupdate für Windows XP (KB959426)-->"C:\WINDOWS\$NtUninstallKB959426$\spuninst\spuninst.exe"
Sicherheitsupdate für Windows XP (KB960225)-->"C:\WINDOWS\$NtUninstallKB960225$\spuninst\spuninst.exe"
Sicherheitsupdate für Windows XP (KB960803)-->"C:\WINDOWS\$NtUninstallKB960803$\spuninst\spuninst.exe"
Sicherheitsupdate für Windows XP (KB961371)-->"C:\WINDOWS\$NtUninstallKB961371$\spuninst\spuninst.exe"
Sicherheitsupdate für Windows XP (KB961501)-->"C:\WINDOWS\$NtUninstallKB961501$\spuninst\spuninst.exe"
Sicherheitsupdate für Windows XP (KB968537)-->"C:\WINDOWS\$NtUninstallKB968537$\spuninst\spuninst.exe"
Sicherheitsupdate für Windows XP (KB969897)-->"C:\WINDOWS\$NtUninstallKB969897$\spuninst\spuninst.exe"
Sicherheitsupdate für Windows XP (KB970238)-->"C:\WINDOWS\$NtUninstallKB970238$\spuninst\spuninst.exe"
Sicherheitsupdate für Windows XP (KB971633)-->"C:\WINDOWS\$NtUninstallKB971633$\spuninst\spuninst.exe"
Sicherheitsupdate für Windows XP (KB973346)-->"C:\WINDOWS\$NtUninstallKB973346$\spuninst\spuninst.exe"
SpeechRedist-->MsiExec.exe /X{8795CBED-55E2-4693-9F14-84EC446935BE}
Steuer-Spar-Erklärung 2008-->MsiExec.exe /I{BBE67B86-FCD7-4D3C-8B00-063DEAD8E30C}
Update für Windows XP (KB955839)-->"C:\WINDOWS\$NtUninstallKB955839$\spuninst\spuninst.exe"
Update für Windows XP (KB967715)-->"C:\WINDOWS\$NtUninstallKB967715$\spuninst\spuninst.exe"
Windows Communication Foundation-->MsiExec.exe /X{491DD792-AD81-429C-9EB4-86DD3D22E333}
Windows Imaging Component-->"C:\WINDOWS\$NtUninstallWIC$\spuninst\spuninst.exe"
Windows Media Format Runtime-->"C:\Programme\Windows Media Player\wmsetsdk.exe" /UninstallAll
Windows Media Player 10-->"C:\Programme\Windows Media Player\Setup_wm.exe" /Uninstall
Windows Presentation Foundation Language Pack (DEU)-->MsiExec.exe /X{92DF2F1B-F63C-4D9A-B3E1-B2D11AE29790}
Windows Presentation Foundation-->MsiExec.exe /X{BAF78226-3200-4DB4-BE33-4D922A799840}
Windows Workflow Foundation DE Language Pack-->MsiExec.exe /I{7228FD8C-3B9E-4204-AE36-8A466107685B}
Windows Workflow Foundation-->MsiExec.exe /I{7D1B85BD-AA07-48B8-808D-67A4067FC6BD}
Windows XP Service Pack 3-->"C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe"
WinRAR Archivierer-->C:\Programme\WinRAR\uninstall.exe
XML Paper Specification Shared Components Language Pack 1.0-->"C:\WINDOWS\$NtUninstallXPSEPSCLP$\spuninst\spuninst.exe"
xp-AntiSpy (nur entfernen)-->"C:\Programme\xp-AntiSpy\uninstall.exe"
======Security center information======
AV: AntiVir PersonalEdition Classic Virenschutz
AV: AntiVir Desktop
AV: AntiVir PersonalEdition Classic Virenschutz
AV: Kaspersky Anti-Virus
======System event log======
Computer Name: MUTTIPC
Event Code: 7016
Message: Der Dienst "BrSplService" hat einen ungültigen aktuellen Status gemeldet: 0
Record Number: 27661
Source Name: Service Control Manager
Time Written: 20090512172930.000000+120
Event Type: Fehler
User:
Computer Name: MUTTIPC
Event Code: 7036
Message: Dienst "RAS-Verbindungsverwaltung" befindet sich jetzt im Status "Ausgeführt".
Record Number: 27660
Source Name: Service Control Manager
Time Written: 20090512172922.000000+120
Event Type: Informationen
User:
Computer Name: MUTTIPC
Event Code: 17
Message: AVGNTFLT successfully loaded
Record Number: 27659
Source Name: avgntflt
Time Written: 20090512172919.000000+120
Event Type: Informationen
User:
Computer Name: MUTTIPC
Event Code: 52249
Message: CPLIB :: Initialization - Failed to load the library
Record Number: 27658
Source Name: ati2mtag
Time Written: 20090512172919.000000+120
Event Type: Fehler
User:
Computer Name: MUTTIPC
Event Code: 4201
Message: Netzwerkadapter "3Com Gigabit LOM (3C940) - Paketplaner-Miniport" wurde mit dem Netzwerk verbunden, und das
System wurde über das Netzwerk im normalen Zustand gestartet.
Record Number: 27657
Source Name: Tcpip
Time Written: 20090512172919.000000+120
Event Type: Informationen
User:
=====Application event log=====
Computer Name: PINKELPRINZ
Event Code: 0
Message:
Record Number: 312
Source Name: iPod Service
Time Written: 20070924124154.000000+120
Event Type: Informationen
User:
Computer Name: PINKELPRINZ
Event Code: 1800
Message: Der Windows-Sicherheitscenterdienst wurde gestartet.
Record Number: 311
Source Name: SecurityCenter
Time Written: 20070924124138.000000+120
Event Type: Informationen
User:
Computer Name: PINKELPRINZ
Event Code: 105
Message: The service was started.
Record Number: 310
Source Name: ATI Smart
Time Written: 20070924124106.000000+120
Event Type: Informationen
User:
Computer Name: PINKELPRINZ
Event Code: 4096
Message:
Record Number: 309
Source Name: H+BEDV AntiVir
Time Written: 20070924124101.000000+120
Event Type: Informationen
User: NT-AUTORITÄT\SYSTEM
Computer Name: PINKELPRINZ
Event Code: 1800
Message: Der Windows-Sicherheitscenterdienst wurde gestartet.
Record Number: 308
Source Name: SecurityCenter
Time Written: 20070923192213.000000+120
Event Type: Informationen
User:
======Environment variables======
"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Programme\Gemeinsame Dateien\Roxio Shared\DLLShared;C:\Bernd\PROGRA~1\Delphi\Bin;C:\Bernd\PROGRA~1\Delphi\Projects\Bpl;C:\Programme\ATI Technologies\ATI.ACE\Core-Static
"windir"=%SystemRoot%
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=15
"PROCESSOR_IDENTIFIER"=x86 Family 15 Model 12 Stepping 0, AuthenticAMD
"PROCESSOR_REVISION"=0c00
"NUMBER_OF_PROCESSORS"=1
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"FP_NO_HOST_CHECK"=NO
-----------------EOF-----------------
grüße Bernd