Habe heute meinen PC (Laufwerke C/D/K-extern) mal mit meiner Sicherheitssoftware (McAfee) auf antispyware und VirusScan abgescheckt. Hätte bitte mal von "Fachleuten" gewusst, ob das Programme sind, die Schaden anrichten können und ob ich sie gefahrenlos vernichten kann? Zur Info: Habe die Duden-Suche Toolbar noch unter IE 6 installiert. Sie erscheint auch nur da und nicht bei Firefox.
1. antispyware: Entdeckte Programme
+Adware-2020Search (2 Komponenten gefunden)
-HKCR\Interface\-(7B9A715E-9D87-4C21-BF9E-F914F2FA953F)
-HKCR\TypeLib-(6D3FSDE4-E980-4407-A10F-9AC771ABAAE6)
+Adware-CWS (1 Komponente gefunden)
-HKLM\Software\Microsoft\Internet Explorer\Extensions\-(1AE2F266C-BE23-4930-A68D-9E681A764001)
Hier der Auzug aus antispyware:
Program Information
Name: Adware-2020Search
Risk Assessment
- Home Users: Low
- Corporate Users: Low
Date Discovered: 19.05.2004
Date Added: 15.04.2004
Origin: Unknown
Length: 2020Search2.dll 801,792 bytes 2020searchsetup.exe 987,085 bytes
Type: Program
SubType: Adware
DAT Required: 4317
Program Information
Name: Adware-CWS
Risk Assessment
- Home Users: N/A
- Corporate Users: N/A
Date Discovered: 24.11.2004
Date Added: 15.04.2004
Origin: Unknown
Length: N/A
Type: Program
SubType: Adware
DAT Required: 4289
2. VirusScan
Anzahl der möglicher Weise unerwünschten Programme: 3
Dateiname:
C:\Programme\Duden-Suche Toolbar\inst.bat
C:\Programme\Duden-Suche Toolbar\toolbar.dll
C:\Programme\Duden-Suche Toolbar\toolbar.inf
Status:
Möglicher Weise unerwünschte Programme für alle 3
Prüfdaten:
PuP-Name: Adware-Software für alle 3
Hier der Auszug aus VirusScan:
Search Results
We found 3 record(s) matching the following criteria:
Virus name beginning with "adware-softomate".
Adware-Softomate Adware-Softomate.dll
Adware-Softomate.dr
Program Information
Name: Adware-Softomate
Risk Assessment
- Home Users: N/A
- Corporate Users: N/A
Date Discovered: 21.03.2005
Date Added: 19.01.2005
Origin: Unknown
Length: Varies
Type: Program
SubType: Adware
DAT Required: 4420
Program Information
Name: Adware-Softomate.dr
Risk Assessment
- Home Users: N/A
- Corporate Users: N/A
Date Discovered: 21.03.2005
Date Added: 19.01.2005
Origin: Unknown
Length: N/A
Type: Program
SubType: Dropper
DAT Required: 4420
Program Information
Name: Adware-Softomate.dll
Risk Assessment
- Home Users: N/A
- Corporate Users: N/A
Date Discovered: 11.05.2005
Date Added: 11.05.2005
Origin: Unknown
Length: N/A
Type: Program
SubType: Application extension
DAT Required: 4489
mfg
dj-fischi
Warum kostenlos registrieren?
Nur als registriertes Mitglied hast Du vollen Zugriff auf alle Funktionen unserer Website. So kannst Du eigene Fragen stellen und hast die volle Übersicht über neue interessante Themen im Forum.
Jetzt kostenlos registrieren.
Login
Spionage?
22 Beiträge • Seite 1 von 2 • 1, 2
Hi Wolfgang:
Lade:
http://www.merijn.org/files/hijackthis.zip
=======
Entpacke in einen eigenen Ordner ==> Doppelklick auf: "Hijackthis.exe" ==> Haken setzen ==> [Noone of the above Just start the Programm] ==> Button [Scan] ==> Nach dem Scan [Save Logfile] Speichere es ==> Ein Editor öffnet sich: kopiere den Inhalt hierher ins Forum.
Bebilderte Kurzanleitung
Lade:
http://www.merijn.org/files/hijackthis.zip
=======
Entpacke in einen eigenen Ordner ==> Doppelklick auf: "Hijackthis.exe" ==> Haken setzen ==> [Noone of the above Just start the Programm] ==> Button [Scan] ==> Nach dem Scan [Save Logfile] Speichere es ==> Ein Editor öffnet sich: kopiere den Inhalt hierher ins Forum.
Bebilderte Kurzanleitung
- Holy Marcell
Hallo, hier meine Daten um die du gebeten hast!
dj-fischi
Logfile of HijackThis v1.99.1
Scan saved at 08:00:16, on 29.12.2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Programme\Gemeinsame Dateien\Logitech\Bluetooth\LBTSERV.EXE
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Programme\Gemeinsame Dateien\Acronis\Schedule2\schedul2.exe
C:\Programme\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\Programme\Logitech\Easy Synchronization\servicestub.exe
C:\Programme\Logitech\Easy Synchronization\LogitechEasySync.exe
c:\progra~1\mcafee\mcafee antispyware\massrv.exe
c:\programme\mcafee.com\agent\mcdetect.exe
c:\PROGRA~1\mcafee.com\vso\mcshield.exe
c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
c:\PROGRA~1\mcafee.com\vso\OasClnt.exe
C:\Programme\Gemeinsame Dateien\Microsoft Shared\VS7Debug\mdm.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfService.exe
c:\programme\mcafee.com\vso\mcvsshld.exe
c:\progra~1\mcafee.com\vso\mcvsescn.exe
C:\PROGRA~1\McAfee\SPAMKI~1\MSKSrvr.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\oodag.exe
C:\Programme\Dantz\Retrospect\retrorun.exe
C:\Programme\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\TBPanel.exe
C:\PROGRA~1\Dantz\RETROS~1\ComboButton.exe
C:\Programme\QuickTime\qttask.exe
C:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe
C:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\PROGRA~1\McAfee\SPAMKI~1\MskAgent.exe
C:\Programme\McAfee\QuickClean\Plguni.exe
C:\Programme\HP\hpcoretech\hpcmpmgr.exe
C:\PROGRA~1\mcafee.com\mps\mscifapp.exe
C:\Programme\Gemeinsame Dateien\XCPCSync\Translators\WebDeSync\WebDeSyncTray.exe
C:\Programme\Gemeinsame Dateien\Ulead Systems\AutoDetector\monitor.exe
C:\Programme\Java\j2re1.4.2_05\bin\jusched.exe
C:\Programme\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
C:\Programme\HP\HP Software Update\HPWuSchd2.exe
C:\progra~1\mcafee\MCAFEE~2\masalert.exe
C:\Programme\Acronis\TrueImage\TrueImageMonitor.exe
C:\Programme\Gemeinsame Dateien\Acronis\Schedule2\schedhlp.exe
C:\Programme\Logitech\Easy Synchronization\LogitechEasySync.exe
C:\Programme\Logitech\MediaLife\MediaLifeService.exe
C:\Programme\Logitech\SetPoint\LBTWiz.exe
C:\Programme\Festplatten-Inspektor\HDInspector.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe
C:\Programme\wahrig.digital\WAHRIG.exe
C:\Programme\LeechGet 2005\LeechGet.exe
C:\WINDOWS\system32\HDDSvc.exe
C:\Programme\Messenger\Msmsgs.exe
C:\Programme\Gemeinsame Dateien\Ahead\lib\NMBgMonitor.exe
C:\Programme\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Programme\ashampoo\Ashampoo WinOptimizer Platinum 3\PopUpKiller.exe
C:\Programme\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Programme\HP\Digital Imaging\bin\hpqtra08.exe
C:\Programme\Logitech\SetPoint\SetPoint.exe
C:\PROGRA~1\WIDCOMM\BLUETO~1\BTSTAC~1.EXE
C:\PC-BIB\PCLib.exe
C:\PC-BIB\PCLib.exe
C:\Programme\WinZip\WZQKPICK.EXE
c:\progra~1\mcafee.com\vso\mcvsftsn.exe
C:\WINDOWS\system32\txtuser.exe
C:\WINDOWS\system32\txtuser.exe
C:\Programme\Gemeinsame Dateien\Logitech\KHAL\KHALMNPR.EXE
C:\WINDOWS\system32\HPZipm12.exe
C:\Programme\Mozilla Firefox\firefox.exe
C:\PROGRA~1\WINZIP\winzip32.exe
D:\Unzipped\hijackthis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.web.de/
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: McBrwHelper Class - {227B8AA8-DAF2-4892-BD1D-73F568BCB24E} - c:\programme\mcafee.com\mps\mcbrhlpr.dll
O2 - BHO: McAfee AntiPhishing Filter - {41D68ED8-4CFF-4115-88A6-6EBB8AF19000} - c:\PROGRA~1\mcafee\SPAMKI~1\mcapfbho.dll
O2 - BHO: IE PopUp-Killer - {49E0E0F0-5C30-11D4-945D-000000000003} - C:\PROGRA~1\ashampoo\ASHAMP~2\PopUp.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programme\google\googletoolbar2.dll
O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programme\google\googletoolbar2.dll
O3 - Toolbar: Falk Toolbar - {F1864DD1-3DC9-11D8-A015-00105ADD2ADA} - C:\Programme\Falk\Falk Toolbar\FalkBar.dll
O3 - Toolbar: duden.de Toolbar - {92F02779-6D88-4958-8AD3-83C12D86ADC7} - C:\Programme\Duden-Suche Toolbar\toolbar.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Gainward] C:\WINDOWS\TBPanel.exe /A
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [MaxtorCombo] "C:\PROGRA~1\Dantz\RETROS~1\ComboButton.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Programme\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [TkBellExe] "C:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [MCUpdateExe] c:\PROGRA~1\mcafee.com\agent\mcupdate.exe
O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
O4 - HKLM\..\Run: [VSOCheckTask] "C:\PROGRA~1\McAfee.com\VSO\mcmnhdlr.exe" /checktask
O4 - HKLM\..\Run: [VirusScan Online] C:\Programme\McAfee.com\VSO\mcvsshld.exe
O4 - HKLM\..\Run: [OASClnt] C:\Programme\McAfee.com\VSO\oasclnt.exe
O4 - HKLM\..\Run: [MSKAGENTEXE] C:\PROGRA~1\McAfee\SPAMKI~1\MskAgent.exe
O4 - HKLM\..\Run: [MSKDetectorExe] C:\PROGRA~1\McAfee\SPAMKI~1\MSKDetct.exe /startup
O4 - HKLM\..\Run: [Imonitor] "C:\Programme\McAfee\QuickClean\Plguni.exe" /START
O4 - HKLM\..\Run: [HP Component Manager] "C:\Programme\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [MPSExe] c:\PROGRA~1\mcafee.com\mps\mscifapp.exe /embedding
O4 - HKLM\..\Run: [WEB.DE Sync - WebDeSync] C:\Programme\Gemeinsame Dateien\XCPCSync\Translators\WebDeSync\WebDeSyncTray.exe
O4 - HKLM\..\Run: [Ulead AutoDetector v2] C:\Programme\Gemeinsame Dateien\Ulead Systems\AutoDetector\monitor.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Programme\Java\j2re1.4.2_05\bin\jusched.exe
O4 - HKLM\..\Run: [PSDrvCheck] C:\WINDOWS\system32\PSDrvCheck.exe
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Programme\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [MPFEXE] C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Programme\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [_AntiSpyware] c:\progra~1\mcafee\MCAFEE~2\masalert.exe
O4 - HKLM\..\Run: [TrueImageMonitor.exe] C:\Programme\Acronis\TrueImage\TrueImageMonitor.exe
O4 - HKLM\..\Run: [Acronis Scheduler2 Service] "C:\Programme\Gemeinsame Dateien\Acronis\Schedule2\schedhlp.exe"
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [Easy Synchronization] C:\Programme\Logitech\Easy Synchronization\LogitechEasySync.exe
O4 - HKLM\..\Run: [MediaLifeService] "C:\Programme\Logitech\MediaLife\MediaLifeService.exe"
O4 - HKLM\..\Run: [Logitech BT Wizard] LBTWiz.exe -silent
O4 - HKLM\..\Run: [HDInspector.exe] C:\Programme\Festplatten-Inspektor\HDInspector.exe
O4 - HKLM\..\RunOnce: [Easy Synchronization] C:\Programme\Logitech\Easy Synchronization\LogitechEasySync.exe --ports
O4 - HKCU\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NVMCTRAY.DLL,NvTaskbarInit
O4 - HKCU\..\Run: [wahrig.digital] C:\Programme\wahrig.digital\WAHRIG.exe
O4 - HKCU\..\Run: [LeechGet] "C:\Programme\LeechGet 2005\LeechGet.exe" -intray
O4 - HKCU\..\Run: [MSMSGS] "C:\Programme\Messenger\Msmsgs.exe" /background
O4 - HKCU\..\Run: [updateMgr] C:\Programme\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_5 -reboot 1
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Programme\Gemeinsame Dateien\Ahead\lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [LDM] C:\Programme\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Ashampoo PopUpBlocker] C:\Programme\ashampoo\Ashampoo WinOptimizer Platinum 3\PopUpKiller.exe
O4 - Global Startup: Adobe Reader - Schnellstart.lnk = C:\Programme\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: BTTray.lnk = ?
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Programme\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Programme\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:\Programme\Logitech\SetPoint\SetPoint.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Programme\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Office-Bibliothek-Direktsuche.lnk = C:\PC-BIB\PCLib.exe
O4 - Global Startup: PC-Bibliothek-Direktsuche.lnk = C:\PC-BIB\PCLib.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Programme\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: &Google-Suche - res://c:\programme\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: &Ins Deutsche übersetzen - res://c:\programme\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: &Suche im Duden - res://C:\Programme\Duden-Suche Toolbar\toolbar.dll/SEARCH.HTML
O8 - Extra context menu item: Als Start in Falk übernehmen - res://C:\PROGRA~1\Falk\FALKTO~1\FalkBar.dll/SetAsStart
O8 - Extra context menu item: Als Ziel in Falk übernehmen - res://C:\PROGRA~1\Falk\FALKTO~1\FalkBar.dll/SetAsDest
O8 - Extra context menu item: Falk Stadtplan anzeigen - res://C:\PROGRA~1\Falk\FALKTO~1\FalkBar.dll/GetMap
O8 - Extra context menu item: Im Cache gespeicherte Seite - res://c:\programme\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: Mit dem LeechGet Wizard laden - file://C:\Programme\LeechGet 2005\\Wizard.html
O8 - Extra context menu item: Mit LeechGet herunterladen - file://C:\Programme\LeechGet 2005\\AddUrl.html
O8 - Extra context menu item: Mit LeechGet parsen - file://C:\Programme\LeechGet 2005\\Parser.html
O8 - Extra context menu item: Nach Microsoft &Excel exportieren - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Verweisseiten - res://c:\programme\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Ähnliche Seiten - res://c:\programme\google\GoogleToolbar2.dll/cmsimilar.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\system32\msjava.dll
O9 - Extra 'Tools' menuitem: Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\system32\msjava.dll
O9 - Extra button: duden.de Toolbar - {1AE2F26C-8E23-4930-A68D-9E681A764001} - C:\Programme\Duden-Suche Toolbar\toolbar.dll
O9 - Extra 'Tools' menuitem: duden.de Toolbar - {1AE2F26C-8E23-4930-A68D-9E681A764001} - C:\Programme\Duden-Suche Toolbar\toolbar.dll
O9 - Extra button: (no name) - {39FD89BF-D3F1-45b6-BB56-3582CCF489E1} - c:\PROGRA~1\mcafee\SPAMKI~1\mcapfbho.dll
O9 - Extra 'Tools' menuitem: McAfee AntiPhishing Filter - {39FD89BF-D3F1-45b6-BB56-3582CCF489E1} - c:\PROGRA~1\mcafee\SPAMKI~1\mcapfbho.dll
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Programme\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Programme\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: @C:\Programme\Messenger\Msgslang.dll,-61144 - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: @C:\Programme\Messenger\Msgslang.dll,-61144 - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
O12 - Plugin for .UVR: C:\Programme\Internet Explorer\Plugins\NPUPano.dll
O16 - DPF: {0713E8D2-850A-101B-AFC0-4210102A8DA7} (Microsoft ProgressBar Control, version 5.0 (SP2)) - http://download.mcafee.com/molbin/Share ... mCtl32.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) - http://download.mcafee.com/molbin/share ... insctl.cab
O16 - DPF: {59136DB4-6CA3-4B40-8F2F-BBF84B6F1E91} (Attachment Upload Control) - https://img.web.de/v/mail/activex/mail_upload_1124.cab
O16 - DPF: {5F0C30E4-1E72-4DCC-85E5-57810F1CA97B} (McUpdatePortalFactory Class) - http://www.amiuptodate.com/vsc/bin/1,0, ... Portal.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftup ... 5940953015
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.4.2) - https://java.sun.com/update/1.4.2/jinst ... s-i586.cab
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} (DwnldGroupMgr Class) - http://download.mcafee.com/molbin/share ... cgdmgr.cab
O16 - DPF: {DF6504AC-3EFE-4287-B259-FB299B069C95} (WEBDE Fotoalbum Upload Control) - https://img.web.de/v/mail/activex/fa_os ... d_1132.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{DCA6E8EA-D9E8-4CA6-8DF0-10B39B87D05E}: NameServer = 195.50.140.252 195.50.140.114
O18 - Protocol: bw+0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: offline-8876480 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O20 - Winlogon Notify: LBTWlgn - c:\programme\gemeinsame dateien\logitech\bluetooth\LBTWlgn.dll
O23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) - Acronis - C:\Programme\Gemeinsame Dateien\Acronis\Schedule2\schedul2.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Programme\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: Firebird Server - MAGIX Instance (FirebirdServerMAGIXInstance) - MAGIX® - C:\MAGIX\Common\Database\bin\fbserver.exe
O23 - Service: HDD Information Service (HDDSvc) - AltrixSoft (http://www.altrixsoft.com/) - C:\WINDOWS\system32\HDDSvc.exe
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech Inc. - C:\Programme\Gemeinsame Dateien\Logitech\Bluetooth\LBTSERV.EXE
O23 - Service: Logitech Easy Synchronization - Unknown owner - C:\Programme\Logitech\Easy Synchronization\servicestub.exe
O23 - Service: McAfee AntiSpyware Service - McAfee, Inc. - c:\progra~1\mcafee\mcafee antispyware\massrv.exe
O23 - Service: McAfee WSC Integration (McDetect.exe) - McAfee, Inc - c:\programme\mcafee.com\agent\mcdetect.exe
O23 - Service: McAfee.com McShield (McShield) - McAfee Inc. - c:\PROGRA~1\mcafee.com\vso\mcshield.exe
O23 - Service: McAfee Task Scheduler (McTskshd.exe) - McAfee, Inc - c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee Corporation - C:\PROGRA~1\McAfee.com\PERSON~1\MpfService.exe
O23 - Service: McAfee SpamKiller Server (MskService) - McAfee Inc. - C:\PROGRA~1\McAfee\SPAMKI~1\MSKSrvr.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: O&O Defrag - O&O Software GmbH - C:\WINDOWS\system32\oodag.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Retrospect Launcher (RetroLauncher) - Unknown owner - C:\Programme\Dantz\Retrospect\retrorun.exe
O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Programme\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
O23 - Service: TuneUp WinStyler Theme Service (TUWinStylerThemeSvc) - TuneUp Software GmbH - C:\Programme\TuneUp Utilities 2006\WinStylerThemeSvc.exe
O23 - Service: UPnPService - Unknown owner - C:\Programme\Gemeinsame Dateien\MAGIX Shared\UPnPService\UPnPService.exe
dj-fischi
Logfile of HijackThis v1.99.1
Scan saved at 08:00:16, on 29.12.2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Programme\Gemeinsame Dateien\Logitech\Bluetooth\LBTSERV.EXE
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Programme\Gemeinsame Dateien\Acronis\Schedule2\schedul2.exe
C:\Programme\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\Programme\Logitech\Easy Synchronization\servicestub.exe
C:\Programme\Logitech\Easy Synchronization\LogitechEasySync.exe
c:\progra~1\mcafee\mcafee antispyware\massrv.exe
c:\programme\mcafee.com\agent\mcdetect.exe
c:\PROGRA~1\mcafee.com\vso\mcshield.exe
c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
c:\PROGRA~1\mcafee.com\vso\OasClnt.exe
C:\Programme\Gemeinsame Dateien\Microsoft Shared\VS7Debug\mdm.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfService.exe
c:\programme\mcafee.com\vso\mcvsshld.exe
c:\progra~1\mcafee.com\vso\mcvsescn.exe
C:\PROGRA~1\McAfee\SPAMKI~1\MSKSrvr.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\oodag.exe
C:\Programme\Dantz\Retrospect\retrorun.exe
C:\Programme\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\TBPanel.exe
C:\PROGRA~1\Dantz\RETROS~1\ComboButton.exe
C:\Programme\QuickTime\qttask.exe
C:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe
C:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\PROGRA~1\McAfee\SPAMKI~1\MskAgent.exe
C:\Programme\McAfee\QuickClean\Plguni.exe
C:\Programme\HP\hpcoretech\hpcmpmgr.exe
C:\PROGRA~1\mcafee.com\mps\mscifapp.exe
C:\Programme\Gemeinsame Dateien\XCPCSync\Translators\WebDeSync\WebDeSyncTray.exe
C:\Programme\Gemeinsame Dateien\Ulead Systems\AutoDetector\monitor.exe
C:\Programme\Java\j2re1.4.2_05\bin\jusched.exe
C:\Programme\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
C:\Programme\HP\HP Software Update\HPWuSchd2.exe
C:\progra~1\mcafee\MCAFEE~2\masalert.exe
C:\Programme\Acronis\TrueImage\TrueImageMonitor.exe
C:\Programme\Gemeinsame Dateien\Acronis\Schedule2\schedhlp.exe
C:\Programme\Logitech\Easy Synchronization\LogitechEasySync.exe
C:\Programme\Logitech\MediaLife\MediaLifeService.exe
C:\Programme\Logitech\SetPoint\LBTWiz.exe
C:\Programme\Festplatten-Inspektor\HDInspector.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe
C:\Programme\wahrig.digital\WAHRIG.exe
C:\Programme\LeechGet 2005\LeechGet.exe
C:\WINDOWS\system32\HDDSvc.exe
C:\Programme\Messenger\Msmsgs.exe
C:\Programme\Gemeinsame Dateien\Ahead\lib\NMBgMonitor.exe
C:\Programme\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Programme\ashampoo\Ashampoo WinOptimizer Platinum 3\PopUpKiller.exe
C:\Programme\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Programme\HP\Digital Imaging\bin\hpqtra08.exe
C:\Programme\Logitech\SetPoint\SetPoint.exe
C:\PROGRA~1\WIDCOMM\BLUETO~1\BTSTAC~1.EXE
C:\PC-BIB\PCLib.exe
C:\PC-BIB\PCLib.exe
C:\Programme\WinZip\WZQKPICK.EXE
c:\progra~1\mcafee.com\vso\mcvsftsn.exe
C:\WINDOWS\system32\txtuser.exe
C:\WINDOWS\system32\txtuser.exe
C:\Programme\Gemeinsame Dateien\Logitech\KHAL\KHALMNPR.EXE
C:\WINDOWS\system32\HPZipm12.exe
C:\Programme\Mozilla Firefox\firefox.exe
C:\PROGRA~1\WINZIP\winzip32.exe
D:\Unzipped\hijackthis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.web.de/
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: McBrwHelper Class - {227B8AA8-DAF2-4892-BD1D-73F568BCB24E} - c:\programme\mcafee.com\mps\mcbrhlpr.dll
O2 - BHO: McAfee AntiPhishing Filter - {41D68ED8-4CFF-4115-88A6-6EBB8AF19000} - c:\PROGRA~1\mcafee\SPAMKI~1\mcapfbho.dll
O2 - BHO: IE PopUp-Killer - {49E0E0F0-5C30-11D4-945D-000000000003} - C:\PROGRA~1\ashampoo\ASHAMP~2\PopUp.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programme\google\googletoolbar2.dll
O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programme\google\googletoolbar2.dll
O3 - Toolbar: Falk Toolbar - {F1864DD1-3DC9-11D8-A015-00105ADD2ADA} - C:\Programme\Falk\Falk Toolbar\FalkBar.dll
O3 - Toolbar: duden.de Toolbar - {92F02779-6D88-4958-8AD3-83C12D86ADC7} - C:\Programme\Duden-Suche Toolbar\toolbar.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Gainward] C:\WINDOWS\TBPanel.exe /A
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [MaxtorCombo] "C:\PROGRA~1\Dantz\RETROS~1\ComboButton.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Programme\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [TkBellExe] "C:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [MCUpdateExe] c:\PROGRA~1\mcafee.com\agent\mcupdate.exe
O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
O4 - HKLM\..\Run: [VSOCheckTask] "C:\PROGRA~1\McAfee.com\VSO\mcmnhdlr.exe" /checktask
O4 - HKLM\..\Run: [VirusScan Online] C:\Programme\McAfee.com\VSO\mcvsshld.exe
O4 - HKLM\..\Run: [OASClnt] C:\Programme\McAfee.com\VSO\oasclnt.exe
O4 - HKLM\..\Run: [MSKAGENTEXE] C:\PROGRA~1\McAfee\SPAMKI~1\MskAgent.exe
O4 - HKLM\..\Run: [MSKDetectorExe] C:\PROGRA~1\McAfee\SPAMKI~1\MSKDetct.exe /startup
O4 - HKLM\..\Run: [Imonitor] "C:\Programme\McAfee\QuickClean\Plguni.exe" /START
O4 - HKLM\..\Run: [HP Component Manager] "C:\Programme\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [MPSExe] c:\PROGRA~1\mcafee.com\mps\mscifapp.exe /embedding
O4 - HKLM\..\Run: [WEB.DE Sync - WebDeSync] C:\Programme\Gemeinsame Dateien\XCPCSync\Translators\WebDeSync\WebDeSyncTray.exe
O4 - HKLM\..\Run: [Ulead AutoDetector v2] C:\Programme\Gemeinsame Dateien\Ulead Systems\AutoDetector\monitor.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Programme\Java\j2re1.4.2_05\bin\jusched.exe
O4 - HKLM\..\Run: [PSDrvCheck] C:\WINDOWS\system32\PSDrvCheck.exe
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Programme\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [MPFEXE] C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Programme\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [_AntiSpyware] c:\progra~1\mcafee\MCAFEE~2\masalert.exe
O4 - HKLM\..\Run: [TrueImageMonitor.exe] C:\Programme\Acronis\TrueImage\TrueImageMonitor.exe
O4 - HKLM\..\Run: [Acronis Scheduler2 Service] "C:\Programme\Gemeinsame Dateien\Acronis\Schedule2\schedhlp.exe"
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [Easy Synchronization] C:\Programme\Logitech\Easy Synchronization\LogitechEasySync.exe
O4 - HKLM\..\Run: [MediaLifeService] "C:\Programme\Logitech\MediaLife\MediaLifeService.exe"
O4 - HKLM\..\Run: [Logitech BT Wizard] LBTWiz.exe -silent
O4 - HKLM\..\Run: [HDInspector.exe] C:\Programme\Festplatten-Inspektor\HDInspector.exe
O4 - HKLM\..\RunOnce: [Easy Synchronization] C:\Programme\Logitech\Easy Synchronization\LogitechEasySync.exe --ports
O4 - HKCU\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NVMCTRAY.DLL,NvTaskbarInit
O4 - HKCU\..\Run: [wahrig.digital] C:\Programme\wahrig.digital\WAHRIG.exe
O4 - HKCU\..\Run: [LeechGet] "C:\Programme\LeechGet 2005\LeechGet.exe" -intray
O4 - HKCU\..\Run: [MSMSGS] "C:\Programme\Messenger\Msmsgs.exe" /background
O4 - HKCU\..\Run: [updateMgr] C:\Programme\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_5 -reboot 1
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Programme\Gemeinsame Dateien\Ahead\lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [LDM] C:\Programme\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Ashampoo PopUpBlocker] C:\Programme\ashampoo\Ashampoo WinOptimizer Platinum 3\PopUpKiller.exe
O4 - Global Startup: Adobe Reader - Schnellstart.lnk = C:\Programme\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: BTTray.lnk = ?
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Programme\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Programme\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:\Programme\Logitech\SetPoint\SetPoint.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Programme\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Office-Bibliothek-Direktsuche.lnk = C:\PC-BIB\PCLib.exe
O4 - Global Startup: PC-Bibliothek-Direktsuche.lnk = C:\PC-BIB\PCLib.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Programme\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: &Google-Suche - res://c:\programme\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: &Ins Deutsche übersetzen - res://c:\programme\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: &Suche im Duden - res://C:\Programme\Duden-Suche Toolbar\toolbar.dll/SEARCH.HTML
O8 - Extra context menu item: Als Start in Falk übernehmen - res://C:\PROGRA~1\Falk\FALKTO~1\FalkBar.dll/SetAsStart
O8 - Extra context menu item: Als Ziel in Falk übernehmen - res://C:\PROGRA~1\Falk\FALKTO~1\FalkBar.dll/SetAsDest
O8 - Extra context menu item: Falk Stadtplan anzeigen - res://C:\PROGRA~1\Falk\FALKTO~1\FalkBar.dll/GetMap
O8 - Extra context menu item: Im Cache gespeicherte Seite - res://c:\programme\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: Mit dem LeechGet Wizard laden - file://C:\Programme\LeechGet 2005\\Wizard.html
O8 - Extra context menu item: Mit LeechGet herunterladen - file://C:\Programme\LeechGet 2005\\AddUrl.html
O8 - Extra context menu item: Mit LeechGet parsen - file://C:\Programme\LeechGet 2005\\Parser.html
O8 - Extra context menu item: Nach Microsoft &Excel exportieren - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Verweisseiten - res://c:\programme\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Ähnliche Seiten - res://c:\programme\google\GoogleToolbar2.dll/cmsimilar.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\system32\msjava.dll
O9 - Extra 'Tools' menuitem: Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\system32\msjava.dll
O9 - Extra button: duden.de Toolbar - {1AE2F26C-8E23-4930-A68D-9E681A764001} - C:\Programme\Duden-Suche Toolbar\toolbar.dll
O9 - Extra 'Tools' menuitem: duden.de Toolbar - {1AE2F26C-8E23-4930-A68D-9E681A764001} - C:\Programme\Duden-Suche Toolbar\toolbar.dll
O9 - Extra button: (no name) - {39FD89BF-D3F1-45b6-BB56-3582CCF489E1} - c:\PROGRA~1\mcafee\SPAMKI~1\mcapfbho.dll
O9 - Extra 'Tools' menuitem: McAfee AntiPhishing Filter - {39FD89BF-D3F1-45b6-BB56-3582CCF489E1} - c:\PROGRA~1\mcafee\SPAMKI~1\mcapfbho.dll
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Programme\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Programme\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: @C:\Programme\Messenger\Msgslang.dll,-61144 - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: @C:\Programme\Messenger\Msgslang.dll,-61144 - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
O12 - Plugin for .UVR: C:\Programme\Internet Explorer\Plugins\NPUPano.dll
O16 - DPF: {0713E8D2-850A-101B-AFC0-4210102A8DA7} (Microsoft ProgressBar Control, version 5.0 (SP2)) - http://download.mcafee.com/molbin/Share ... mCtl32.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) - http://download.mcafee.com/molbin/share ... insctl.cab
O16 - DPF: {59136DB4-6CA3-4B40-8F2F-BBF84B6F1E91} (Attachment Upload Control) - https://img.web.de/v/mail/activex/mail_upload_1124.cab
O16 - DPF: {5F0C30E4-1E72-4DCC-85E5-57810F1CA97B} (McUpdatePortalFactory Class) - http://www.amiuptodate.com/vsc/bin/1,0, ... Portal.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftup ... 5940953015
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.4.2) - https://java.sun.com/update/1.4.2/jinst ... s-i586.cab
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} (DwnldGroupMgr Class) - http://download.mcafee.com/molbin/share ... cgdmgr.cab
O16 - DPF: {DF6504AC-3EFE-4287-B259-FB299B069C95} (WEBDE Fotoalbum Upload Control) - https://img.web.de/v/mail/activex/fa_os ... d_1132.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{DCA6E8EA-D9E8-4CA6-8DF0-10B39B87D05E}: NameServer = 195.50.140.252 195.50.140.114
O18 - Protocol: bw+0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: offline-8876480 - {253C8FF3-AC0F-4196-AF41-0B2DC5758186} - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O20 - Winlogon Notify: LBTWlgn - c:\programme\gemeinsame dateien\logitech\bluetooth\LBTWlgn.dll
O23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) - Acronis - C:\Programme\Gemeinsame Dateien\Acronis\Schedule2\schedul2.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Programme\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: Firebird Server - MAGIX Instance (FirebirdServerMAGIXInstance) - MAGIX® - C:\MAGIX\Common\Database\bin\fbserver.exe
O23 - Service: HDD Information Service (HDDSvc) - AltrixSoft (http://www.altrixsoft.com/) - C:\WINDOWS\system32\HDDSvc.exe
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech Inc. - C:\Programme\Gemeinsame Dateien\Logitech\Bluetooth\LBTSERV.EXE
O23 - Service: Logitech Easy Synchronization - Unknown owner - C:\Programme\Logitech\Easy Synchronization\servicestub.exe
O23 - Service: McAfee AntiSpyware Service - McAfee, Inc. - c:\progra~1\mcafee\mcafee antispyware\massrv.exe
O23 - Service: McAfee WSC Integration (McDetect.exe) - McAfee, Inc - c:\programme\mcafee.com\agent\mcdetect.exe
O23 - Service: McAfee.com McShield (McShield) - McAfee Inc. - c:\PROGRA~1\mcafee.com\vso\mcshield.exe
O23 - Service: McAfee Task Scheduler (McTskshd.exe) - McAfee, Inc - c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee Corporation - C:\PROGRA~1\McAfee.com\PERSON~1\MpfService.exe
O23 - Service: McAfee SpamKiller Server (MskService) - McAfee Inc. - C:\PROGRA~1\McAfee\SPAMKI~1\MSKSrvr.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: O&O Defrag - O&O Software GmbH - C:\WINDOWS\system32\oodag.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Retrospect Launcher (RetroLauncher) - Unknown owner - C:\Programme\Dantz\Retrospect\retrorun.exe
O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Programme\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
O23 - Service: TuneUp WinStyler Theme Service (TUWinStylerThemeSvc) - TuneUp Software GmbH - C:\Programme\TuneUp Utilities 2006\WinStylerThemeSvc.exe
O23 - Service: UPnPService - Unknown owner - C:\Programme\Gemeinsame Dateien\MAGIX Shared\UPnPService\UPnPService.exe
- dj-fischi
- Beiträge: 490
- Registriert: 21.12.2005, 10:38
- Wohnort: Berlin
- Holy Marcell
Habe den Logitech Desktop-Messenger gelöscht über Systemsteuerung und den PC wieder neu gestartet. Hier hast die Ergebnisse:
Logfile of HijackThis v1.99.1
Scan saved at 18:39:56, on 29.12.2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Programme\Gemeinsame Dateien\Logitech\Bluetooth\LBTSERV.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Programme\Gemeinsame Dateien\Acronis\Schedule2\schedul2.exe
C:\Programme\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\Programme\Logitech\Easy Synchronization\servicestub.exe
C:\Programme\Logitech\Easy Synchronization\LogitechEasySync.exe
c:\progra~1\mcafee\mcafee antispyware\massrv.exe
c:\programme\mcafee.com\agent\mcdetect.exe
c:\PROGRA~1\mcafee.com\vso\mcshield.exe
c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
c:\PROGRA~1\mcafee.com\vso\OasClnt.exe
C:\Programme\Gemeinsame Dateien\Microsoft Shared\VS7Debug\mdm.exe
c:\programme\mcafee.com\vso\mcvsshld.exe
c:\progra~1\mcafee.com\vso\mcvsescn.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfService.exe
C:\PROGRA~1\McAfee\SPAMKI~1\MSKSrvr.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\oodag.exe
C:\Programme\Dantz\Retrospect\retrorun.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Programme\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
C:\WINDOWS\TBPanel.exe
C:\WINDOWS\System32\svchost.exe
C:\PROGRA~1\Dantz\RETROS~1\ComboButton.exe
C:\Programme\QuickTime\qttask.exe
C:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe
C:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\PROGRA~1\McAfee\SPAMKI~1\MskAgent.exe
C:\Programme\McAfee\QuickClean\Plguni.exe
C:\Programme\HP\hpcoretech\hpcmpmgr.exe
C:\PROGRA~1\mcafee.com\mps\mscifapp.exe
C:\Programme\Gemeinsame Dateien\XCPCSync\Translators\WebDeSync\WebDeSyncTray.exe
C:\Programme\Gemeinsame Dateien\Ulead Systems\AutoDetector\monitor.exe
C:\Programme\Java\j2re1.4.2_05\bin\jusched.exe
C:\Programme\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
C:\Programme\HP\HP Software Update\HPWuSchd2.exe
C:\progra~1\mcafee\MCAFEE~2\masalert.exe
C:\Programme\Acronis\TrueImage\TrueImageMonitor.exe
C:\Programme\Gemeinsame Dateien\Acronis\Schedule2\schedhlp.exe
C:\Programme\Logitech\Easy Synchronization\LogitechEasySync.exe
C:\Programme\Logitech\MediaLife\MediaLifeService.exe
C:\Programme\Logitech\SetPoint\LBTWiz.exe
C:\Programme\Festplatten-Inspektor\HDInspector.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Programme\wahrig.digital\WAHRIG.exe
C:\Programme\LeechGet 2005\LeechGet.exe
C:\Programme\Messenger\Msmsgs.exe
C:\WINDOWS\system32\ctfmon.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe
C:\Programme\ashampoo\Ashampoo WinOptimizer Platinum 3\PopUpKiller.exe
C:\Programme\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Programme\HP\Digital Imaging\bin\hpqtra08.exe
C:\Programme\Logitech\SetPoint\SetPoint.exe
C:\PC-BIB\PCLib.exe
C:\PC-BIB\PCLib.exe
C:\Programme\WinZip\WZQKPICK.EXE
C:\WINDOWS\system32\txtuser.exe
C:\WINDOWS\system32\txtuser.exe
c:\progra~1\mcafee.com\vso\mcvsftsn.exe
C:\PROGRA~1\WIDCOMM\BLUETO~1\BTSTAC~1.EXE
C:\Programme\Gemeinsame Dateien\Logitech\KHAL\KHALMNPR.EXE
C:\WINDOWS\system32\HPZipm12.exe
C:\Programme\Microsoft Office\Office10\OUTLOOK.EXE
C:\Programme\Mozilla Firefox\firefox.exe
C:\PROGRA~1\WINZIP\winzip32.exe
D:\Unzipped\hijackthis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.web.de/
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: McBrwHelper Class - {227B8AA8-DAF2-4892-BD1D-73F568BCB24E} - c:\programme\mcafee.com\mps\mcbrhlpr.dll
O2 - BHO: McAfee AntiPhishing Filter - {41D68ED8-4CFF-4115-88A6-6EBB8AF19000} - c:\PROGRA~1\mcafee\SPAMKI~1\mcapfbho.dll
O2 - BHO: IE PopUp-Killer - {49E0E0F0-5C30-11D4-945D-000000000003} - C:\PROGRA~1\ashampoo\ASHAMP~2\PopUp.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programme\google\googletoolbar2.dll
O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programme\google\googletoolbar2.dll
O3 - Toolbar: Falk Toolbar - {F1864DD1-3DC9-11D8-A015-00105ADD2ADA} - C:\Programme\Falk\Falk Toolbar\FalkBar.dll
O3 - Toolbar: duden.de Toolbar - {92F02779-6D88-4958-8AD3-83C12D86ADC7} - C:\Programme\Duden-Suche Toolbar\toolbar.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Gainward] C:\WINDOWS\TBPanel.exe /A
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [MaxtorCombo] "C:\PROGRA~1\Dantz\RETROS~1\ComboButton.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Programme\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [TkBellExe] "C:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [MCUpdateExe] C:\PROGRA~1\mcafee.com\agent\McUpdate.exe
O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
O4 - HKLM\..\Run: [VSOCheckTask] "C:\PROGRA~1\McAfee.com\VSO\mcmnhdlr.exe" /checktask
O4 - HKLM\..\Run: [VirusScan Online] C:\Programme\McAfee.com\VSO\mcvsshld.exe
O4 - HKLM\..\Run: [OASClnt] C:\Programme\McAfee.com\VSO\oasclnt.exe
O4 - HKLM\..\Run: [MSKAGENTEXE] C:\PROGRA~1\McAfee\SPAMKI~1\MskAgent.exe
O4 - HKLM\..\Run: [MSKDetectorExe] C:\PROGRA~1\McAfee\SPAMKI~1\MSKDetct.exe /startup
O4 - HKLM\..\Run: [Imonitor] "C:\Programme\McAfee\QuickClean\Plguni.exe" /START
O4 - HKLM\..\Run: [HP Component Manager] "C:\Programme\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [MPSExe] c:\PROGRA~1\mcafee.com\mps\mscifapp.exe /embedding
O4 - HKLM\..\Run: [WEB.DE Sync - WebDeSync] C:\Programme\Gemeinsame Dateien\XCPCSync\Translators\WebDeSync\WebDeSyncTray.exe
O4 - HKLM\..\Run: [Ulead AutoDetector v2] C:\Programme\Gemeinsame Dateien\Ulead Systems\AutoDetector\monitor.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Programme\Java\j2re1.4.2_05\bin\jusched.exe
O4 - HKLM\..\Run: [PSDrvCheck] C:\WINDOWS\system32\PSDrvCheck.exe
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Programme\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [MPFEXE] C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Programme\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [_AntiSpyware] c:\progra~1\mcafee\MCAFEE~2\masalert.exe
O4 - HKLM\..\Run: [TrueImageMonitor.exe] C:\Programme\Acronis\TrueImage\TrueImageMonitor.exe
O4 - HKLM\..\Run: [Acronis Scheduler2 Service] "C:\Programme\Gemeinsame Dateien\Acronis\Schedule2\schedhlp.exe"
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [Easy Synchronization] C:\Programme\Logitech\Easy Synchronization\LogitechEasySync.exe
O4 - HKLM\..\Run: [MediaLifeService] "C:\Programme\Logitech\MediaLife\MediaLifeService.exe"
O4 - HKLM\..\Run: [Logitech BT Wizard] LBTWiz.exe -silent
O4 - HKLM\..\Run: [HDInspector.exe] C:\Programme\Festplatten-Inspektor\HDInspector.exe
O4 - HKLM\..\RunOnce: [Easy Synchronization] C:\Programme\Logitech\Easy Synchronization\LogitechEasySync.exe --ports
O4 - HKCU\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NVMCTRAY.DLL,NvTaskbarInit
O4 - HKCU\..\Run: [wahrig.digital] C:\Programme\wahrig.digital\WAHRIG.exe
O4 - HKCU\..\Run: [LeechGet] "C:\Programme\LeechGet 2005\LeechGet.exe" -intray
O4 - HKCU\..\Run: [MSMSGS] "C:\Programme\Messenger\Msmsgs.exe" /background
O4 - HKCU\..\Run: [updateMgr] C:\Programme\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_5 -reboot 1
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Ashampoo PopUpBlocker] C:\Programme\ashampoo\Ashampoo WinOptimizer Platinum 3\PopUpKiller.exe
O4 - Global Startup: Adobe Reader - Schnellstart.lnk = C:\Programme\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: BTTray.lnk = ?
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Programme\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:\Programme\Logitech\SetPoint\SetPoint.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Programme\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Office-Bibliothek-Direktsuche.lnk = C:\PC-BIB\PCLib.exe
O4 - Global Startup: PC-Bibliothek-Direktsuche.lnk = C:\PC-BIB\PCLib.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Programme\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: &Google-Suche - res://c:\programme\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: &Ins Deutsche übersetzen - res://c:\programme\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: &Suche im Duden - res://C:\Programme\Duden-Suche Toolbar\toolbar.dll/SEARCH.HTML
O8 - Extra context menu item: Als Start in Falk übernehmen - res://C:\PROGRA~1\Falk\FALKTO~1\FalkBar.dll/SetAsStart
O8 - Extra context menu item: Als Ziel in Falk übernehmen - res://C:\PROGRA~1\Falk\FALKTO~1\FalkBar.dll/SetAsDest
O8 - Extra context menu item: Falk Stadtplan anzeigen - res://C:\PROGRA~1\Falk\FALKTO~1\FalkBar.dll/GetMap
O8 - Extra context menu item: Im Cache gespeicherte Seite - res://c:\programme\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: Mit dem LeechGet Wizard laden - file://C:\Programme\LeechGet 2005\\Wizard.html
O8 - Extra context menu item: Mit LeechGet herunterladen - file://C:\Programme\LeechGet 2005\\AddUrl.html
O8 - Extra context menu item: Mit LeechGet parsen - file://C:\Programme\LeechGet 2005\\Parser.html
O8 - Extra context menu item: Nach Microsoft &Excel exportieren - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Verweisseiten - res://c:\programme\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Ähnliche Seiten - res://c:\programme\google\GoogleToolbar2.dll/cmsimilar.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\system32\msjava.dll
O9 - Extra 'Tools' menuitem: Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\system32\msjava.dll
O9 - Extra button: duden.de Toolbar - {1AE2F26C-8E23-4930-A68D-9E681A764001} - C:\Programme\Duden-Suche Toolbar\toolbar.dll
O9 - Extra 'Tools' menuitem: duden.de Toolbar - {1AE2F26C-8E23-4930-A68D-9E681A764001} - C:\Programme\Duden-Suche Toolbar\toolbar.dll
O9 - Extra button: (no name) - {39FD89BF-D3F1-45b6-BB56-3582CCF489E1} - c:\PROGRA~1\mcafee\SPAMKI~1\mcapfbho.dll
O9 - Extra 'Tools' menuitem: McAfee AntiPhishing Filter - {39FD89BF-D3F1-45b6-BB56-3582CCF489E1} - c:\PROGRA~1\mcafee\SPAMKI~1\mcapfbho.dll
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Programme\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Programme\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: @C:\Programme\Messenger\Msgslang.dll,-61144 - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: @C:\Programme\Messenger\Msgslang.dll,-61144 - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
O12 - Plugin for .UVR: C:\Programme\Internet Explorer\Plugins\NPUPano.dll
O16 - DPF: {0713E8D2-850A-101B-AFC0-4210102A8DA7} (Microsoft ProgressBar Control, version 5.0 (SP2)) - http://download.mcafee.com/molbin/Share ... mCtl32.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) - http://download.mcafee.com/molbin/share ... insctl.cab
O16 - DPF: {59136DB4-6CA3-4B40-8F2F-BBF84B6F1E91} (Attachment Upload Control) - https://img.web.de/v/mail/activex/mail_upload_1124.cab
O16 - DPF: {5F0C30E4-1E72-4DCC-85E5-57810F1CA97B} (McUpdatePortalFactory Class) - http://www.amiuptodate.com/vsc/bin/1,0, ... Portal.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftup ... 5940953015
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.4.2) - https://java.sun.com/update/1.4.2/jinst ... s-i586.cab
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} (DwnldGroupMgr Class) - http://download.mcafee.com/molbin/share ... cgdmgr.cab
O16 - DPF: {DF6504AC-3EFE-4287-B259-FB299B069C95} (WEBDE Fotoalbum Upload Control) - https://img.web.de/v/mail/activex/fa_os ... d_1132.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{DCA6E8EA-D9E8-4CA6-8DF0-10B39B87D05E}: NameServer = 195.50.140.252 195.50.140.114
O20 - Winlogon Notify: LBTWlgn - c:\programme\gemeinsame dateien\logitech\bluetooth\LBTWlgn.dll
O23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) - Acronis - C:\Programme\Gemeinsame Dateien\Acronis\Schedule2\schedul2.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Programme\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: Firebird Server - MAGIX Instance (FirebirdServerMAGIXInstance) - MAGIX® - C:\MAGIX\Common\Database\bin\fbserver.exe
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech Inc. - C:\Programme\Gemeinsame Dateien\Logitech\Bluetooth\LBTSERV.EXE
O23 - Service: Logitech Easy Synchronization - Unknown owner - C:\Programme\Logitech\Easy Synchronization\servicestub.exe
O23 - Service: McAfee AntiSpyware Service - McAfee, Inc. - c:\progra~1\mcafee\mcafee antispyware\massrv.exe
O23 - Service: McAfee WSC Integration (McDetect.exe) - McAfee, Inc - c:\programme\mcafee.com\agent\mcdetect.exe
O23 - Service: McAfee.com McShield (McShield) - McAfee Inc. - c:\PROGRA~1\mcafee.com\vso\mcshield.exe
O23 - Service: McAfee Task Scheduler (McTskshd.exe) - McAfee, Inc - c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee Corporation - C:\PROGRA~1\McAfee.com\PERSON~1\MpfService.exe
O23 - Service: McAfee SpamKiller Server (MskService) - McAfee Inc. - C:\PROGRA~1\McAfee\SPAMKI~1\MSKSrvr.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: O&O Defrag - O&O Software GmbH - C:\WINDOWS\system32\oodag.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Retrospect Launcher (RetroLauncher) - Unknown owner - C:\Programme\Dantz\Retrospect\retrorun.exe
O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Programme\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
O23 - Service: TuneUp WinStyler Theme Service (TUWinStylerThemeSvc) - TuneUp Software GmbH - C:\Programme\TuneUp Utilities 2006\WinStylerThemeSvc.exe
O23 - Service: UPnPService - Unknown owner - C:\Programme\Gemeinsame Dateien\MAGIX Shared\UPnPService\UPnPService.exe
Gruß
Wolfgang
Logfile of HijackThis v1.99.1
Scan saved at 18:39:56, on 29.12.2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Programme\Gemeinsame Dateien\Logitech\Bluetooth\LBTSERV.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Programme\Gemeinsame Dateien\Acronis\Schedule2\schedul2.exe
C:\Programme\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\Programme\Logitech\Easy Synchronization\servicestub.exe
C:\Programme\Logitech\Easy Synchronization\LogitechEasySync.exe
c:\progra~1\mcafee\mcafee antispyware\massrv.exe
c:\programme\mcafee.com\agent\mcdetect.exe
c:\PROGRA~1\mcafee.com\vso\mcshield.exe
c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
c:\PROGRA~1\mcafee.com\vso\OasClnt.exe
C:\Programme\Gemeinsame Dateien\Microsoft Shared\VS7Debug\mdm.exe
c:\programme\mcafee.com\vso\mcvsshld.exe
c:\progra~1\mcafee.com\vso\mcvsescn.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfService.exe
C:\PROGRA~1\McAfee\SPAMKI~1\MSKSrvr.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\oodag.exe
C:\Programme\Dantz\Retrospect\retrorun.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Programme\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
C:\WINDOWS\TBPanel.exe
C:\WINDOWS\System32\svchost.exe
C:\PROGRA~1\Dantz\RETROS~1\ComboButton.exe
C:\Programme\QuickTime\qttask.exe
C:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe
C:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\PROGRA~1\McAfee\SPAMKI~1\MskAgent.exe
C:\Programme\McAfee\QuickClean\Plguni.exe
C:\Programme\HP\hpcoretech\hpcmpmgr.exe
C:\PROGRA~1\mcafee.com\mps\mscifapp.exe
C:\Programme\Gemeinsame Dateien\XCPCSync\Translators\WebDeSync\WebDeSyncTray.exe
C:\Programme\Gemeinsame Dateien\Ulead Systems\AutoDetector\monitor.exe
C:\Programme\Java\j2re1.4.2_05\bin\jusched.exe
C:\Programme\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
C:\Programme\HP\HP Software Update\HPWuSchd2.exe
C:\progra~1\mcafee\MCAFEE~2\masalert.exe
C:\Programme\Acronis\TrueImage\TrueImageMonitor.exe
C:\Programme\Gemeinsame Dateien\Acronis\Schedule2\schedhlp.exe
C:\Programme\Logitech\Easy Synchronization\LogitechEasySync.exe
C:\Programme\Logitech\MediaLife\MediaLifeService.exe
C:\Programme\Logitech\SetPoint\LBTWiz.exe
C:\Programme\Festplatten-Inspektor\HDInspector.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Programme\wahrig.digital\WAHRIG.exe
C:\Programme\LeechGet 2005\LeechGet.exe
C:\Programme\Messenger\Msmsgs.exe
C:\WINDOWS\system32\ctfmon.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe
C:\Programme\ashampoo\Ashampoo WinOptimizer Platinum 3\PopUpKiller.exe
C:\Programme\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Programme\HP\Digital Imaging\bin\hpqtra08.exe
C:\Programme\Logitech\SetPoint\SetPoint.exe
C:\PC-BIB\PCLib.exe
C:\PC-BIB\PCLib.exe
C:\Programme\WinZip\WZQKPICK.EXE
C:\WINDOWS\system32\txtuser.exe
C:\WINDOWS\system32\txtuser.exe
c:\progra~1\mcafee.com\vso\mcvsftsn.exe
C:\PROGRA~1\WIDCOMM\BLUETO~1\BTSTAC~1.EXE
C:\Programme\Gemeinsame Dateien\Logitech\KHAL\KHALMNPR.EXE
C:\WINDOWS\system32\HPZipm12.exe
C:\Programme\Microsoft Office\Office10\OUTLOOK.EXE
C:\Programme\Mozilla Firefox\firefox.exe
C:\PROGRA~1\WINZIP\winzip32.exe
D:\Unzipped\hijackthis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.web.de/
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: McBrwHelper Class - {227B8AA8-DAF2-4892-BD1D-73F568BCB24E} - c:\programme\mcafee.com\mps\mcbrhlpr.dll
O2 - BHO: McAfee AntiPhishing Filter - {41D68ED8-4CFF-4115-88A6-6EBB8AF19000} - c:\PROGRA~1\mcafee\SPAMKI~1\mcapfbho.dll
O2 - BHO: IE PopUp-Killer - {49E0E0F0-5C30-11D4-945D-000000000003} - C:\PROGRA~1\ashampoo\ASHAMP~2\PopUp.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programme\google\googletoolbar2.dll
O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programme\google\googletoolbar2.dll
O3 - Toolbar: Falk Toolbar - {F1864DD1-3DC9-11D8-A015-00105ADD2ADA} - C:\Programme\Falk\Falk Toolbar\FalkBar.dll
O3 - Toolbar: duden.de Toolbar - {92F02779-6D88-4958-8AD3-83C12D86ADC7} - C:\Programme\Duden-Suche Toolbar\toolbar.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Gainward] C:\WINDOWS\TBPanel.exe /A
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [MaxtorCombo] "C:\PROGRA~1\Dantz\RETROS~1\ComboButton.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Programme\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [TkBellExe] "C:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [MCUpdateExe] C:\PROGRA~1\mcafee.com\agent\McUpdate.exe
O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
O4 - HKLM\..\Run: [VSOCheckTask] "C:\PROGRA~1\McAfee.com\VSO\mcmnhdlr.exe" /checktask
O4 - HKLM\..\Run: [VirusScan Online] C:\Programme\McAfee.com\VSO\mcvsshld.exe
O4 - HKLM\..\Run: [OASClnt] C:\Programme\McAfee.com\VSO\oasclnt.exe
O4 - HKLM\..\Run: [MSKAGENTEXE] C:\PROGRA~1\McAfee\SPAMKI~1\MskAgent.exe
O4 - HKLM\..\Run: [MSKDetectorExe] C:\PROGRA~1\McAfee\SPAMKI~1\MSKDetct.exe /startup
O4 - HKLM\..\Run: [Imonitor] "C:\Programme\McAfee\QuickClean\Plguni.exe" /START
O4 - HKLM\..\Run: [HP Component Manager] "C:\Programme\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [MPSExe] c:\PROGRA~1\mcafee.com\mps\mscifapp.exe /embedding
O4 - HKLM\..\Run: [WEB.DE Sync - WebDeSync] C:\Programme\Gemeinsame Dateien\XCPCSync\Translators\WebDeSync\WebDeSyncTray.exe
O4 - HKLM\..\Run: [Ulead AutoDetector v2] C:\Programme\Gemeinsame Dateien\Ulead Systems\AutoDetector\monitor.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Programme\Java\j2re1.4.2_05\bin\jusched.exe
O4 - HKLM\..\Run: [PSDrvCheck] C:\WINDOWS\system32\PSDrvCheck.exe
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Programme\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [MPFEXE] C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Programme\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [_AntiSpyware] c:\progra~1\mcafee\MCAFEE~2\masalert.exe
O4 - HKLM\..\Run: [TrueImageMonitor.exe] C:\Programme\Acronis\TrueImage\TrueImageMonitor.exe
O4 - HKLM\..\Run: [Acronis Scheduler2 Service] "C:\Programme\Gemeinsame Dateien\Acronis\Schedule2\schedhlp.exe"
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [Easy Synchronization] C:\Programme\Logitech\Easy Synchronization\LogitechEasySync.exe
O4 - HKLM\..\Run: [MediaLifeService] "C:\Programme\Logitech\MediaLife\MediaLifeService.exe"
O4 - HKLM\..\Run: [Logitech BT Wizard] LBTWiz.exe -silent
O4 - HKLM\..\Run: [HDInspector.exe] C:\Programme\Festplatten-Inspektor\HDInspector.exe
O4 - HKLM\..\RunOnce: [Easy Synchronization] C:\Programme\Logitech\Easy Synchronization\LogitechEasySync.exe --ports
O4 - HKCU\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NVMCTRAY.DLL,NvTaskbarInit
O4 - HKCU\..\Run: [wahrig.digital] C:\Programme\wahrig.digital\WAHRIG.exe
O4 - HKCU\..\Run: [LeechGet] "C:\Programme\LeechGet 2005\LeechGet.exe" -intray
O4 - HKCU\..\Run: [MSMSGS] "C:\Programme\Messenger\Msmsgs.exe" /background
O4 - HKCU\..\Run: [updateMgr] C:\Programme\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_5 -reboot 1
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Ashampoo PopUpBlocker] C:\Programme\ashampoo\Ashampoo WinOptimizer Platinum 3\PopUpKiller.exe
O4 - Global Startup: Adobe Reader - Schnellstart.lnk = C:\Programme\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: BTTray.lnk = ?
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Programme\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:\Programme\Logitech\SetPoint\SetPoint.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Programme\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Office-Bibliothek-Direktsuche.lnk = C:\PC-BIB\PCLib.exe
O4 - Global Startup: PC-Bibliothek-Direktsuche.lnk = C:\PC-BIB\PCLib.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Programme\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: &Google-Suche - res://c:\programme\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: &Ins Deutsche übersetzen - res://c:\programme\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: &Suche im Duden - res://C:\Programme\Duden-Suche Toolbar\toolbar.dll/SEARCH.HTML
O8 - Extra context menu item: Als Start in Falk übernehmen - res://C:\PROGRA~1\Falk\FALKTO~1\FalkBar.dll/SetAsStart
O8 - Extra context menu item: Als Ziel in Falk übernehmen - res://C:\PROGRA~1\Falk\FALKTO~1\FalkBar.dll/SetAsDest
O8 - Extra context menu item: Falk Stadtplan anzeigen - res://C:\PROGRA~1\Falk\FALKTO~1\FalkBar.dll/GetMap
O8 - Extra context menu item: Im Cache gespeicherte Seite - res://c:\programme\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: Mit dem LeechGet Wizard laden - file://C:\Programme\LeechGet 2005\\Wizard.html
O8 - Extra context menu item: Mit LeechGet herunterladen - file://C:\Programme\LeechGet 2005\\AddUrl.html
O8 - Extra context menu item: Mit LeechGet parsen - file://C:\Programme\LeechGet 2005\\Parser.html
O8 - Extra context menu item: Nach Microsoft &Excel exportieren - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Verweisseiten - res://c:\programme\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Ähnliche Seiten - res://c:\programme\google\GoogleToolbar2.dll/cmsimilar.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\system32\msjava.dll
O9 - Extra 'Tools' menuitem: Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\system32\msjava.dll
O9 - Extra button: duden.de Toolbar - {1AE2F26C-8E23-4930-A68D-9E681A764001} - C:\Programme\Duden-Suche Toolbar\toolbar.dll
O9 - Extra 'Tools' menuitem: duden.de Toolbar - {1AE2F26C-8E23-4930-A68D-9E681A764001} - C:\Programme\Duden-Suche Toolbar\toolbar.dll
O9 - Extra button: (no name) - {39FD89BF-D3F1-45b6-BB56-3582CCF489E1} - c:\PROGRA~1\mcafee\SPAMKI~1\mcapfbho.dll
O9 - Extra 'Tools' menuitem: McAfee AntiPhishing Filter - {39FD89BF-D3F1-45b6-BB56-3582CCF489E1} - c:\PROGRA~1\mcafee\SPAMKI~1\mcapfbho.dll
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Programme\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Programme\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: @C:\Programme\Messenger\Msgslang.dll,-61144 - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: @C:\Programme\Messenger\Msgslang.dll,-61144 - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
O12 - Plugin for .UVR: C:\Programme\Internet Explorer\Plugins\NPUPano.dll
O16 - DPF: {0713E8D2-850A-101B-AFC0-4210102A8DA7} (Microsoft ProgressBar Control, version 5.0 (SP2)) - http://download.mcafee.com/molbin/Share ... mCtl32.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) - http://download.mcafee.com/molbin/share ... insctl.cab
O16 - DPF: {59136DB4-6CA3-4B40-8F2F-BBF84B6F1E91} (Attachment Upload Control) - https://img.web.de/v/mail/activex/mail_upload_1124.cab
O16 - DPF: {5F0C30E4-1E72-4DCC-85E5-57810F1CA97B} (McUpdatePortalFactory Class) - http://www.amiuptodate.com/vsc/bin/1,0, ... Portal.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftup ... 5940953015
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.4.2) - https://java.sun.com/update/1.4.2/jinst ... s-i586.cab
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} (DwnldGroupMgr Class) - http://download.mcafee.com/molbin/share ... cgdmgr.cab
O16 - DPF: {DF6504AC-3EFE-4287-B259-FB299B069C95} (WEBDE Fotoalbum Upload Control) - https://img.web.de/v/mail/activex/fa_os ... d_1132.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{DCA6E8EA-D9E8-4CA6-8DF0-10B39B87D05E}: NameServer = 195.50.140.252 195.50.140.114
O20 - Winlogon Notify: LBTWlgn - c:\programme\gemeinsame dateien\logitech\bluetooth\LBTWlgn.dll
O23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) - Acronis - C:\Programme\Gemeinsame Dateien\Acronis\Schedule2\schedul2.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Programme\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: Firebird Server - MAGIX Instance (FirebirdServerMAGIXInstance) - MAGIX® - C:\MAGIX\Common\Database\bin\fbserver.exe
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech Inc. - C:\Programme\Gemeinsame Dateien\Logitech\Bluetooth\LBTSERV.EXE
O23 - Service: Logitech Easy Synchronization - Unknown owner - C:\Programme\Logitech\Easy Synchronization\servicestub.exe
O23 - Service: McAfee AntiSpyware Service - McAfee, Inc. - c:\progra~1\mcafee\mcafee antispyware\massrv.exe
O23 - Service: McAfee WSC Integration (McDetect.exe) - McAfee, Inc - c:\programme\mcafee.com\agent\mcdetect.exe
O23 - Service: McAfee.com McShield (McShield) - McAfee Inc. - c:\PROGRA~1\mcafee.com\vso\mcshield.exe
O23 - Service: McAfee Task Scheduler (McTskshd.exe) - McAfee, Inc - c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee Corporation - C:\PROGRA~1\McAfee.com\PERSON~1\MpfService.exe
O23 - Service: McAfee SpamKiller Server (MskService) - McAfee Inc. - C:\PROGRA~1\McAfee\SPAMKI~1\MSKSrvr.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: O&O Defrag - O&O Software GmbH - C:\WINDOWS\system32\oodag.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Retrospect Launcher (RetroLauncher) - Unknown owner - C:\Programme\Dantz\Retrospect\retrorun.exe
O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Programme\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
O23 - Service: TuneUp WinStyler Theme Service (TUWinStylerThemeSvc) - TuneUp Software GmbH - C:\Programme\TuneUp Utilities 2006\WinStylerThemeSvc.exe
O23 - Service: UPnPService - Unknown owner - C:\Programme\Gemeinsame Dateien\MAGIX Shared\UPnPService\UPnPService.exe
Gruß
Wolfgang
- dj-fischi
- Beiträge: 490
- Registriert: 21.12.2005, 10:38
- Wohnort: Berlin
Führe den CrapCleaner aus und hake alles an:
http://virus-protect.net/temp.html
Lade dir Ewido, Scanne, poste den Report und deinstalliere es nach getaener Arbeit (Virenentfernung)
http://virus-protect.net/ewido.html
========================
Einzelne "exe" überprüfen:
http://www.virustotal.com/flash/index_en.html
Oben auf der Seite ==> Durchsuchen ==> Wähle diese Datei an und schreibe das ergebniss auf:
C:\WINDOWS\system32\txtuser.exe
http://virus-protect.net/temp.html
Lade dir Ewido, Scanne, poste den Report und deinstalliere es nach getaener Arbeit (Virenentfernung)
http://virus-protect.net/ewido.html
========================
Einzelne "exe" überprüfen:
http://www.virustotal.com/flash/index_en.html
Oben auf der Seite ==> Durchsuchen ==> Wähle diese Datei an und schreibe das ergebniss auf:
C:\WINDOWS\system32\txtuser.exe
- Holy Marcell
Hallöchen
Habe den CrapCleaner ausgeführt und diesen Log bekommst du als 1. Anlage. Soll ich das Programm wieder deinstallieren?
Als nächstes habe ich mir Ewido installiert, gescannt und den Log bekommst du als 2. Anlage. Die infizierten Objekte, welches mir das Programm angezeigt hat (nicht lebensbedrohlich), habe ich nicht entfernt! Ist doch richtig so gewesen? Das Programm werde ich wieder über Systemsteuerung (Software) deinstallieren, wie du es mir vorgegeben hast. Als Letztes habe ich dann die „exe“ überprüft und dir das Ergebnis als 3. Anlage mit beigefügt. Ich hoffe so alles richtig gemacht zu haben und werde auf deine Antwort warten.
Gruß
Wolfgang
ANALYSE komplett - (78,936 Sek)
------------------------------------------------------------------------------------------
390,9MB zu entfernen. (Ungefähre Größe)
Details der zu löschenden Dateien (Hinweis: Es wurden noch keine Dateien gelöscht)
------------------------------------------------------------------------------------------
IE Temporären Internetdateien (290 Dateien) 1,69MB
C:\Dokumente und Einstellungen\Wolfgang Fischer\Cookies\wolfgang fischer@de.mcafee[1].txt 83 bytes
C:\Dokumente und Einstellungen\Wolfgang Fischer\Cookies\wolfgang fischer@informationsarchiv[2].txt 185 bytes
C:\Dokumente und Einstellungen\Wolfgang Fischer\Cookies\wolfgang fischer@microsoft[1].txt 126 bytes
C:\Dokumente und Einstellungen\Wolfgang Fischer\Cookies\wolfgang fischer@sdc.mcafee[1].txt 142 bytes
Zum Löschen markiert: C:\Dokumente und Einstellungen\Wolfgang Fischer\Cookies\index.dat
C:\WINDOWS\TEMP\Cookies\index.dat 32,00KB
C:\WINDOWS\TEMP\Cookies\wolfgang fischer@google[1].txt 135 bytes
C:\WINDOWS\TEMP\Cookies\wolfgang fischer@sdc.mcafee[1].txt 142 bytes
C:\WINDOWS\TEMP\HP000000.IDX 1,20MB
C:\WINDOWS\TEMP\hpzcoi00.log 596 bytes
C:\WINDOWS\TEMP\hpzcoi01.log 596 bytes
C:\WINDOWS\TEMP\hpzcoi02.log 948 bytes
C:\WINDOWS\TEMP\hpzcoi03.log 690 bytes
C:\WINDOWS\TEMP\hpzcoi04.log 596 bytes
C:\WINDOWS\TEMP\hpzcoi05.log 596 bytes
C:\WINDOWS\TEMP\hpzcoi06.log 1,06KB
C:\WINDOWS\TEMP\hpzcoi07.log 826 bytes
C:\WINDOWS\TEMP\hpzcoi08.log 596 bytes
C:\WINDOWS\TEMP\hpzcoi09.log 596 bytes
C:\WINDOWS\TEMP\hpzcoi10.log 1,06KB
C:\WINDOWS\TEMP\hpzcoi11.log 826 bytes
C:\WINDOWS\TEMP\hpzcoi12.log 596 bytes
C:\WINDOWS\TEMP\hpzcoi13.log 596 bytes
C:\WINDOWS\TEMP\hpzcoi14.log 1,06KB
C:\WINDOWS\TEMP\hpzcoi15.log 826 bytes
C:\WINDOWS\TEMP\hpzglue00.log 538 bytes
C:\WINDOWS\TEMP\hpzglue01.log 335 bytes
C:\WINDOWS\TEMP\hpzglue02.log 538 bytes
C:\WINDOWS\TEMP\hpzglue03.log 335 bytes
C:\WINDOWS\TEMP\hpzglue04.log 538 bytes
C:\WINDOWS\TEMP\hpzglue05.log 335 bytes
C:\WINDOWS\TEMP\hpzservice00.log 3,10KB
C:\WINDOWS\TEMP\hpzservice01.log 3,10KB
C:\WINDOWS\TEMP\hpzservice02.log 2,53KB
C:\WINDOWS\TEMP\mcu10.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu10.tmp\UpdResp.mcaf 928 bytes
C:\WINDOWS\TEMP\mcu10.tmp\vso\45854586.upm 30,93KB
C:\WINDOWS\TEMP\mcu10.tmp\vso\45864587.upm 44,86KB
C:\WINDOWS\TEMP\mcu10.tmp\vso\mcdelta.ini 998 bytes
C:\WINDOWS\TEMP\mcu11.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu11.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu11.tmp\vso\45894590.upm 46,06KB
C:\WINDOWS\TEMP\mcu11.tmp\vso\mcdelta.ini 996 bytes
C:\WINDOWS\TEMP\mcu12.tmp\UpdReq.mcaf 1,70KB
C:\WINDOWS\TEMP\mcu12.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu12.tmp\vso\45774578.upm 59,48KB
C:\WINDOWS\TEMP\mcu12.tmp\vso\mcdelta.ini 996 bytes
C:\WINDOWS\TEMP\mcu13.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu13.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu13.tmp\vso\45914592.upm 20,34KB
C:\WINDOWS\TEMP\mcu13.tmp\vso\mcdelta.ini 995 bytes
C:\WINDOWS\TEMP\mcu14.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu14.tmp\UpdResp.mcaf 928 bytes
C:\WINDOWS\TEMP\mcu14.tmp\vso\45804581.upm 39,84KB
C:\WINDOWS\TEMP\mcu14.tmp\vso\45814582.upm 28,40KB
C:\WINDOWS\TEMP\mcu14.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu15.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu15.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu15.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu15.tmp\UpdResp.mcaf 776 bytes
C:\WINDOWS\TEMP\mcu16.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu16.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu16.tmp\vso\45944595.upm 32,59KB
C:\WINDOWS\TEMP\mcu16.tmp\vso\mcdelta.ini 995 bytes
C:\WINDOWS\TEMP\mcu17.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu17.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu17.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu17.tmp\UpdResp.mcaf 776 bytes
C:\WINDOWS\TEMP\mcu18.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu18.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu18.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu18.tmp\UpdResp.mcaf 776 bytes
C:\WINDOWS\TEMP\mcu19.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu19.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu19.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu19.tmp\UpdResp.mcaf 776 bytes
C:\WINDOWS\TEMP\mcu1A.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu1A.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu1A.tmp\vso\45994600.upm 11,21KB
C:\WINDOWS\TEMP\mcu1A.tmp\vso\mcdelta.ini 995 bytes
C:\WINDOWS\TEMP\mcu1B.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu1B.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu1B.tmp\vso\45694570.upm 27,17KB
C:\WINDOWS\TEMP\mcu1B.tmp\vso\mcdelta.ini 995 bytes
C:\WINDOWS\TEMP\mcu1C.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu1C.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu1C.tmp\vso\45704571.upm 26,69KB
C:\WINDOWS\TEMP\mcu1C.tmp\vso\mcdelta.ini 995 bytes
C:\WINDOWS\TEMP\mcu1D.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu1D.tmp\UpdResp.mcaf 928 bytes
C:\WINDOWS\TEMP\mcu1D.tmp\vso\45974598.upm 953 bytes
C:\WINDOWS\TEMP\mcu1D.tmp\vso\45984599.upm 22,30KB
C:\WINDOWS\TEMP\mcu1D.tmp\vso\mcdelta.ini 994 bytes
C:\WINDOWS\TEMP\mcu1E.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu1E.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu1E.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu1E.tmp\UpdResp.mcaf 776 bytes
C:\WINDOWS\TEMP\mcu1F.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu1F.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu1F.tmp\vso\46004601.upm 27,81KB
C:\WINDOWS\TEMP\mcu1F.tmp\vso\mcdelta.ini 995 bytes
C:\WINDOWS\TEMP\mcu20.tmp\UpdReq.mcaf 1,70KB
C:\WINDOWS\TEMP\mcu20.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu20.tmp\vso\45734574.upm 17,30KB
C:\WINDOWS\TEMP\mcu20.tmp\vso\mcdelta.ini 996 bytes
C:\WINDOWS\TEMP\mcu21.tmp\UpdReq.mcaf 1,70KB
C:\WINDOWS\TEMP\mcu21.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu21.tmp\vso\45754576.upm 20,65KB
C:\WINDOWS\TEMP\mcu21.tmp\vso\mcdelta.ini 996 bytes
C:\WINDOWS\TEMP\mcu22.tmp\UpdReq.mcaf 1,70KB
C:\WINDOWS\TEMP\mcu22.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu22.tmp\vso\45764577.upm 27,84KB
C:\WINDOWS\TEMP\mcu22.tmp\vso\mcdelta.ini 996 bytes
C:\WINDOWS\TEMP\mcu23.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu23.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu23.tmp\vso\45934594.upm 29,81KB
C:\WINDOWS\TEMP\mcu23.tmp\vso\mcdelta.ini 995 bytes
C:\WINDOWS\TEMP\mcu24.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu24.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu24.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu24.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu25.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu25.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu25.tmp\vso\46014602.upm 29,60KB
C:\WINDOWS\TEMP\mcu25.tmp\vso\mcdelta.ini 995 bytes
C:\WINDOWS\TEMP\mcu26.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu26.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu26.tmp\UpdReq.mcaf 1,39KB
C:\WINDOWS\TEMP\mcu26.tmp\UpdResp.mcaf 778 bytes
C:\WINDOWS\TEMP\mcu27.tmp\UpdReq.mcaf 1,70KB
C:\WINDOWS\TEMP\mcu27.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu27.tmp\vso\45784579.upm 41,11KB
C:\WINDOWS\TEMP\mcu27.tmp\vso\mcdelta.ini 996 bytes
C:\WINDOWS\TEMP\mcu28.tmp\UpdReq.mcaf 1,70KB
C:\WINDOWS\TEMP\mcu28.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu28.tmp\vso\45744575.upm 19,33KB
C:\WINDOWS\TEMP\mcu28.tmp\vso\mcdelta.ini 996 bytes
C:\WINDOWS\TEMP\mcu29.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu29.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu29.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu29.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu2A.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu2A.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu2A.tmp\vso\46024603.upm 30,59KB
C:\WINDOWS\TEMP\mcu2A.tmp\vso\mcdelta.ini 996 bytes
C:\WINDOWS\TEMP\mcu2B.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu2B.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu2B.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu2B.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu2C.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu2C.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu2C.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu2C.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu2D.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu2D.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu2D.tmp\vso\46054606.upm 29,33KB
C:\WINDOWS\TEMP\mcu2D.tmp\vso\mcdelta.ini 997 bytes
C:\WINDOWS\TEMP\mcu2E.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu2E.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu2E.tmp\vso\46044605.upm 45,94KB
C:\WINDOWS\TEMP\mcu2E.tmp\vso\mcdelta.ini 996 bytes
C:\WINDOWS\TEMP\mcu2F.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu2F.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu2F.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu2F.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu30.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu30.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu30.tmp\vso\46064607.upm 22,91KB
C:\WINDOWS\TEMP\mcu30.tmp\vso\mcdelta.ini 997 bytes
C:\WINDOWS\TEMP\mcu31.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu31.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu31.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu31.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu32.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu32.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu32.tmp\vso\46074608.upm 20,62KB
C:\WINDOWS\TEMP\mcu32.tmp\vso\mcdelta.ini 997 bytes
C:\WINDOWS\TEMP\mcu33.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu33.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu33.tmp\vso\46084609.upm 21,13KB
C:\WINDOWS\TEMP\mcu33.tmp\vso\mcdelta.ini 997 bytes
C:\WINDOWS\TEMP\mcu34.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu34.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu34.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu34.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu35.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu35.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu35.tmp\vso\46094610.upm 31,14KB
C:\WINDOWS\TEMP\mcu35.tmp\vso\mcdelta.ini 997 bytes
C:\WINDOWS\TEMP\mcu36.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu36.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu36.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu36.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu37.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu37.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu37.tmp\vso\46104611.upm 57,03KB
C:\WINDOWS\TEMP\mcu37.tmp\vso\mcdelta.ini 997 bytes
C:\WINDOWS\TEMP\mcu38.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu38.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu38.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu38.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu39.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu39.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu39.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu39.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu3A.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu3A.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu3A.tmp\vso\46114612.upm 20,85KB
C:\WINDOWS\TEMP\mcu3A.tmp\vso\mcdelta.ini 998 bytes
C:\WINDOWS\TEMP\mcu3B.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu3B.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu3B.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu3B.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu3C.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu3C.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu3C.tmp\vso\46134614.upm 22,66KB
C:\WINDOWS\TEMP\mcu3C.tmp\vso\mcdelta.ini 998 bytes
C:\WINDOWS\TEMP\mcu3D.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu3D.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu3D.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu3D.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu3E.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu3E.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu3E.tmp\vso\46124613.upm 63,15KB
C:\WINDOWS\TEMP\mcu3E.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu3F.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu3F.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu3F.tmp\vso\46154616.upm 55,11KB
C:\WINDOWS\TEMP\mcu3F.tmp\vso\mcdelta.ini 998 bytes
C:\WINDOWS\TEMP\mcu40.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu40.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu40.tmp\vso\46144615.upm 0,14MB
C:\WINDOWS\TEMP\mcu40.tmp\vso\mcdelta.ini 998 bytes
C:\WINDOWS\TEMP\mcu41.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu41.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu41.tmp\vso\46164617.upm 21,31KB
C:\WINDOWS\TEMP\mcu41.tmp\vso\mcdelta.ini 998 bytes
C:\WINDOWS\TEMP\mcu42.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu42.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu42.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu42.tmp\UpdResp.mcaf 776 bytes
C:\WINDOWS\TEMP\mcu43.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu43.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu43.tmp\vso\46184619.upm 22,62KB
C:\WINDOWS\TEMP\mcu43.tmp\vso\mcdelta.ini 998 bytes
C:\WINDOWS\TEMP\mcu44.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu44.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu44.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu44.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu45.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu45.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu45.tmp\vso\46194620.upm 48,85KB
C:\WINDOWS\TEMP\mcu45.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu46.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu46.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu46.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu46.tmp\UpdResp.mcaf 776 bytes
C:\WINDOWS\TEMP\mcu47.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu47.tmp\UpdResp.mcaf 928 bytes
C:\WINDOWS\TEMP\mcu47.tmp\vso\46204621.upm 3,45KB
C:\WINDOWS\TEMP\mcu47.tmp\vso\46214622.upm 24,76KB
C:\WINDOWS\TEMP\mcu47.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu48.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu48.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu48.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu48.tmp\UpdResp.mcaf 776 bytes
C:\WINDOWS\TEMP\mcu49.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu49.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu49.tmp\vso\46224623.upm 76,05KB
C:\WINDOWS\TEMP\mcu49.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu4A.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu4A.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu4A.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu4A.tmp\UpdResp.mcaf 776 bytes
C:\WINDOWS\TEMP\mcu4B.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu4B.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu4B.tmp\vso\46234624.upm 32,64KB
C:\WINDOWS\TEMP\mcu4B.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu4C.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu4C.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu4C.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu4C.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu4D.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu4D.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu4D.tmp\vso\46254626.upm 39,60KB
C:\WINDOWS\TEMP\mcu4D.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu4E.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu4E.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu4E.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu4E.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu4F.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu4F.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu4F.tmp\vso\46244625.upm 59,94KB
C:\WINDOWS\TEMP\mcu4F.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu50.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu50.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu50.tmp\vso\46264627.upm 34,17KB
C:\WINDOWS\TEMP\mcu50.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu51.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu51.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu51.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu51.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu52.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu52.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu52.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu52.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu53.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu53.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu53.tmp\vso\46274628.upm 19,75KB
C:\WINDOWS\TEMP\mcu53.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu54.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu54.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu54.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu54.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu55.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu55.tmp\UpdResp.mcaf 928 bytes
C:\WINDOWS\TEMP\mcu55.tmp\vso\46284629.upm 0,24MB
C:\WINDOWS\TEMP\mcu55.tmp\vso\46294630.upm 861 bytes
C:\WINDOWS\TEMP\mcu55.tmp\vso\mcdelta.ini 1000 bytes
C:\WINDOWS\TEMP\mcu56.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu56.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu56.tmp\vso\46304631.upm 0,14MB
C:\WINDOWS\TEMP\mcu56.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu57.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu57.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu57.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu57.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu58.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu58.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu58.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu58.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu59.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu59.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu59.tmp\vso\46324633.upm 0,17MB
C:\WINDOWS\TEMP\mcu59.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu5A.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu5A.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu5A.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu5A.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu5B.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu5B.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu5B.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu5B.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu5C.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu5C.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu5C.tmp\vso\46334634.upm 0,13MB
C:\WINDOWS\TEMP\mcu5C.tmp\vso\mcdelta.ini 998 bytes
C:\WINDOWS\TEMP\mcu5D.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu5D.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu5D.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu5D.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu5E.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu5E.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu5E.tmp\vso\46344635.upm 0,12MB
C:\WINDOWS\TEMP\mcu5E.tmp\vso\mcdelta.ini 998 bytes
C:\WINDOWS\TEMP\mcu5F.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu5F.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu5F.tmp\vso\46354636.upm 0,13MB
C:\WINDOWS\TEMP\mcu5F.tmp\vso\mcdelta.ini 998 bytes
C:\WINDOWS\TEMP\mcu60.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu60.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu60.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu60.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu61.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu61.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu61.tmp\vso\46364637.upm 0,14MB
C:\WINDOWS\TEMP\mcu61.tmp\vso\mcdelta.ini 998 bytes
C:\WINDOWS\TEMP\mcu62.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu62.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu62.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu62.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu63.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu63.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu63.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu63.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu64.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu64.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu64.tmp\UpdReq.mcaf 1,42KB
C:\WINDOWS\TEMP\mcu64.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu65.tmp\UpdReq.mcaf 1,21KB
C:\WINDOWS\TEMP\mcu65.tmp\UpdResp.mcaf 831 bytes
C:\WINDOWS\TEMP\mcu66.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu66.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu66.tmp\UpdReq.mcaf 1,44KB
C:\WINDOWS\TEMP\mcu66.tmp\UpdResp.mcaf 776 bytes
C:\WINDOWS\TEMP\mcu67.tmp\UpdReq.mcaf 1,18KB
C:\WINDOWS\TEMP\mcu67.tmp\UpdResp.mcaf 831 bytes
C:\WINDOWS\TEMP\mcu68.tmp\UpdReq.mcaf 1,21KB
C:\WINDOWS\TEMP\mcu68.tmp\UpdResp.mcaf 834 bytes
C:\WINDOWS\TEMP\mcu69.tmp\UpdReq.mcaf 1,75KB
C:\WINDOWS\TEMP\mcu69.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu69.tmp\vso\46404641.upm 0,15MB
C:\WINDOWS\TEMP\mcu69.tmp\vso\mcdelta.ini 998 bytes
C:\WINDOWS\TEMP\mcu6A.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu6A.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu6A.tmp\UpdReq.mcaf 1,45KB
C:\WINDOWS\TEMP\mcu6A.tmp\UpdResp.mcaf 776 bytes
C:\WINDOWS\TEMP\mcu6B.tmp\UpdReq.mcaf 1,72KB
C:\WINDOWS\TEMP\mcu6B.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu6B.tmp\vso\46374638.upm 0,15MB
C:\WINDOWS\TEMP\mcu6B.tmp\vso\mcdelta.ini 998 bytes
C:\WINDOWS\TEMP\mcu6C.tmp\UpdReq.mcaf 1,75KB
C:\WINDOWS\TEMP\mcu6C.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu6C.tmp\vso\46414642.upm 9,32KB
C:\WINDOWS\TEMP\mcu6C.tmp\vso\mcdelta.ini 998 bytes
C:\WINDOWS\TEMP\mcu6D.tmp\UpdReq.mcaf 1,22KB
C:\WINDOWS\TEMP\mcu6D.tmp\UpdResp.mcaf 831 bytes
C:\WINDOWS\TEMP\mcu6E.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu6E.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu6E.tmp\UpdReq.mcaf 1,45KB
C:\WINDOWS\TEMP\mcu6E.tmp\UpdResp.mcaf 776 bytes
C:\WINDOWS\TEMP\mcu6F.tmp\UpdReq.mcaf 1,21KB
C:\WINDOWS\TEMP\mcu6F.tmp\UpdResp.mcaf 831 bytes
C:\WINDOWS\TEMP\mcu70.tmp\UpdReq.mcaf 1,75KB
C:\WINDOWS\TEMP\mcu70.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu70.tmp\vso\46444645.upm 0,13MB
C:\WINDOWS\TEMP\mcu70.tmp\vso\mcdelta.ini 998 bytes
C:\WINDOWS\TEMP\mcu71.tmp\UpdReq.mcaf 1,75KB
C:\WINDOWS\TEMP\mcu71.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu71.tmp\vso\46424643.upm 0,13MB
C:\WINDOWS\TEMP\mcu71.tmp\vso\mcdelta.ini 998 bytes
C:\WINDOWS\TEMP\mcu72.tmp\UpdReq.mcaf 1,21KB
C:\WINDOWS\TEMP\mcu72.tmp\UpdResp.mcaf 831 bytes
C:\WINDOWS\TEMP\mcu73.tmp\UpdReq.mcaf 1,75KB
C:\WINDOWS\TEMP\mcu73.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu73.tmp\vso\46434644.upm 0,12MB
C:\WINDOWS\TEMP\mcu73.tmp\vso\mcdelta.ini 998 bytes
C:\WINDOWS\TEMP\mcu74.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu74.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu74.tmp\UpdReq.mcaf 1,45KB
C:\WINDOWS\TEMP\mcu74.tmp\UpdResp.mcaf 776 bytes
C:\WINDOWS\TEMP\mcu75.tmp\UpdReq.mcaf 1,21KB
C:\WINDOWS\TEMP\mcu75.tmp\UpdResp.mcaf 831 bytes
C:\WINDOWS\TEMP\mcu76.tmp\UpdReq.mcaf 1,75KB
C:\WINDOWS\TEMP\mcu76.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu76.tmp\vso\46454646.upm 0,13MB
C:\WINDOWS\TEMP\mcu76.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu77.tmp\UpdReq.mcaf 1,21KB
C:\WINDOWS\TEMP\mcu77.tmp\UpdResp.mcaf 831 bytes
C:\WINDOWS\TEMP\mcu78.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu78.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu78.tmp\UpdReq.mcaf 1,44KB
C:\WINDOWS\TEMP\mcu78.tmp\UpdResp.mcaf 776 bytes
C:\WINDOWS\TEMP\mcu79.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu79.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu79.tmp\UpdReq.mcaf 1,45KB
C:\WINDOWS\TEMP\mcu79.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu7A.tmp\UpdReq.mcaf 1,21KB
C:\WINDOWS\TEMP\mcu7A.tmp\UpdResp.mcaf 831 bytes
C:\WINDOWS\TEMP\mcu7B.tmp\UpdReq.mcaf 1,75KB
C:\WINDOWS\TEMP\mcu7B.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu7B.tmp\vso\46464647.upm 0,12MB
C:\WINDOWS\TEMP\mcu7B.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu7C.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu7C.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu7C.tmp\UpdReq.mcaf 1,45KB
C:\WINDOWS\TEMP\mcu7C.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu7D.tmp\UpdReq.mcaf 1,21KB
C:\WINDOWS\TEMP\mcu7D.tmp\UpdResp.mcaf 831 bytes
C:\WINDOWS\TEMP\mcu7E.tmp\UpdReq.mcaf 1,75KB
C:\WINDOWS\TEMP\mcu7E.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu7E.tmp\vso\46474648.upm 0,14MB
C:\WINDOWS\TEMP\mcu7E.tmp\vso\mcdelta.ini 998 bytes
C:\WINDOWS\TEMP\mcu7F.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu7F.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu7F.tmp\UpdReq.mcaf 1,45KB
C:\WINDOWS\TEMP\mcu7F.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu80.tmp\UpdReq.mcaf 1,21KB
C:\WINDOWS\TEMP\mcu80.tmp\UpdResp.mcaf 831 bytes
C:\WINDOWS\TEMP\mcu81.tmp\UpdReq.mcaf 1,75KB
C:\WINDOWS\TEMP\mcu81.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu81.tmp\vso\46484649.upm 33,28KB
C:\WINDOWS\TEMP\mcu81.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu82.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu82.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu82.tmp\UpdReq.mcaf 1,45KB
C:\WINDOWS\TEMP\mcu82.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu83.tmp\UpdReq.mcaf 1,21KB
C:\WINDOWS\TEMP\mcu83.tmp\UpdResp.mcaf 831 bytes
C:\WINDOWS\TEMP\mcu84.tmp\UpdReq.mcaf 1,75KB
C:\WINDOWS\TEMP\mcu84.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu84.tmp\vso\46494650.upm 0,14MB
C:\WINDOWS\TEMP\mcu84.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu85.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu85.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu85.tmp\UpdReq.mcaf 1,45KB
C:\WINDOWS\TEMP\mcu85.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu86.tmp\UpdReq.mcaf 1,21KB
C:\WINDOWS\TEMP\mcu86.tmp\UpdResp.mcaf 831 bytes
C:\WINDOWS\TEMP\mcu87.tmp\UpdReq.mcaf 1,75KB
C:\WINDOWS\TEMP\mcu87.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu87.tmp\vso\46504651.upm 0,14MB
C:\WINDOWS\TEMP\mcu87.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu88.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu88.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu88.tmp\UpdReq.mcaf 1,45KB
C:\WINDOWS\TEMP\mcu88.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu89.tmp\UpdReq.mcaf 1,21KB
C:\WINDOWS\TEMP\mcu89.tmp\UpdResp.mcaf 831 bytes
C:\WINDOWS\TEMP\mcu8A.tmp\UpdReq.mcaf 1,75KB
C:\WINDOWS\TEMP\mcu8A.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu8A.tmp\vso\46524653.upm 0,13MB
C:\WINDOWS\TEMP\mcu8A.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu8B.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu8B.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu8B.tmp\UpdReq.mcaf 1,45KB
C:\WINDOWS\TEMP\mcu8B.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu8C.tmp\UpdReq.mcaf 1,21KB
C:\WINDOWS\TEMP\mcu8C.tmp\UpdResp.mcaf 831 bytes
C:\WINDOWS\TEMP\mcu8D.tmp\UpdReq.mcaf 1,75KB
C:\WINDOWS\TEMP\mcu8D.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu8D.tmp\vso\46534654.upm 0,14MB
C:\WINDOWS\TEMP\mcu8D.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu8E.tmp\UpdReq.mcaf 1,21KB
C:\WINDOWS\TEMP\mcu8E.tmp\UpdResp.mcaf 978 bytes
C:\WINDOWS\TEMP\mcu8F.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu8F.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu8F.tmp\UpdReq.mcaf 1,45KB
C:\WINDOWS\TEMP\mcu8F.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu9.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu9.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu9.tmp\vso\46034604.upm 44,64KB
C:\WINDOWS\TEMP\mcu9.tmp\vso\mcdelta.ini 997 bytes
C:\WINDOWS\TEMP\mcu90.tmp\UpdReq.mcaf 1,75KB
C:\WINDOWS\TEMP\mcu90.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu90.tmp\vso\46544655.upm 0,15MB
C:\WINDOWS\TEMP\mcu90.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu91.tmp\UpdReq.mcaf 1,21KB
C:\WINDOWS\TEMP\mcu91.tmp\UpdResp.mcaf 831 bytes
C:\WINDOWS\TEMP\mcu92.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu92.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu92.tmp\UpdReq.mcaf 1,45KB
C:\WINDOWS\TEMP\mcu92.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu93.tmp\UpdReq.mcaf 1,75KB
C:\WINDOWS\TEMP\mcu93.tmp\UpdResp.mcaf 928 bytes
C:\WINDOWS\TEMP\mcu93.tmp\vso\46554656.upm 0,13MB
C:\WINDOWS\TEMP\mcu93.tmp\vso\46564657.upm 783 bytes
C:\WINDOWS\TEMP\mcu93.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu94.tmp\UpdReq.mcaf 1,21KB
C:\WINDOWS\TEMP\mcu94.tmp\UpdResp.mcaf 831 bytes
C:\WINDOWS\TEMP\mcu95.tmp\UpdReq.mcaf 1,75KB
C:\WINDOWS\TEMP\mcu95.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu95.tmp\vso\46574658.upm 0,13MB
C:\WINDOWS\TEMP\mcu95.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu96.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu96.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu96.tmp\UpdReq.mcaf 1,45KB
C:\WINDOWS\TEMP\mcu96.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu97.tmp\UpdReq.mcaf 1,21KB
C:\WINDOWS\TEMP\mcu97.tmp\UpdResp.mcaf 831 bytes
C:\WINDOWS\TEMP\mcu98.tmp\UpdReq.mcaf 1,75KB
C:\WINDOWS\TEMP\mcu98.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu98.tmp\vso\46584659.upm 0,13MB
C:\WINDOWS\TEMP\mcu98.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu99.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu99.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu99.tmp\UpdReq.mcaf 1,45KB
C:\WINDOWS\TEMP\mcu99.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu9A.tmp\UpdReq.mcaf 1,21KB
C:\WINDOWS\TEMP\mcu9A.tmp\UpdResp.mcaf 831 bytes
C:\WINDOWS\TEMP\mcu9B.tmp\UpdReq.mcaf 1,75KB
C:\WINDOWS\TEMP\mcu9B.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu9B.tmp\vso\46594660.upm 0,13MB
C:\WINDOWS\TEMP\mcu9B.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu9C.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu9C.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu9C.tmp\UpdReq.mcaf 1,45KB
C:\WINDOWS\TEMP\mcu9C.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu9E.tmp\UpdReq.mcaf 1,75KB
C:\WINDOWS\TEMP\mcu9E.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu9E.tmp\vso\46604661.upm 0,13MB
C:\WINDOWS\TEMP\mcu9E.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcuA.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcuA.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcuA.tmp\UpdReq.mcaf 1,38KB
C:\WINDOWS\TEMP\mcuA.tmp\UpdResp.mcaf 774 bytes
C:\WINDOWS\TEMP\mcuB.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcuB.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcuB.tmp\vso\45824583.upm 26,92KB
C:\WINDOWS\TEMP\mcuB.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcuC.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcuC.tmp\UpdResp.mcaf 928 bytes
C:\WINDOWS\TEMP\mcuC.tmp\vso\45834584.upm 52,16KB
C:\WINDOWS\TEMP\mcuC.tmp\vso\45844585.upm 5,21KB
C:\WINDOWS\TEMP\mcuC.tmp\vso\mcdelta.ini 998 bytes
C:\WINDOWS\TEMP\mcuD.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcuD.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcuD.tmp\vso\45714572.upm 41,83KB
C:\WINDOWS\TEMP\mcuD.tmp\vso\mcdelta.ini 996 bytes
C:\WINDOWS\TEMP\mcuDF.tmp\agentins.cab 74,20KB
C:\WINDOWS\TEMP\mcuDF.tmp\agentins.inf 662 bytes
C:\WINDOWS\TEMP\mcuDF.tmp\agentins.ui 74,42KB
C:\WINDOWS\TEMP\mcuDF.tmp\AgentVer.ini 6,67KB
C:\WINDOWS\TEMP\mcuDF.tmp\AgntIcfg.ini 797 bytes
C:\WINDOWS\TEMP\mcuDF.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcuDF.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcuDF.tmp\mcuninst.dll 0,11MB
C:\WINDOWS\TEMP\mcuDF.tmp\mps\de\com\mpscfg.cab 1,37MB
C:\WINDOWS\TEMP\mcuDF.tmp\mps\mpsmain.cab 0,44MB
C:\WINDOWS\TEMP\mcuDF.tmp\mps\mpsmon.cab 0,13MB
C:\WINDOWS\TEMP\mcuDF.tmp\mps\winnt\mps.cab 0,13MB
C:\WINDOWS\TEMP\mcuDF.tmp\mpscfg.ini 611 bytes
C:\WINDOWS\TEMP\mcuDF.tmp\mpsins.cab 0,10MB
C:\WINDOWS\TEMP\mcuDF.tmp\mpsins.inf 678 bytes
C:\WINDOWS\TEMP\mcuDF.tmp\mpsins.ui 63,44KB
C:\WINDOWS\TEMP\mcuDF.tmp\MpsVer.Ini 3,62KB
C:\WINDOWS\TEMP\mcuDF.tmp\UpdReq.mcaf 962 bytes
C:\WINDOWS\TEMP\mcuDF.tmp\UpdResp.mcaf 1,97KB
C:\WINDOWS\TEMP\mcuE.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcuE.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcuE.tmp\vso\45684569.upm 21,52KB
C:\WINDOWS\TEMP\mcuE.tmp\vso\mcdelta.ini 995 bytes
C:\WINDOWS\TEMP\mcuF.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcuF.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcuF.tmp\vso\45874588.upm 21,84KB
C:\WINDOWS\TEMP\mcuF.tmp\vso\mcdelta.ini 997 bytes
C:\WINDOWS\TEMP\mmjb_temp2\setup.log 86 bytes
C:\WINDOWS\TEMP\mmjb_WMF\setup.log 186 bytes
C:\WINDOWS\TEMP\MSI467a4.LOG 298 bytes
C:\WINDOWS\TEMP\MSI4e23e.LOG 298 bytes
C:\WINDOWS\TEMP\MSI4e23f.LOG 298 bytes
C:\WINDOWS\TEMP\MSI4e240.LOG 298 bytes
C:\WINDOWS\TEMP\MSI4e241.LOG 298 bytes
C:\WINDOWS\TEMP\MSI4e242.LOG 298 bytes
C:\WINDOWS\TEMP\MSI4e243.LOG 298 bytes
C:\WINDOWS\TEMP\MSI7d4e2.LOG 536 bytes
C:\WINDOWS\TEMP\MSI8e597.LOG 536 bytes
C:\WINDOWS\TEMP\MSIe6657.LOG 536 bytes
C:\WINDOWS\TEMP\Perflib_Perfdata_704.dat 16,00KB
C:\WINDOWS\TEMP\Perflib_Perfdata_710.dat 16,00KB
C:\WINDOWS\TEMP\Perflib_Perfdata_720.dat 16,00KB
C:\WINDOWS\TEMP\Perflib_Perfdata_bc8.dat 16,00KB
C:\WINDOWS\TEMP\servic000.log 688 bytes
C:\WINDOWS\TEMP\servic001.log 688 bytes
C:\WINDOWS\TEMP\servic002.log 688 bytes
C:\WINDOWS\TEMP\servic003.log 688 bytes
C:\WINDOWS\TEMP\servic004.log 688 bytes
C:\WINDOWS\TEMP\servic005.log 688 bytes
C:\WINDOWS\TEMP\sqlite_02CaMYheBJewPtb 0 bytes
C:\WINDOWS\TEMP\sqlite_0F7CFJXyXiamQXv 0 bytes
C:\WINDOWS\TEMP\sqlite_0g46BZCvTG3pwrr 0 bytes
C:\WINDOWS\TEMP\sqlite_0qYgnEUbXsc7BTC 0 bytes
C:\WINDOWS\TEMP\sqlite_1bnuRdvQzB05VKc 0 bytes
C:\WINDOWS\TEMP\sqlite_1fI3pDiw4QeqZlp 0 bytes
C:\WINDOWS\TEMP\sqlite_1mWXJbL4K82G9jX 0 bytes
C:\WINDOWS\TEMP\sqlite_1wx4bnStMBcqkId 0 bytes
C:\WINDOWS\TEMP\sqlite_2fxuZLuW2gWyw9q 1,00KB
C:\WINDOWS\TEMP\sqlite_3vkDaK986tT38Ia 0 bytes
C:\WINDOWS\TEMP\sqlite_5aQduP8dhC2mxLU 0 bytes
C:\WINDOWS\TEMP\sqlite_5jLAtYCgKh0t3dh 0 bytes
C:\WINDOWS\TEMP\sqlite_6CZDZxuAslAtEdc 1,00KB
C:\WINDOWS\TEMP\sqlite_6jpSlwo4dvTtJzE 0 bytes
C:\WINDOWS\TEMP\sqlite_6NGHdNfUWIcC7hb 0 bytes
C:\WINDOWS\TEMP\sqlite_7DzAcfB7qOfI6Ip 0 bytes
C:\WINDOWS\TEMP\sqlite_8kIYhqRq79jeSq7 0 bytes
C:\WINDOWS\TEMP\sqlite_8mfbpYortculLqx 0 bytes
C:\WINDOWS\TEMP\sqlite_A2Zfnd5gbYNkP4y 0 bytes
C:\WINDOWS\TEMP\sqlite_AAs1KhjdbfSoGct 0 bytes
C:\WINDOWS\TEMP\sqlite_ABDHgtfVxDX72U8 0 bytes
C:\WINDOWS\TEMP\sqlite_ADPbZRoEZSJ9Egf 0 bytes
C:\WINDOWS\TEMP\sqlite_ADPbZRoEZSJ9Egf-journal 20 bytes
C:\WINDOWS\TEMP\sqlite_ArUeMrvmwDIyi0R 0 bytes
C:\WINDOWS\TEMP\sqlite_AUMRk8XkvbgRagD 0 bytes
C:\WINDOWS\TEMP\sqlite_b4zEjZIqpAF9ojg 0 bytes
C:\WINDOWS\TEMP\sqlite_BAfCjGK2QwVNs55 0 bytes
C:\WINDOWS\TEMP\sqlite_bJsQIrtEUlCkATp 0 bytes
C:\WINDOWS\TEMP\sqlite_c5CvBA60yYYOqM6 0 bytes
C:\WINDOWS\TEMP\sqlite_cceNAgfWCXhEZNl 0 bytes
C:\WINDOWS\TEMP\sqlite_cLafIZNLl3FNeFf 0 bytes
C:\WINDOWS\TEMP\sqlite_cpA75DkFp4YS0Wa 0 bytes
C:\WINDOWS\TEMP\sqlite_cpqmefgJ2uT1LR3 0 bytes
C:\WINDOWS\TEMP\sqlite_crkdvpVbbtEk1jG 0 bytes
C:\WINDOWS\TEMP\sqlite_CtV99gKWDjRTwjf 0 bytes
C:\WINDOWS\TEMP\sqlite_cWlsaoPIWgPkeaZ 0 bytes
C:\WINDOWS\TEMP\sqlite_dkGfqBlJW9mwkPl 0 bytes
C:\WINDOWS\TEMP\sqlite_dmG1QXnrtD2PoFa 0 bytes
C:\WINDOWS\TEMP\sqlite_dmG1QXnrtD2PoFa-journal 20 bytes
C:\WINDOWS\TEMP\sqlite_dZahaHlIahbKfVp 0 bytes
C:\WINDOWS\TEMP\sqlite_EGh0v0CwI9fyrRe 0 bytes
C:\WINDOWS\TEMP\sqlite_EKgsrsbKZHyqRdy 0 bytes
C:\WINDOWS\TEMP\sqlite_EN8aOtRf66i9aC4 0 bytes
C:\WINDOWS\TEMP\sqlite_ENltYqepur4e5f7 0 bytes
C:\WINDOWS\TEMP\sqlite_Eti8aNY0A12Bl7V 0 bytes
C:\WINDOWS\TEMP\sqlite_euIPevcwPaIgECO 0 bytes
C:\WINDOWS\TEMP\sqlite_EV0TzgdZf6W6MNX 1,00KB
C:\WINDOWS\TEMP\sqlite_eVJ3xbbqDAybImh 0 bytes
C:\WINDOWS\TEMP\sqlite_eXxEMipV6Zbup2Z 0 bytes
C:\WINDOWS\TEMP\sqlite_f3jE5DpZCB2Iv57 0 bytes
C:\WINDOWS\TEMP\sqlite_FlmaVjXngm9PtvV 0 bytes
C:\WINDOWS\TEMP\sqlite_fnwidVqROdCq59M 0 bytes
C:\WINDOWS\TEMP\sqlite_FobFLzMBRaVc7cF 0 bytes
C:\WINDOWS\TEMP\sqlite_fvDszCfNCEgSgrP 0 bytes
C:\WINDOWS\TEMP\sqlite_FXSXnboFaQLDLdh 0 bytes
C:\WINDOWS\TEMP\sqlite_GeQCCISkA4p3Crp 0 bytes
C:\WINDOWS\TEMP\sqlite_gGJ9Q3gkKXtrL42 0 bytes
C:\WINDOWS\TEMP\sqlite_GWdosTZPvQpi1sY 1,00KB
C:\WINDOWS\TEMP\sqlite_GwvtZzTQwkPvYa4 0 bytes
C:\WINDOWS\TEMP\sqlite_h5n6Q6gL9xJ972g 0 bytes
C:\WINDOWS\TEMP\sqlite_hbeo8isvzhSYczG 0 bytes
C:\WINDOWS\TEMP\sqlite_HPZ4AaDYNqpq9VV 0 bytes
C:\WINDOWS\TEMP\sqlite_hxZMV6EcrHsIpbV 0 bytes
C:\WINDOWS\TEMP\sqlite_I4yDCrYP0qqVwaT 0 bytes
C:\WINDOWS\TEMP\sqlite_I7KsHabSCjoiaWY 0 bytes
C:\WINDOWS\TEMP\sqlite_I8QqwcGCgwDSEzi 0 bytes
C:\WINDOWS\TEMP\sqlite_iCawqp920sKDM9s 0 bytes
C:\WINDOWS\TEMP\sqlite_igJ0YvhkwUreyFB 0 bytes
C:\WINDOWS\TEMP\sqlite_iiadldNfw6D2RHV 0 bytes
C:\WINDOWS\TEMP\sqlite_iPa3O6qpN1Nkf31 0 bytes
C:\WINDOWS\TEMP\sqlite_j3eQ58aeqfiueN2 0 bytes
C:\WINDOWS\TEMP\sqlite_jM0HZkqpYX0z6dQ 0 bytes
C:\WINDOWS\TEMP\sqlite_jmmFqYFB3hCYvWL 0 bytes
C:\WINDOWS\TEMP\sqlite_jncReRgjU8aU9Xj 0 bytes
C:\WINDOWS\TEMP\sqlite_JRXAJqFkzifES8c 0 bytes
C:\WINDOWS\TEMP\sqlite_K2RLq73i6v9ZTG8 0 bytes
C:\WINDOWS\TEMP\sqlite_kehL3iI2Bp4vCZ6 0 bytes
C:\WINDOWS\TEMP\sqlite_kkJsQHVYYP3D3DY 0 bytes
C:\WINDOWS\TEMP\sqlite_KRcXdI9jeocZeAZ 0 bytes
C:\WINDOWS\TEMP\sqlite_ksVxc1QEYFVXxXp 0 bytes
C:\WINDOWS\TEMP\sqlite_kxh4zJoQQpvVQpA 0 bytes
C:\WINDOWS\TEMP\sqlite_l97VGCOAubG2MQy 0 bytes
C:\WINDOWS\TEMP\sqlite_lP8BcMC97bhEaNQ 0 bytes
C:\WINDOWS\TEMP\sqlite_maidBhgD35ajULs 0 bytes
C:\WINDOWS\TEMP\sqlite_maidBhgD35ajULs-journal 20 bytes
C:\WINDOWS\TEMP\sqlite_mD7UASNGgmhVsQn 1,00KB
C:\WINDOWS\TEMP\sqlite_Mha3joXnt4qiwqJ 0 bytes
C:\WINDOWS\TEMP\sqlite_Mhd1Nvj1Zj8H87e 0 bytes
C:\WINDOWS\TEMP\sqlite_MPDFBUZzj7Ia3Jv 0 bytes
C:\WINDOWS\TEMP\sqlite_MRMTcSeNwujI2Ta 0 bytes
C:\WINDOWS\TEMP\sqlite_MuJBHNWdzbpr4FO 0 bytes
C:\WINDOWS\TEMP\sqlite_Mzl9tPG9zZlmM1n 0 bytes
C:\WINDOWS\TEMP\sqlite_Ndcm7rP7aFz4cHZ 0 bytes
C:\WINDOWS\TEMP\sqlite_Nmfn9076SF0kB0E 0 bytes
C:\WINDOWS\TEMP\sqlite_NOfK00hNQ5nYqU7 0 bytes
C:\WINDOWS\TEMP\sqlite_NogRIHQha40Mofw 0 bytes
C:\WINDOWS\TEMP\sqlite_OEpsHbbPHlh6QcL 0 bytes
C:\WINDOWS\TEMP\sqlite_oRfPzAcwM6dgipe 0 bytes
C:\WINDOWS\TEMP\sqlite_ou7SrYtBbvwtQX0 0 bytes
C:\WINDOWS\TEMP\sqlite_PnmaM4g2FjTphU0 0 bytes
C:\WINDOWS\TEMP\sqlite_qeITZVaBQk86Hfk 0 bytes
C:\WINDOWS\TEMP\sqlite_QIaEZCPG3R8M1SI 0 bytes
C:\WINDOWS\TEMP\sqlite_QVi6oqiJquda6zU 0 bytes
C:\WINDOWS\TEMP\sqlite_Qw0pwTg6Z67aaUx 0 bytes
C:\WINDOWS\TEMP\sqlite_qzYEC1JVvFLgGnW 0 bytes
C:\WINDOWS\TEMP\sqlite_RPEAAq9meM1i94u 0 bytes
C:\WINDOWS\TEMP\sqlite_S4Ca86MNuSYtD5M 0 bytes
C:\WINDOWS\TEMP\sqlite_S5rIB83QnRs9O4I 0 bytes
C:\WINDOWS\TEMP\sqlite_sa48CENZ1eGFY0m 0 bytes
C:\WINDOWS\TEMP\sqlite_ShY54Wih8IN7y1b 0 bytes
C:\WINDOWS\TEMP\sqlite_ShZWmLER5JYgi4g 0 bytes
C:\WINDOWS\TEMP\sqlite_SJOCPR3CcRGJbRt 0 bytes
C:\WINDOWS\TEMP\sqlite_sLJshuk5d9okxKO 0 bytes
C:\WINDOWS\TEMP\sqlite_smmsKBtbd5MUK3D 0 bytes
C:\WINDOWS\TEMP\sqlite_SzGVQ3irJ7llyh8 0 bytes
C:\WINDOWS\TEMP\sqlite_t8qEoKhzQ6g5duM 0 bytes
C:\WINDOWS\TEMP\sqlite_Ta6CfGDqyCvcTuZ 0 bytes
C:\WINDOWS\TEMP\sqlite_tL532M3sqspU1Sp 0 bytes
C:\WINDOWS\TEMP\sqlite_TOVHITh2GTlrTcm 0 bytes
C:\WINDOWS\TEMP\sqlite_Twr1w5esecWdsys 0 bytes
C:\WINDOWS\TEMP\sqlite_U4LavmWllvkoZNl 1,00KB
C:\WINDOWS\TEMP\sqlite_U9qbiYYMtOwPDVa 0 bytes
C:\WINDOWS\TEMP\sqlite_uLqAhhxjNpzFdHz 0 bytes
C:\WINDOWS\TEMP\sqlite_UOys6nD7Vf04Rhi 0 bytes
C:\WINDOWS\TEMP\sqlite_UPyLFilZWC9Bmrc 0 bytes
C:\WINDOWS\TEMP\sqlite_uuBxE53oHjZlS2d 0 bytes
C:\WINDOWS\TEMP\sqlite_uXnqCccHlh6l8lI 0 bytes
C:\WINDOWS\TEMP\sqlite_V9e4memmDknlE5y 0 bytes
C:\WINDOWS\TEMP\sqlite_VduP3sUItuzOUeo 0 bytes
C:\WINDOWS\TEMP\sqlite_vMlc7RQ63acWqpd 0 bytes
C:\WINDOWS\TEMP\sqlite_VY3ABtSqlw0wYEi 0 bytes
C:\WINDOWS\TEMP\sqlite_W2VknWyjAg1ybd9 0 bytes
C:\WINDOWS\TEMP\sqlite_wkiTiU3A27Kwxyq 0 bytes
C:\WINDOWS\TEMP\sqlite_wKZ2F8Y9pSNCZgt 1,00KB
C:\WINDOWS\TEMP\sqlite_xmxAEz5Qdc2xHlJ 0 bytes
C:\WINDOWS\TEMP\sqlite_XQKPnAS16bAWzbQ 0 bytes
C:\WINDOWS\TEMP\sqlite_xwvk3231z8YJqpl 0 bytes
C:\WINDOWS\TEMP\sqlite_yDkzOddLaYOYlKQ 0 bytes
C:\WINDOWS\TEMP\sqlite_yMlcloUfsQqZ9e5 1,00KB
C:\WINDOWS\TEMP\sqlite_YmRoqXsegF4w3RD 1,00KB
C:\WINDOWS\TEMP\sqlite_YsuZT2dtOg1pvXS 0 bytes
C:\WINDOWS\TEMP\sqlite_yVhLZqhADDbsWEP 0 bytes
C:\WINDOWS\TEMP\sqlite_z5G5gPsgxq3H2ek 1,00KB
C:\WINDOWS\TEMP\sqlite_z75j6GMwYERKGwt 0 bytes
C:\WINDOWS\TEMP\sqlite_zCTQ5ON9kWYsDHi 0 bytes
C:\WINDOWS\TEMP\sqlite_zJLRC2pHneAOJX6 0 bytes
C:\WINDOWS\TEMP\sqlite_ZLa88KtwhgGA1dB 0 bytes
C:\WINDOWS\TEMP\T30DebugLogFile.txt 0 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\4[1].gif 156 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\50sum_liveworm[1].png 2,68KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\account[1].css 10,79KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\box_mis_89x115[1].gif 4,42KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\box_vspro_46x60[1].gif 2,32KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\box_vs_46x60[1].gif 1,54KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\btn_dkGrey_arrowRight_100x16[1].gif 305 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\btn_download_105x20[1].gif 696 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\btn_download_20x20[1].gif 216 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\btn_red_plus_95x16[1].gif 254 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\buttons[1].css 15,22KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\CA21PTWI.gif 43 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\CA6ROX2F.lpk 1,80KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\CAEZ0D6F.lpk 1,80KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\callOut-CornerBottomRight_11x11[1].gif 124 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\catalog[1].htm 52,63KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\CAZ99BY2.gif 43 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\CAZYDGPT.gif 43 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\clear[1].gif 49 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\dash_horizontal_3x1[1].gif 43 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\desktop.ini 67 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\goodReasons_de[1].gif 6,69KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\icon_warning_32x32[1].gif 1,47KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\logout[1].htm 7,53KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\logo[1].gif 3,11KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\navSelector[1].js 1,87KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\nav[1].css 2,82KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\persnav_btm_on_1x4[1].gif 43 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\persnav_btm_right_on_4x4[1].gif 54 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\right_both[1].gif 2,62KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\tabs[1].css 1,39KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\tab_enterpriseOff_105x22[1].gif 228 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\tab_mid_wb_5x22[1].gif 60 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\tab_smbOn_190x22[1].gif 348 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\1[1].gif 137 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\2006banner[1].gif 12,70KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\2[1].gif 171 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\btn_continue_89x20[1].gif 460 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\CA2BWZNG.gif 43 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\CADGR23L.gif 43 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\CAEABL47.lpk 1,80KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\CAMBWPM3.lpk 1,80KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\CAXYRJOZ.lpk 1,80KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\clear[1].gif 49 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\common[1].css 15,16KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\corner_bottom_left_13x14[1].gif 132 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\corner_top_right_13x14[1].gif 129 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\dashboard[1].htm 21,46KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\desktop.ini 67 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\general[1].css 22,08KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\genericURL_genericLeftNav[1].htm 17,69KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\hdr_mis_299x48[1].gif 2,62KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\heading_mfs_smaller_56x56[1].gif 3,41KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\home[1].css 13,39KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\icn_arrow_green_11x11[1].gif 140 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\icn_i_grey_12x12[1].gif 139 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\icon_redx_16x16[1].gif 211 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\lang[1].css 5,79KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\mcscins[1].cfg 49 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\mouseover_persnav[1].js 2,21KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\MyAccountDetails[1].htm 21,28KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\openWindow[1].js 1,33KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\scanNow_110x20[1].gif 956 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\signin[1].gif 1,66KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\swatch_av_15x18[1].gif 97 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\swatch_misc_15x18[1].gif 129 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\tables[1].css 2,08KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\tab_mid_ww_5x22[1].gif 72 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\wrapper[1].css 4,72KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\desktop.ini 67 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\index.dat 80,00KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\3_lady_228x271[1].jpg 11,16KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\alerts[1].css 1,03KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\bgBorder_3x42[1].gif 55 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\box_MAS_46x60[1].gif 1,43KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\box_mas_46x60[2].gif 1,43KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\box_mis_46x60[1].gif 2,35KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\box_mpfp_46x60[1].gif 1,62KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\btn_buynow_72x18[1].gif 448 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\btn_dkGrey_arrowRight_110x16[1].gif 308 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\bullet_risk_medium_7x7[1].gif 62 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\CA6541YV.lpk 1,80KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\CADEKM39.lpk 1,80KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\CAIRCDQF.gif 43 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\callOut-CornerBottomLeft_11x11[1].gif 120 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\CAT4ZI13.lpk 1,80KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\dash_vertical_1x3[1].gif 43 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\default[1].css 769 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\desktop.ini 67 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\execute_selection[1].js 482 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\hpImage_woman6_364x200[1].jpg 8,77KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\icon_mis[1].gif 2,10KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\logo_redOnWhite_170x75[1].gif 1,32KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\mcltvers[1].ini 2,59KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\openNoScrollWindow[1].js 904 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\persnav_btm_left_on_4x4[1].gif 54 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\persnav_btm_right_off_4x4[1].gif 54 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\pricePlan[1].js 2,05KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\price_de[1].gif 14,11KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\promoText[1].gif 5,95KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\Sitewise[1].htm 4,28KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\spotlight_upgrade_156x120[1].gif 6,26KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\swatch_aa_15x18[1].gif 94 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\tab_enterpriseOn_105x22[1].gif 206 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\tab_smbOff_190x22[1].gif 387 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\3[1].gif 180 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\50sum_livemap[1].png 22,58KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\6206mis[1].htm 8,93KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\box_mps_46x60[1].gif 2,41KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\box_msk_46x60[1].gif 2,13KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\btn_buyNow_107x20[1].gif 494 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\bullet_square_5x5[1].gif 142 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\CA1WPSGR.lpk 1,80KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\CA344AFX.lpk 1,80KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\CA85IJMR.gif 43 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\callOut-CornerTopLeft_11x11[1].gif 95 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\callOut-CornerTopRight_11x11[1].gif 123 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\corner_bottom_right_13x14[1].gif 130 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\corner_top_left_13x14[1].gif 129 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\datasheet_popup[1].js 1,40KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\default[1].htm 25,19KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\desktop.ini 67 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\frameRemoval[1].js 159 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\hdr_mis_nobox_220x35[1].gif 2,75KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\heading_msc_smaller_46x46[1].gif 997 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\hover[1].htc 897 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\left_both[1].gif 565 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\line[1].gif 214 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\login[1].htm 22,52KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\persnav_btm_left_off_4x4[1].gif 54 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\persnav_btm_off_1x4[1].gif 43 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\primarynav_bg_hp_1x28[1].gif 47 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\print[1].css 452 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\PurchaseWizard[1].css 708 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\spotlight_bundle_156x120[1].gif 5,12KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\spotlight_download_156x120[1].gif 6,92KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\swatch_ah_15x18[1].gif 94 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\tab_mid_bw_5x22[1].gif 70 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\validateEmail[1].js 943 bytes
C:\WINDOWS\TEMP\Verlauf\History.IE5\desktop.ini 113 bytes
C:\WINDOWS\TEMP\Verlauf\History.IE5\index.dat 48,00KB
C:\DOKUME~1\WOLFGA~1\LOKALE~1\Temp\0pb9A.tmp 0 bytes
C:\DOKUME~1\WOLFGA~1\LOKALE~1\Temp\2d3c05.mst 84,00KB
C:\DOKUME~1\WOLFGA~1\LOKALE~1\Temp\BWInstall.log 693 bytes
C:\DOKUME~1\WOLFGA~1\LOKALE~1\Temp\DIO10.tmp 45,62KB
C:\DOKUME~1\WOLFGA~1\LOKALE~1\Temp\DIO11.tmp 45,62KB
C:\DOKUME~1\WOLFGA~1\LOKALE~1\Temp\DIO12.tmp 45,62KB
C:\DOKUME~1\WOLFGA~1\LOKALE~1\Temp\DIO13.tmp 45,62KB
C:\DOKUME~1\WOLFGA~1\LOKALE~1\Temp\DIO5.tmp 45,62KB
C:\DOKUME~1\WOLFGA~1\LOKALE~1\Temp\DIO6.tmp 45,62KB
C:\DOKUME~1\WOLFGA~1\LOKALE~1\Temp\DIO7.tmp 45,62KB
C:\DOKUME~1\WOLFGA~1\LOKALE~1\Temp\DIO8.tmp 45,62KB
C:\DOKUME~1\WOLFGA~1\LOKALE~1\Temp\DIO9.tmp 45,62KB
C:\DOKUME~1\WOLFGA~1\LOKALE~1\Te
Habe den CrapCleaner ausgeführt und diesen Log bekommst du als 1. Anlage. Soll ich das Programm wieder deinstallieren?
Als nächstes habe ich mir Ewido installiert, gescannt und den Log bekommst du als 2. Anlage. Die infizierten Objekte, welches mir das Programm angezeigt hat (nicht lebensbedrohlich), habe ich nicht entfernt! Ist doch richtig so gewesen? Das Programm werde ich wieder über Systemsteuerung (Software) deinstallieren, wie du es mir vorgegeben hast. Als Letztes habe ich dann die „exe“ überprüft und dir das Ergebnis als 3. Anlage mit beigefügt. Ich hoffe so alles richtig gemacht zu haben und werde auf deine Antwort warten.
Gruß
Wolfgang
ANALYSE komplett - (78,936 Sek)
------------------------------------------------------------------------------------------
390,9MB zu entfernen. (Ungefähre Größe)
Details der zu löschenden Dateien (Hinweis: Es wurden noch keine Dateien gelöscht)
------------------------------------------------------------------------------------------
IE Temporären Internetdateien (290 Dateien) 1,69MB
C:\Dokumente und Einstellungen\Wolfgang Fischer\Cookies\wolfgang fischer@de.mcafee[1].txt 83 bytes
C:\Dokumente und Einstellungen\Wolfgang Fischer\Cookies\wolfgang fischer@informationsarchiv[2].txt 185 bytes
C:\Dokumente und Einstellungen\Wolfgang Fischer\Cookies\wolfgang fischer@microsoft[1].txt 126 bytes
C:\Dokumente und Einstellungen\Wolfgang Fischer\Cookies\wolfgang fischer@sdc.mcafee[1].txt 142 bytes
Zum Löschen markiert: C:\Dokumente und Einstellungen\Wolfgang Fischer\Cookies\index.dat
C:\WINDOWS\TEMP\Cookies\index.dat 32,00KB
C:\WINDOWS\TEMP\Cookies\wolfgang fischer@google[1].txt 135 bytes
C:\WINDOWS\TEMP\Cookies\wolfgang fischer@sdc.mcafee[1].txt 142 bytes
C:\WINDOWS\TEMP\HP000000.IDX 1,20MB
C:\WINDOWS\TEMP\hpzcoi00.log 596 bytes
C:\WINDOWS\TEMP\hpzcoi01.log 596 bytes
C:\WINDOWS\TEMP\hpzcoi02.log 948 bytes
C:\WINDOWS\TEMP\hpzcoi03.log 690 bytes
C:\WINDOWS\TEMP\hpzcoi04.log 596 bytes
C:\WINDOWS\TEMP\hpzcoi05.log 596 bytes
C:\WINDOWS\TEMP\hpzcoi06.log 1,06KB
C:\WINDOWS\TEMP\hpzcoi07.log 826 bytes
C:\WINDOWS\TEMP\hpzcoi08.log 596 bytes
C:\WINDOWS\TEMP\hpzcoi09.log 596 bytes
C:\WINDOWS\TEMP\hpzcoi10.log 1,06KB
C:\WINDOWS\TEMP\hpzcoi11.log 826 bytes
C:\WINDOWS\TEMP\hpzcoi12.log 596 bytes
C:\WINDOWS\TEMP\hpzcoi13.log 596 bytes
C:\WINDOWS\TEMP\hpzcoi14.log 1,06KB
C:\WINDOWS\TEMP\hpzcoi15.log 826 bytes
C:\WINDOWS\TEMP\hpzglue00.log 538 bytes
C:\WINDOWS\TEMP\hpzglue01.log 335 bytes
C:\WINDOWS\TEMP\hpzglue02.log 538 bytes
C:\WINDOWS\TEMP\hpzglue03.log 335 bytes
C:\WINDOWS\TEMP\hpzglue04.log 538 bytes
C:\WINDOWS\TEMP\hpzglue05.log 335 bytes
C:\WINDOWS\TEMP\hpzservice00.log 3,10KB
C:\WINDOWS\TEMP\hpzservice01.log 3,10KB
C:\WINDOWS\TEMP\hpzservice02.log 2,53KB
C:\WINDOWS\TEMP\mcu10.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu10.tmp\UpdResp.mcaf 928 bytes
C:\WINDOWS\TEMP\mcu10.tmp\vso\45854586.upm 30,93KB
C:\WINDOWS\TEMP\mcu10.tmp\vso\45864587.upm 44,86KB
C:\WINDOWS\TEMP\mcu10.tmp\vso\mcdelta.ini 998 bytes
C:\WINDOWS\TEMP\mcu11.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu11.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu11.tmp\vso\45894590.upm 46,06KB
C:\WINDOWS\TEMP\mcu11.tmp\vso\mcdelta.ini 996 bytes
C:\WINDOWS\TEMP\mcu12.tmp\UpdReq.mcaf 1,70KB
C:\WINDOWS\TEMP\mcu12.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu12.tmp\vso\45774578.upm 59,48KB
C:\WINDOWS\TEMP\mcu12.tmp\vso\mcdelta.ini 996 bytes
C:\WINDOWS\TEMP\mcu13.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu13.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu13.tmp\vso\45914592.upm 20,34KB
C:\WINDOWS\TEMP\mcu13.tmp\vso\mcdelta.ini 995 bytes
C:\WINDOWS\TEMP\mcu14.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu14.tmp\UpdResp.mcaf 928 bytes
C:\WINDOWS\TEMP\mcu14.tmp\vso\45804581.upm 39,84KB
C:\WINDOWS\TEMP\mcu14.tmp\vso\45814582.upm 28,40KB
C:\WINDOWS\TEMP\mcu14.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu15.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu15.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu15.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu15.tmp\UpdResp.mcaf 776 bytes
C:\WINDOWS\TEMP\mcu16.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu16.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu16.tmp\vso\45944595.upm 32,59KB
C:\WINDOWS\TEMP\mcu16.tmp\vso\mcdelta.ini 995 bytes
C:\WINDOWS\TEMP\mcu17.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu17.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu17.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu17.tmp\UpdResp.mcaf 776 bytes
C:\WINDOWS\TEMP\mcu18.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu18.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu18.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu18.tmp\UpdResp.mcaf 776 bytes
C:\WINDOWS\TEMP\mcu19.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu19.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu19.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu19.tmp\UpdResp.mcaf 776 bytes
C:\WINDOWS\TEMP\mcu1A.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu1A.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu1A.tmp\vso\45994600.upm 11,21KB
C:\WINDOWS\TEMP\mcu1A.tmp\vso\mcdelta.ini 995 bytes
C:\WINDOWS\TEMP\mcu1B.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu1B.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu1B.tmp\vso\45694570.upm 27,17KB
C:\WINDOWS\TEMP\mcu1B.tmp\vso\mcdelta.ini 995 bytes
C:\WINDOWS\TEMP\mcu1C.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu1C.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu1C.tmp\vso\45704571.upm 26,69KB
C:\WINDOWS\TEMP\mcu1C.tmp\vso\mcdelta.ini 995 bytes
C:\WINDOWS\TEMP\mcu1D.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu1D.tmp\UpdResp.mcaf 928 bytes
C:\WINDOWS\TEMP\mcu1D.tmp\vso\45974598.upm 953 bytes
C:\WINDOWS\TEMP\mcu1D.tmp\vso\45984599.upm 22,30KB
C:\WINDOWS\TEMP\mcu1D.tmp\vso\mcdelta.ini 994 bytes
C:\WINDOWS\TEMP\mcu1E.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu1E.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu1E.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu1E.tmp\UpdResp.mcaf 776 bytes
C:\WINDOWS\TEMP\mcu1F.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu1F.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu1F.tmp\vso\46004601.upm 27,81KB
C:\WINDOWS\TEMP\mcu1F.tmp\vso\mcdelta.ini 995 bytes
C:\WINDOWS\TEMP\mcu20.tmp\UpdReq.mcaf 1,70KB
C:\WINDOWS\TEMP\mcu20.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu20.tmp\vso\45734574.upm 17,30KB
C:\WINDOWS\TEMP\mcu20.tmp\vso\mcdelta.ini 996 bytes
C:\WINDOWS\TEMP\mcu21.tmp\UpdReq.mcaf 1,70KB
C:\WINDOWS\TEMP\mcu21.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu21.tmp\vso\45754576.upm 20,65KB
C:\WINDOWS\TEMP\mcu21.tmp\vso\mcdelta.ini 996 bytes
C:\WINDOWS\TEMP\mcu22.tmp\UpdReq.mcaf 1,70KB
C:\WINDOWS\TEMP\mcu22.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu22.tmp\vso\45764577.upm 27,84KB
C:\WINDOWS\TEMP\mcu22.tmp\vso\mcdelta.ini 996 bytes
C:\WINDOWS\TEMP\mcu23.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu23.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu23.tmp\vso\45934594.upm 29,81KB
C:\WINDOWS\TEMP\mcu23.tmp\vso\mcdelta.ini 995 bytes
C:\WINDOWS\TEMP\mcu24.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu24.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu24.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu24.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu25.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu25.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu25.tmp\vso\46014602.upm 29,60KB
C:\WINDOWS\TEMP\mcu25.tmp\vso\mcdelta.ini 995 bytes
C:\WINDOWS\TEMP\mcu26.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu26.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu26.tmp\UpdReq.mcaf 1,39KB
C:\WINDOWS\TEMP\mcu26.tmp\UpdResp.mcaf 778 bytes
C:\WINDOWS\TEMP\mcu27.tmp\UpdReq.mcaf 1,70KB
C:\WINDOWS\TEMP\mcu27.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu27.tmp\vso\45784579.upm 41,11KB
C:\WINDOWS\TEMP\mcu27.tmp\vso\mcdelta.ini 996 bytes
C:\WINDOWS\TEMP\mcu28.tmp\UpdReq.mcaf 1,70KB
C:\WINDOWS\TEMP\mcu28.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu28.tmp\vso\45744575.upm 19,33KB
C:\WINDOWS\TEMP\mcu28.tmp\vso\mcdelta.ini 996 bytes
C:\WINDOWS\TEMP\mcu29.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu29.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu29.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu29.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu2A.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu2A.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu2A.tmp\vso\46024603.upm 30,59KB
C:\WINDOWS\TEMP\mcu2A.tmp\vso\mcdelta.ini 996 bytes
C:\WINDOWS\TEMP\mcu2B.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu2B.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu2B.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu2B.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu2C.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu2C.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu2C.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu2C.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu2D.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu2D.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu2D.tmp\vso\46054606.upm 29,33KB
C:\WINDOWS\TEMP\mcu2D.tmp\vso\mcdelta.ini 997 bytes
C:\WINDOWS\TEMP\mcu2E.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu2E.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu2E.tmp\vso\46044605.upm 45,94KB
C:\WINDOWS\TEMP\mcu2E.tmp\vso\mcdelta.ini 996 bytes
C:\WINDOWS\TEMP\mcu2F.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu2F.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu2F.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu2F.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu30.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu30.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu30.tmp\vso\46064607.upm 22,91KB
C:\WINDOWS\TEMP\mcu30.tmp\vso\mcdelta.ini 997 bytes
C:\WINDOWS\TEMP\mcu31.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu31.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu31.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu31.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu32.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu32.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu32.tmp\vso\46074608.upm 20,62KB
C:\WINDOWS\TEMP\mcu32.tmp\vso\mcdelta.ini 997 bytes
C:\WINDOWS\TEMP\mcu33.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu33.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu33.tmp\vso\46084609.upm 21,13KB
C:\WINDOWS\TEMP\mcu33.tmp\vso\mcdelta.ini 997 bytes
C:\WINDOWS\TEMP\mcu34.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu34.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu34.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu34.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu35.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu35.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu35.tmp\vso\46094610.upm 31,14KB
C:\WINDOWS\TEMP\mcu35.tmp\vso\mcdelta.ini 997 bytes
C:\WINDOWS\TEMP\mcu36.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu36.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu36.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu36.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu37.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu37.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu37.tmp\vso\46104611.upm 57,03KB
C:\WINDOWS\TEMP\mcu37.tmp\vso\mcdelta.ini 997 bytes
C:\WINDOWS\TEMP\mcu38.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu38.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu38.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu38.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu39.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu39.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu39.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu39.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu3A.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu3A.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu3A.tmp\vso\46114612.upm 20,85KB
C:\WINDOWS\TEMP\mcu3A.tmp\vso\mcdelta.ini 998 bytes
C:\WINDOWS\TEMP\mcu3B.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu3B.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu3B.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu3B.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu3C.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu3C.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu3C.tmp\vso\46134614.upm 22,66KB
C:\WINDOWS\TEMP\mcu3C.tmp\vso\mcdelta.ini 998 bytes
C:\WINDOWS\TEMP\mcu3D.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu3D.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu3D.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu3D.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu3E.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu3E.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu3E.tmp\vso\46124613.upm 63,15KB
C:\WINDOWS\TEMP\mcu3E.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu3F.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu3F.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu3F.tmp\vso\46154616.upm 55,11KB
C:\WINDOWS\TEMP\mcu3F.tmp\vso\mcdelta.ini 998 bytes
C:\WINDOWS\TEMP\mcu40.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu40.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu40.tmp\vso\46144615.upm 0,14MB
C:\WINDOWS\TEMP\mcu40.tmp\vso\mcdelta.ini 998 bytes
C:\WINDOWS\TEMP\mcu41.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu41.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu41.tmp\vso\46164617.upm 21,31KB
C:\WINDOWS\TEMP\mcu41.tmp\vso\mcdelta.ini 998 bytes
C:\WINDOWS\TEMP\mcu42.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu42.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu42.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu42.tmp\UpdResp.mcaf 776 bytes
C:\WINDOWS\TEMP\mcu43.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu43.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu43.tmp\vso\46184619.upm 22,62KB
C:\WINDOWS\TEMP\mcu43.tmp\vso\mcdelta.ini 998 bytes
C:\WINDOWS\TEMP\mcu44.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu44.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu44.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu44.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu45.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu45.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu45.tmp\vso\46194620.upm 48,85KB
C:\WINDOWS\TEMP\mcu45.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu46.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu46.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu46.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu46.tmp\UpdResp.mcaf 776 bytes
C:\WINDOWS\TEMP\mcu47.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu47.tmp\UpdResp.mcaf 928 bytes
C:\WINDOWS\TEMP\mcu47.tmp\vso\46204621.upm 3,45KB
C:\WINDOWS\TEMP\mcu47.tmp\vso\46214622.upm 24,76KB
C:\WINDOWS\TEMP\mcu47.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu48.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu48.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu48.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu48.tmp\UpdResp.mcaf 776 bytes
C:\WINDOWS\TEMP\mcu49.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu49.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu49.tmp\vso\46224623.upm 76,05KB
C:\WINDOWS\TEMP\mcu49.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu4A.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu4A.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu4A.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu4A.tmp\UpdResp.mcaf 776 bytes
C:\WINDOWS\TEMP\mcu4B.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu4B.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu4B.tmp\vso\46234624.upm 32,64KB
C:\WINDOWS\TEMP\mcu4B.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu4C.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu4C.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu4C.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu4C.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu4D.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu4D.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu4D.tmp\vso\46254626.upm 39,60KB
C:\WINDOWS\TEMP\mcu4D.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu4E.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu4E.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu4E.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu4E.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu4F.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu4F.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu4F.tmp\vso\46244625.upm 59,94KB
C:\WINDOWS\TEMP\mcu4F.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu50.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu50.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu50.tmp\vso\46264627.upm 34,17KB
C:\WINDOWS\TEMP\mcu50.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu51.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu51.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu51.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu51.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu52.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu52.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu52.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu52.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu53.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu53.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu53.tmp\vso\46274628.upm 19,75KB
C:\WINDOWS\TEMP\mcu53.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu54.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu54.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu54.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu54.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu55.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu55.tmp\UpdResp.mcaf 928 bytes
C:\WINDOWS\TEMP\mcu55.tmp\vso\46284629.upm 0,24MB
C:\WINDOWS\TEMP\mcu55.tmp\vso\46294630.upm 861 bytes
C:\WINDOWS\TEMP\mcu55.tmp\vso\mcdelta.ini 1000 bytes
C:\WINDOWS\TEMP\mcu56.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu56.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu56.tmp\vso\46304631.upm 0,14MB
C:\WINDOWS\TEMP\mcu56.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu57.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu57.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu57.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu57.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu58.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu58.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu58.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu58.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu59.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu59.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu59.tmp\vso\46324633.upm 0,17MB
C:\WINDOWS\TEMP\mcu59.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu5A.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu5A.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu5A.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu5A.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu5B.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu5B.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu5B.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu5B.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu5C.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu5C.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu5C.tmp\vso\46334634.upm 0,13MB
C:\WINDOWS\TEMP\mcu5C.tmp\vso\mcdelta.ini 998 bytes
C:\WINDOWS\TEMP\mcu5D.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu5D.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu5D.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu5D.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu5E.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu5E.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu5E.tmp\vso\46344635.upm 0,12MB
C:\WINDOWS\TEMP\mcu5E.tmp\vso\mcdelta.ini 998 bytes
C:\WINDOWS\TEMP\mcu5F.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu5F.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu5F.tmp\vso\46354636.upm 0,13MB
C:\WINDOWS\TEMP\mcu5F.tmp\vso\mcdelta.ini 998 bytes
C:\WINDOWS\TEMP\mcu60.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu60.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu60.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu60.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu61.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu61.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu61.tmp\vso\46364637.upm 0,14MB
C:\WINDOWS\TEMP\mcu61.tmp\vso\mcdelta.ini 998 bytes
C:\WINDOWS\TEMP\mcu62.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu62.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu62.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu62.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu63.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu63.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu63.tmp\UpdReq.mcaf 1,40KB
C:\WINDOWS\TEMP\mcu63.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu64.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu64.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu64.tmp\UpdReq.mcaf 1,42KB
C:\WINDOWS\TEMP\mcu64.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu65.tmp\UpdReq.mcaf 1,21KB
C:\WINDOWS\TEMP\mcu65.tmp\UpdResp.mcaf 831 bytes
C:\WINDOWS\TEMP\mcu66.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu66.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu66.tmp\UpdReq.mcaf 1,44KB
C:\WINDOWS\TEMP\mcu66.tmp\UpdResp.mcaf 776 bytes
C:\WINDOWS\TEMP\mcu67.tmp\UpdReq.mcaf 1,18KB
C:\WINDOWS\TEMP\mcu67.tmp\UpdResp.mcaf 831 bytes
C:\WINDOWS\TEMP\mcu68.tmp\UpdReq.mcaf 1,21KB
C:\WINDOWS\TEMP\mcu68.tmp\UpdResp.mcaf 834 bytes
C:\WINDOWS\TEMP\mcu69.tmp\UpdReq.mcaf 1,75KB
C:\WINDOWS\TEMP\mcu69.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu69.tmp\vso\46404641.upm 0,15MB
C:\WINDOWS\TEMP\mcu69.tmp\vso\mcdelta.ini 998 bytes
C:\WINDOWS\TEMP\mcu6A.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu6A.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu6A.tmp\UpdReq.mcaf 1,45KB
C:\WINDOWS\TEMP\mcu6A.tmp\UpdResp.mcaf 776 bytes
C:\WINDOWS\TEMP\mcu6B.tmp\UpdReq.mcaf 1,72KB
C:\WINDOWS\TEMP\mcu6B.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu6B.tmp\vso\46374638.upm 0,15MB
C:\WINDOWS\TEMP\mcu6B.tmp\vso\mcdelta.ini 998 bytes
C:\WINDOWS\TEMP\mcu6C.tmp\UpdReq.mcaf 1,75KB
C:\WINDOWS\TEMP\mcu6C.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu6C.tmp\vso\46414642.upm 9,32KB
C:\WINDOWS\TEMP\mcu6C.tmp\vso\mcdelta.ini 998 bytes
C:\WINDOWS\TEMP\mcu6D.tmp\UpdReq.mcaf 1,22KB
C:\WINDOWS\TEMP\mcu6D.tmp\UpdResp.mcaf 831 bytes
C:\WINDOWS\TEMP\mcu6E.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu6E.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu6E.tmp\UpdReq.mcaf 1,45KB
C:\WINDOWS\TEMP\mcu6E.tmp\UpdResp.mcaf 776 bytes
C:\WINDOWS\TEMP\mcu6F.tmp\UpdReq.mcaf 1,21KB
C:\WINDOWS\TEMP\mcu6F.tmp\UpdResp.mcaf 831 bytes
C:\WINDOWS\TEMP\mcu70.tmp\UpdReq.mcaf 1,75KB
C:\WINDOWS\TEMP\mcu70.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu70.tmp\vso\46444645.upm 0,13MB
C:\WINDOWS\TEMP\mcu70.tmp\vso\mcdelta.ini 998 bytes
C:\WINDOWS\TEMP\mcu71.tmp\UpdReq.mcaf 1,75KB
C:\WINDOWS\TEMP\mcu71.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu71.tmp\vso\46424643.upm 0,13MB
C:\WINDOWS\TEMP\mcu71.tmp\vso\mcdelta.ini 998 bytes
C:\WINDOWS\TEMP\mcu72.tmp\UpdReq.mcaf 1,21KB
C:\WINDOWS\TEMP\mcu72.tmp\UpdResp.mcaf 831 bytes
C:\WINDOWS\TEMP\mcu73.tmp\UpdReq.mcaf 1,75KB
C:\WINDOWS\TEMP\mcu73.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu73.tmp\vso\46434644.upm 0,12MB
C:\WINDOWS\TEMP\mcu73.tmp\vso\mcdelta.ini 998 bytes
C:\WINDOWS\TEMP\mcu74.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu74.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu74.tmp\UpdReq.mcaf 1,45KB
C:\WINDOWS\TEMP\mcu74.tmp\UpdResp.mcaf 776 bytes
C:\WINDOWS\TEMP\mcu75.tmp\UpdReq.mcaf 1,21KB
C:\WINDOWS\TEMP\mcu75.tmp\UpdResp.mcaf 831 bytes
C:\WINDOWS\TEMP\mcu76.tmp\UpdReq.mcaf 1,75KB
C:\WINDOWS\TEMP\mcu76.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu76.tmp\vso\46454646.upm 0,13MB
C:\WINDOWS\TEMP\mcu76.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu77.tmp\UpdReq.mcaf 1,21KB
C:\WINDOWS\TEMP\mcu77.tmp\UpdResp.mcaf 831 bytes
C:\WINDOWS\TEMP\mcu78.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu78.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu78.tmp\UpdReq.mcaf 1,44KB
C:\WINDOWS\TEMP\mcu78.tmp\UpdResp.mcaf 776 bytes
C:\WINDOWS\TEMP\mcu79.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu79.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu79.tmp\UpdReq.mcaf 1,45KB
C:\WINDOWS\TEMP\mcu79.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu7A.tmp\UpdReq.mcaf 1,21KB
C:\WINDOWS\TEMP\mcu7A.tmp\UpdResp.mcaf 831 bytes
C:\WINDOWS\TEMP\mcu7B.tmp\UpdReq.mcaf 1,75KB
C:\WINDOWS\TEMP\mcu7B.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu7B.tmp\vso\46464647.upm 0,12MB
C:\WINDOWS\TEMP\mcu7B.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu7C.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu7C.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu7C.tmp\UpdReq.mcaf 1,45KB
C:\WINDOWS\TEMP\mcu7C.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu7D.tmp\UpdReq.mcaf 1,21KB
C:\WINDOWS\TEMP\mcu7D.tmp\UpdResp.mcaf 831 bytes
C:\WINDOWS\TEMP\mcu7E.tmp\UpdReq.mcaf 1,75KB
C:\WINDOWS\TEMP\mcu7E.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu7E.tmp\vso\46474648.upm 0,14MB
C:\WINDOWS\TEMP\mcu7E.tmp\vso\mcdelta.ini 998 bytes
C:\WINDOWS\TEMP\mcu7F.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu7F.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu7F.tmp\UpdReq.mcaf 1,45KB
C:\WINDOWS\TEMP\mcu7F.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu80.tmp\UpdReq.mcaf 1,21KB
C:\WINDOWS\TEMP\mcu80.tmp\UpdResp.mcaf 831 bytes
C:\WINDOWS\TEMP\mcu81.tmp\UpdReq.mcaf 1,75KB
C:\WINDOWS\TEMP\mcu81.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu81.tmp\vso\46484649.upm 33,28KB
C:\WINDOWS\TEMP\mcu81.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu82.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu82.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu82.tmp\UpdReq.mcaf 1,45KB
C:\WINDOWS\TEMP\mcu82.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu83.tmp\UpdReq.mcaf 1,21KB
C:\WINDOWS\TEMP\mcu83.tmp\UpdResp.mcaf 831 bytes
C:\WINDOWS\TEMP\mcu84.tmp\UpdReq.mcaf 1,75KB
C:\WINDOWS\TEMP\mcu84.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu84.tmp\vso\46494650.upm 0,14MB
C:\WINDOWS\TEMP\mcu84.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu85.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu85.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu85.tmp\UpdReq.mcaf 1,45KB
C:\WINDOWS\TEMP\mcu85.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu86.tmp\UpdReq.mcaf 1,21KB
C:\WINDOWS\TEMP\mcu86.tmp\UpdResp.mcaf 831 bytes
C:\WINDOWS\TEMP\mcu87.tmp\UpdReq.mcaf 1,75KB
C:\WINDOWS\TEMP\mcu87.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu87.tmp\vso\46504651.upm 0,14MB
C:\WINDOWS\TEMP\mcu87.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu88.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu88.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu88.tmp\UpdReq.mcaf 1,45KB
C:\WINDOWS\TEMP\mcu88.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu89.tmp\UpdReq.mcaf 1,21KB
C:\WINDOWS\TEMP\mcu89.tmp\UpdResp.mcaf 831 bytes
C:\WINDOWS\TEMP\mcu8A.tmp\UpdReq.mcaf 1,75KB
C:\WINDOWS\TEMP\mcu8A.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu8A.tmp\vso\46524653.upm 0,13MB
C:\WINDOWS\TEMP\mcu8A.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu8B.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu8B.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu8B.tmp\UpdReq.mcaf 1,45KB
C:\WINDOWS\TEMP\mcu8B.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu8C.tmp\UpdReq.mcaf 1,21KB
C:\WINDOWS\TEMP\mcu8C.tmp\UpdResp.mcaf 831 bytes
C:\WINDOWS\TEMP\mcu8D.tmp\UpdReq.mcaf 1,75KB
C:\WINDOWS\TEMP\mcu8D.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu8D.tmp\vso\46534654.upm 0,14MB
C:\WINDOWS\TEMP\mcu8D.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu8E.tmp\UpdReq.mcaf 1,21KB
C:\WINDOWS\TEMP\mcu8E.tmp\UpdResp.mcaf 978 bytes
C:\WINDOWS\TEMP\mcu8F.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu8F.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu8F.tmp\UpdReq.mcaf 1,45KB
C:\WINDOWS\TEMP\mcu8F.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu9.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcu9.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu9.tmp\vso\46034604.upm 44,64KB
C:\WINDOWS\TEMP\mcu9.tmp\vso\mcdelta.ini 997 bytes
C:\WINDOWS\TEMP\mcu90.tmp\UpdReq.mcaf 1,75KB
C:\WINDOWS\TEMP\mcu90.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu90.tmp\vso\46544655.upm 0,15MB
C:\WINDOWS\TEMP\mcu90.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu91.tmp\UpdReq.mcaf 1,21KB
C:\WINDOWS\TEMP\mcu91.tmp\UpdResp.mcaf 831 bytes
C:\WINDOWS\TEMP\mcu92.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu92.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu92.tmp\UpdReq.mcaf 1,45KB
C:\WINDOWS\TEMP\mcu92.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu93.tmp\UpdReq.mcaf 1,75KB
C:\WINDOWS\TEMP\mcu93.tmp\UpdResp.mcaf 928 bytes
C:\WINDOWS\TEMP\mcu93.tmp\vso\46554656.upm 0,13MB
C:\WINDOWS\TEMP\mcu93.tmp\vso\46564657.upm 783 bytes
C:\WINDOWS\TEMP\mcu93.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu94.tmp\UpdReq.mcaf 1,21KB
C:\WINDOWS\TEMP\mcu94.tmp\UpdResp.mcaf 831 bytes
C:\WINDOWS\TEMP\mcu95.tmp\UpdReq.mcaf 1,75KB
C:\WINDOWS\TEMP\mcu95.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu95.tmp\vso\46574658.upm 0,13MB
C:\WINDOWS\TEMP\mcu95.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu96.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu96.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu96.tmp\UpdReq.mcaf 1,45KB
C:\WINDOWS\TEMP\mcu96.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu97.tmp\UpdReq.mcaf 1,21KB
C:\WINDOWS\TEMP\mcu97.tmp\UpdResp.mcaf 831 bytes
C:\WINDOWS\TEMP\mcu98.tmp\UpdReq.mcaf 1,75KB
C:\WINDOWS\TEMP\mcu98.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu98.tmp\vso\46584659.upm 0,13MB
C:\WINDOWS\TEMP\mcu98.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu99.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu99.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu99.tmp\UpdReq.mcaf 1,45KB
C:\WINDOWS\TEMP\mcu99.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu9A.tmp\UpdReq.mcaf 1,21KB
C:\WINDOWS\TEMP\mcu9A.tmp\UpdResp.mcaf 831 bytes
C:\WINDOWS\TEMP\mcu9B.tmp\UpdReq.mcaf 1,75KB
C:\WINDOWS\TEMP\mcu9B.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu9B.tmp\vso\46594660.upm 0,13MB
C:\WINDOWS\TEMP\mcu9B.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcu9C.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcu9C.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcu9C.tmp\UpdReq.mcaf 1,45KB
C:\WINDOWS\TEMP\mcu9C.tmp\UpdResp.mcaf 779 bytes
C:\WINDOWS\TEMP\mcu9E.tmp\UpdReq.mcaf 1,75KB
C:\WINDOWS\TEMP\mcu9E.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcu9E.tmp\vso\46604661.upm 0,13MB
C:\WINDOWS\TEMP\mcu9E.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcuA.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcuA.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcuA.tmp\UpdReq.mcaf 1,38KB
C:\WINDOWS\TEMP\mcuA.tmp\UpdResp.mcaf 774 bytes
C:\WINDOWS\TEMP\mcuB.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcuB.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcuB.tmp\vso\45824583.upm 26,92KB
C:\WINDOWS\TEMP\mcuB.tmp\vso\mcdelta.ini 999 bytes
C:\WINDOWS\TEMP\mcuC.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcuC.tmp\UpdResp.mcaf 928 bytes
C:\WINDOWS\TEMP\mcuC.tmp\vso\45834584.upm 52,16KB
C:\WINDOWS\TEMP\mcuC.tmp\vso\45844585.upm 5,21KB
C:\WINDOWS\TEMP\mcuC.tmp\vso\mcdelta.ini 998 bytes
C:\WINDOWS\TEMP\mcuD.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcuD.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcuD.tmp\vso\45714572.upm 41,83KB
C:\WINDOWS\TEMP\mcuD.tmp\vso\mcdelta.ini 996 bytes
C:\WINDOWS\TEMP\mcuDF.tmp\agentins.cab 74,20KB
C:\WINDOWS\TEMP\mcuDF.tmp\agentins.inf 662 bytes
C:\WINDOWS\TEMP\mcuDF.tmp\agentins.ui 74,42KB
C:\WINDOWS\TEMP\mcuDF.tmp\AgentVer.ini 6,67KB
C:\WINDOWS\TEMP\mcuDF.tmp\AgntIcfg.ini 797 bytes
C:\WINDOWS\TEMP\mcuDF.tmp\McAppIns.exe 0,13MB
C:\WINDOWS\TEMP\mcuDF.tmp\mcinsres.dll 33,00KB
C:\WINDOWS\TEMP\mcuDF.tmp\mcuninst.dll 0,11MB
C:\WINDOWS\TEMP\mcuDF.tmp\mps\de\com\mpscfg.cab 1,37MB
C:\WINDOWS\TEMP\mcuDF.tmp\mps\mpsmain.cab 0,44MB
C:\WINDOWS\TEMP\mcuDF.tmp\mps\mpsmon.cab 0,13MB
C:\WINDOWS\TEMP\mcuDF.tmp\mps\winnt\mps.cab 0,13MB
C:\WINDOWS\TEMP\mcuDF.tmp\mpscfg.ini 611 bytes
C:\WINDOWS\TEMP\mcuDF.tmp\mpsins.cab 0,10MB
C:\WINDOWS\TEMP\mcuDF.tmp\mpsins.inf 678 bytes
C:\WINDOWS\TEMP\mcuDF.tmp\mpsins.ui 63,44KB
C:\WINDOWS\TEMP\mcuDF.tmp\MpsVer.Ini 3,62KB
C:\WINDOWS\TEMP\mcuDF.tmp\UpdReq.mcaf 962 bytes
C:\WINDOWS\TEMP\mcuDF.tmp\UpdResp.mcaf 1,97KB
C:\WINDOWS\TEMP\mcuE.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcuE.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcuE.tmp\vso\45684569.upm 21,52KB
C:\WINDOWS\TEMP\mcuE.tmp\vso\mcdelta.ini 995 bytes
C:\WINDOWS\TEMP\mcuF.tmp\UpdReq.mcaf 1,71KB
C:\WINDOWS\TEMP\mcuF.tmp\UpdResp.mcaf 789 bytes
C:\WINDOWS\TEMP\mcuF.tmp\vso\45874588.upm 21,84KB
C:\WINDOWS\TEMP\mcuF.tmp\vso\mcdelta.ini 997 bytes
C:\WINDOWS\TEMP\mmjb_temp2\setup.log 86 bytes
C:\WINDOWS\TEMP\mmjb_WMF\setup.log 186 bytes
C:\WINDOWS\TEMP\MSI467a4.LOG 298 bytes
C:\WINDOWS\TEMP\MSI4e23e.LOG 298 bytes
C:\WINDOWS\TEMP\MSI4e23f.LOG 298 bytes
C:\WINDOWS\TEMP\MSI4e240.LOG 298 bytes
C:\WINDOWS\TEMP\MSI4e241.LOG 298 bytes
C:\WINDOWS\TEMP\MSI4e242.LOG 298 bytes
C:\WINDOWS\TEMP\MSI4e243.LOG 298 bytes
C:\WINDOWS\TEMP\MSI7d4e2.LOG 536 bytes
C:\WINDOWS\TEMP\MSI8e597.LOG 536 bytes
C:\WINDOWS\TEMP\MSIe6657.LOG 536 bytes
C:\WINDOWS\TEMP\Perflib_Perfdata_704.dat 16,00KB
C:\WINDOWS\TEMP\Perflib_Perfdata_710.dat 16,00KB
C:\WINDOWS\TEMP\Perflib_Perfdata_720.dat 16,00KB
C:\WINDOWS\TEMP\Perflib_Perfdata_bc8.dat 16,00KB
C:\WINDOWS\TEMP\servic000.log 688 bytes
C:\WINDOWS\TEMP\servic001.log 688 bytes
C:\WINDOWS\TEMP\servic002.log 688 bytes
C:\WINDOWS\TEMP\servic003.log 688 bytes
C:\WINDOWS\TEMP\servic004.log 688 bytes
C:\WINDOWS\TEMP\servic005.log 688 bytes
C:\WINDOWS\TEMP\sqlite_02CaMYheBJewPtb 0 bytes
C:\WINDOWS\TEMP\sqlite_0F7CFJXyXiamQXv 0 bytes
C:\WINDOWS\TEMP\sqlite_0g46BZCvTG3pwrr 0 bytes
C:\WINDOWS\TEMP\sqlite_0qYgnEUbXsc7BTC 0 bytes
C:\WINDOWS\TEMP\sqlite_1bnuRdvQzB05VKc 0 bytes
C:\WINDOWS\TEMP\sqlite_1fI3pDiw4QeqZlp 0 bytes
C:\WINDOWS\TEMP\sqlite_1mWXJbL4K82G9jX 0 bytes
C:\WINDOWS\TEMP\sqlite_1wx4bnStMBcqkId 0 bytes
C:\WINDOWS\TEMP\sqlite_2fxuZLuW2gWyw9q 1,00KB
C:\WINDOWS\TEMP\sqlite_3vkDaK986tT38Ia 0 bytes
C:\WINDOWS\TEMP\sqlite_5aQduP8dhC2mxLU 0 bytes
C:\WINDOWS\TEMP\sqlite_5jLAtYCgKh0t3dh 0 bytes
C:\WINDOWS\TEMP\sqlite_6CZDZxuAslAtEdc 1,00KB
C:\WINDOWS\TEMP\sqlite_6jpSlwo4dvTtJzE 0 bytes
C:\WINDOWS\TEMP\sqlite_6NGHdNfUWIcC7hb 0 bytes
C:\WINDOWS\TEMP\sqlite_7DzAcfB7qOfI6Ip 0 bytes
C:\WINDOWS\TEMP\sqlite_8kIYhqRq79jeSq7 0 bytes
C:\WINDOWS\TEMP\sqlite_8mfbpYortculLqx 0 bytes
C:\WINDOWS\TEMP\sqlite_A2Zfnd5gbYNkP4y 0 bytes
C:\WINDOWS\TEMP\sqlite_AAs1KhjdbfSoGct 0 bytes
C:\WINDOWS\TEMP\sqlite_ABDHgtfVxDX72U8 0 bytes
C:\WINDOWS\TEMP\sqlite_ADPbZRoEZSJ9Egf 0 bytes
C:\WINDOWS\TEMP\sqlite_ADPbZRoEZSJ9Egf-journal 20 bytes
C:\WINDOWS\TEMP\sqlite_ArUeMrvmwDIyi0R 0 bytes
C:\WINDOWS\TEMP\sqlite_AUMRk8XkvbgRagD 0 bytes
C:\WINDOWS\TEMP\sqlite_b4zEjZIqpAF9ojg 0 bytes
C:\WINDOWS\TEMP\sqlite_BAfCjGK2QwVNs55 0 bytes
C:\WINDOWS\TEMP\sqlite_bJsQIrtEUlCkATp 0 bytes
C:\WINDOWS\TEMP\sqlite_c5CvBA60yYYOqM6 0 bytes
C:\WINDOWS\TEMP\sqlite_cceNAgfWCXhEZNl 0 bytes
C:\WINDOWS\TEMP\sqlite_cLafIZNLl3FNeFf 0 bytes
C:\WINDOWS\TEMP\sqlite_cpA75DkFp4YS0Wa 0 bytes
C:\WINDOWS\TEMP\sqlite_cpqmefgJ2uT1LR3 0 bytes
C:\WINDOWS\TEMP\sqlite_crkdvpVbbtEk1jG 0 bytes
C:\WINDOWS\TEMP\sqlite_CtV99gKWDjRTwjf 0 bytes
C:\WINDOWS\TEMP\sqlite_cWlsaoPIWgPkeaZ 0 bytes
C:\WINDOWS\TEMP\sqlite_dkGfqBlJW9mwkPl 0 bytes
C:\WINDOWS\TEMP\sqlite_dmG1QXnrtD2PoFa 0 bytes
C:\WINDOWS\TEMP\sqlite_dmG1QXnrtD2PoFa-journal 20 bytes
C:\WINDOWS\TEMP\sqlite_dZahaHlIahbKfVp 0 bytes
C:\WINDOWS\TEMP\sqlite_EGh0v0CwI9fyrRe 0 bytes
C:\WINDOWS\TEMP\sqlite_EKgsrsbKZHyqRdy 0 bytes
C:\WINDOWS\TEMP\sqlite_EN8aOtRf66i9aC4 0 bytes
C:\WINDOWS\TEMP\sqlite_ENltYqepur4e5f7 0 bytes
C:\WINDOWS\TEMP\sqlite_Eti8aNY0A12Bl7V 0 bytes
C:\WINDOWS\TEMP\sqlite_euIPevcwPaIgECO 0 bytes
C:\WINDOWS\TEMP\sqlite_EV0TzgdZf6W6MNX 1,00KB
C:\WINDOWS\TEMP\sqlite_eVJ3xbbqDAybImh 0 bytes
C:\WINDOWS\TEMP\sqlite_eXxEMipV6Zbup2Z 0 bytes
C:\WINDOWS\TEMP\sqlite_f3jE5DpZCB2Iv57 0 bytes
C:\WINDOWS\TEMP\sqlite_FlmaVjXngm9PtvV 0 bytes
C:\WINDOWS\TEMP\sqlite_fnwidVqROdCq59M 0 bytes
C:\WINDOWS\TEMP\sqlite_FobFLzMBRaVc7cF 0 bytes
C:\WINDOWS\TEMP\sqlite_fvDszCfNCEgSgrP 0 bytes
C:\WINDOWS\TEMP\sqlite_FXSXnboFaQLDLdh 0 bytes
C:\WINDOWS\TEMP\sqlite_GeQCCISkA4p3Crp 0 bytes
C:\WINDOWS\TEMP\sqlite_gGJ9Q3gkKXtrL42 0 bytes
C:\WINDOWS\TEMP\sqlite_GWdosTZPvQpi1sY 1,00KB
C:\WINDOWS\TEMP\sqlite_GwvtZzTQwkPvYa4 0 bytes
C:\WINDOWS\TEMP\sqlite_h5n6Q6gL9xJ972g 0 bytes
C:\WINDOWS\TEMP\sqlite_hbeo8isvzhSYczG 0 bytes
C:\WINDOWS\TEMP\sqlite_HPZ4AaDYNqpq9VV 0 bytes
C:\WINDOWS\TEMP\sqlite_hxZMV6EcrHsIpbV 0 bytes
C:\WINDOWS\TEMP\sqlite_I4yDCrYP0qqVwaT 0 bytes
C:\WINDOWS\TEMP\sqlite_I7KsHabSCjoiaWY 0 bytes
C:\WINDOWS\TEMP\sqlite_I8QqwcGCgwDSEzi 0 bytes
C:\WINDOWS\TEMP\sqlite_iCawqp920sKDM9s 0 bytes
C:\WINDOWS\TEMP\sqlite_igJ0YvhkwUreyFB 0 bytes
C:\WINDOWS\TEMP\sqlite_iiadldNfw6D2RHV 0 bytes
C:\WINDOWS\TEMP\sqlite_iPa3O6qpN1Nkf31 0 bytes
C:\WINDOWS\TEMP\sqlite_j3eQ58aeqfiueN2 0 bytes
C:\WINDOWS\TEMP\sqlite_jM0HZkqpYX0z6dQ 0 bytes
C:\WINDOWS\TEMP\sqlite_jmmFqYFB3hCYvWL 0 bytes
C:\WINDOWS\TEMP\sqlite_jncReRgjU8aU9Xj 0 bytes
C:\WINDOWS\TEMP\sqlite_JRXAJqFkzifES8c 0 bytes
C:\WINDOWS\TEMP\sqlite_K2RLq73i6v9ZTG8 0 bytes
C:\WINDOWS\TEMP\sqlite_kehL3iI2Bp4vCZ6 0 bytes
C:\WINDOWS\TEMP\sqlite_kkJsQHVYYP3D3DY 0 bytes
C:\WINDOWS\TEMP\sqlite_KRcXdI9jeocZeAZ 0 bytes
C:\WINDOWS\TEMP\sqlite_ksVxc1QEYFVXxXp 0 bytes
C:\WINDOWS\TEMP\sqlite_kxh4zJoQQpvVQpA 0 bytes
C:\WINDOWS\TEMP\sqlite_l97VGCOAubG2MQy 0 bytes
C:\WINDOWS\TEMP\sqlite_lP8BcMC97bhEaNQ 0 bytes
C:\WINDOWS\TEMP\sqlite_maidBhgD35ajULs 0 bytes
C:\WINDOWS\TEMP\sqlite_maidBhgD35ajULs-journal 20 bytes
C:\WINDOWS\TEMP\sqlite_mD7UASNGgmhVsQn 1,00KB
C:\WINDOWS\TEMP\sqlite_Mha3joXnt4qiwqJ 0 bytes
C:\WINDOWS\TEMP\sqlite_Mhd1Nvj1Zj8H87e 0 bytes
C:\WINDOWS\TEMP\sqlite_MPDFBUZzj7Ia3Jv 0 bytes
C:\WINDOWS\TEMP\sqlite_MRMTcSeNwujI2Ta 0 bytes
C:\WINDOWS\TEMP\sqlite_MuJBHNWdzbpr4FO 0 bytes
C:\WINDOWS\TEMP\sqlite_Mzl9tPG9zZlmM1n 0 bytes
C:\WINDOWS\TEMP\sqlite_Ndcm7rP7aFz4cHZ 0 bytes
C:\WINDOWS\TEMP\sqlite_Nmfn9076SF0kB0E 0 bytes
C:\WINDOWS\TEMP\sqlite_NOfK00hNQ5nYqU7 0 bytes
C:\WINDOWS\TEMP\sqlite_NogRIHQha40Mofw 0 bytes
C:\WINDOWS\TEMP\sqlite_OEpsHbbPHlh6QcL 0 bytes
C:\WINDOWS\TEMP\sqlite_oRfPzAcwM6dgipe 0 bytes
C:\WINDOWS\TEMP\sqlite_ou7SrYtBbvwtQX0 0 bytes
C:\WINDOWS\TEMP\sqlite_PnmaM4g2FjTphU0 0 bytes
C:\WINDOWS\TEMP\sqlite_qeITZVaBQk86Hfk 0 bytes
C:\WINDOWS\TEMP\sqlite_QIaEZCPG3R8M1SI 0 bytes
C:\WINDOWS\TEMP\sqlite_QVi6oqiJquda6zU 0 bytes
C:\WINDOWS\TEMP\sqlite_Qw0pwTg6Z67aaUx 0 bytes
C:\WINDOWS\TEMP\sqlite_qzYEC1JVvFLgGnW 0 bytes
C:\WINDOWS\TEMP\sqlite_RPEAAq9meM1i94u 0 bytes
C:\WINDOWS\TEMP\sqlite_S4Ca86MNuSYtD5M 0 bytes
C:\WINDOWS\TEMP\sqlite_S5rIB83QnRs9O4I 0 bytes
C:\WINDOWS\TEMP\sqlite_sa48CENZ1eGFY0m 0 bytes
C:\WINDOWS\TEMP\sqlite_ShY54Wih8IN7y1b 0 bytes
C:\WINDOWS\TEMP\sqlite_ShZWmLER5JYgi4g 0 bytes
C:\WINDOWS\TEMP\sqlite_SJOCPR3CcRGJbRt 0 bytes
C:\WINDOWS\TEMP\sqlite_sLJshuk5d9okxKO 0 bytes
C:\WINDOWS\TEMP\sqlite_smmsKBtbd5MUK3D 0 bytes
C:\WINDOWS\TEMP\sqlite_SzGVQ3irJ7llyh8 0 bytes
C:\WINDOWS\TEMP\sqlite_t8qEoKhzQ6g5duM 0 bytes
C:\WINDOWS\TEMP\sqlite_Ta6CfGDqyCvcTuZ 0 bytes
C:\WINDOWS\TEMP\sqlite_tL532M3sqspU1Sp 0 bytes
C:\WINDOWS\TEMP\sqlite_TOVHITh2GTlrTcm 0 bytes
C:\WINDOWS\TEMP\sqlite_Twr1w5esecWdsys 0 bytes
C:\WINDOWS\TEMP\sqlite_U4LavmWllvkoZNl 1,00KB
C:\WINDOWS\TEMP\sqlite_U9qbiYYMtOwPDVa 0 bytes
C:\WINDOWS\TEMP\sqlite_uLqAhhxjNpzFdHz 0 bytes
C:\WINDOWS\TEMP\sqlite_UOys6nD7Vf04Rhi 0 bytes
C:\WINDOWS\TEMP\sqlite_UPyLFilZWC9Bmrc 0 bytes
C:\WINDOWS\TEMP\sqlite_uuBxE53oHjZlS2d 0 bytes
C:\WINDOWS\TEMP\sqlite_uXnqCccHlh6l8lI 0 bytes
C:\WINDOWS\TEMP\sqlite_V9e4memmDknlE5y 0 bytes
C:\WINDOWS\TEMP\sqlite_VduP3sUItuzOUeo 0 bytes
C:\WINDOWS\TEMP\sqlite_vMlc7RQ63acWqpd 0 bytes
C:\WINDOWS\TEMP\sqlite_VY3ABtSqlw0wYEi 0 bytes
C:\WINDOWS\TEMP\sqlite_W2VknWyjAg1ybd9 0 bytes
C:\WINDOWS\TEMP\sqlite_wkiTiU3A27Kwxyq 0 bytes
C:\WINDOWS\TEMP\sqlite_wKZ2F8Y9pSNCZgt 1,00KB
C:\WINDOWS\TEMP\sqlite_xmxAEz5Qdc2xHlJ 0 bytes
C:\WINDOWS\TEMP\sqlite_XQKPnAS16bAWzbQ 0 bytes
C:\WINDOWS\TEMP\sqlite_xwvk3231z8YJqpl 0 bytes
C:\WINDOWS\TEMP\sqlite_yDkzOddLaYOYlKQ 0 bytes
C:\WINDOWS\TEMP\sqlite_yMlcloUfsQqZ9e5 1,00KB
C:\WINDOWS\TEMP\sqlite_YmRoqXsegF4w3RD 1,00KB
C:\WINDOWS\TEMP\sqlite_YsuZT2dtOg1pvXS 0 bytes
C:\WINDOWS\TEMP\sqlite_yVhLZqhADDbsWEP 0 bytes
C:\WINDOWS\TEMP\sqlite_z5G5gPsgxq3H2ek 1,00KB
C:\WINDOWS\TEMP\sqlite_z75j6GMwYERKGwt 0 bytes
C:\WINDOWS\TEMP\sqlite_zCTQ5ON9kWYsDHi 0 bytes
C:\WINDOWS\TEMP\sqlite_zJLRC2pHneAOJX6 0 bytes
C:\WINDOWS\TEMP\sqlite_ZLa88KtwhgGA1dB 0 bytes
C:\WINDOWS\TEMP\T30DebugLogFile.txt 0 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\4[1].gif 156 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\50sum_liveworm[1].png 2,68KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\account[1].css 10,79KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\box_mis_89x115[1].gif 4,42KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\box_vspro_46x60[1].gif 2,32KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\box_vs_46x60[1].gif 1,54KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\btn_dkGrey_arrowRight_100x16[1].gif 305 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\btn_download_105x20[1].gif 696 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\btn_download_20x20[1].gif 216 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\btn_red_plus_95x16[1].gif 254 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\buttons[1].css 15,22KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\CA21PTWI.gif 43 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\CA6ROX2F.lpk 1,80KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\CAEZ0D6F.lpk 1,80KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\callOut-CornerBottomRight_11x11[1].gif 124 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\catalog[1].htm 52,63KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\CAZ99BY2.gif 43 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\CAZYDGPT.gif 43 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\clear[1].gif 49 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\dash_horizontal_3x1[1].gif 43 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\desktop.ini 67 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\goodReasons_de[1].gif 6,69KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\icon_warning_32x32[1].gif 1,47KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\logout[1].htm 7,53KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\logo[1].gif 3,11KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\navSelector[1].js 1,87KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\nav[1].css 2,82KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\persnav_btm_on_1x4[1].gif 43 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\persnav_btm_right_on_4x4[1].gif 54 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\right_both[1].gif 2,62KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\tabs[1].css 1,39KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\tab_enterpriseOff_105x22[1].gif 228 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\tab_mid_wb_5x22[1].gif 60 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\4UY736IB\tab_smbOn_190x22[1].gif 348 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\1[1].gif 137 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\2006banner[1].gif 12,70KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\2[1].gif 171 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\btn_continue_89x20[1].gif 460 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\CA2BWZNG.gif 43 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\CADGR23L.gif 43 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\CAEABL47.lpk 1,80KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\CAMBWPM3.lpk 1,80KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\CAXYRJOZ.lpk 1,80KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\clear[1].gif 49 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\common[1].css 15,16KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\corner_bottom_left_13x14[1].gif 132 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\corner_top_right_13x14[1].gif 129 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\dashboard[1].htm 21,46KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\desktop.ini 67 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\general[1].css 22,08KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\genericURL_genericLeftNav[1].htm 17,69KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\hdr_mis_299x48[1].gif 2,62KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\heading_mfs_smaller_56x56[1].gif 3,41KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\home[1].css 13,39KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\icn_arrow_green_11x11[1].gif 140 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\icn_i_grey_12x12[1].gif 139 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\icon_redx_16x16[1].gif 211 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\lang[1].css 5,79KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\mcscins[1].cfg 49 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\mouseover_persnav[1].js 2,21KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\MyAccountDetails[1].htm 21,28KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\openWindow[1].js 1,33KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\scanNow_110x20[1].gif 956 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\signin[1].gif 1,66KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\swatch_av_15x18[1].gif 97 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\swatch_misc_15x18[1].gif 129 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\tables[1].css 2,08KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\tab_mid_ww_5x22[1].gif 72 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\8RA1U1U5\wrapper[1].css 4,72KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\desktop.ini 67 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\index.dat 80,00KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\3_lady_228x271[1].jpg 11,16KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\alerts[1].css 1,03KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\bgBorder_3x42[1].gif 55 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\box_MAS_46x60[1].gif 1,43KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\box_mas_46x60[2].gif 1,43KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\box_mis_46x60[1].gif 2,35KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\box_mpfp_46x60[1].gif 1,62KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\btn_buynow_72x18[1].gif 448 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\btn_dkGrey_arrowRight_110x16[1].gif 308 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\bullet_risk_medium_7x7[1].gif 62 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\CA6541YV.lpk 1,80KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\CADEKM39.lpk 1,80KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\CAIRCDQF.gif 43 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\callOut-CornerBottomLeft_11x11[1].gif 120 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\CAT4ZI13.lpk 1,80KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\dash_vertical_1x3[1].gif 43 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\default[1].css 769 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\desktop.ini 67 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\execute_selection[1].js 482 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\hpImage_woman6_364x200[1].jpg 8,77KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\icon_mis[1].gif 2,10KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\logo_redOnWhite_170x75[1].gif 1,32KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\mcltvers[1].ini 2,59KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\openNoScrollWindow[1].js 904 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\persnav_btm_left_on_4x4[1].gif 54 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\persnav_btm_right_off_4x4[1].gif 54 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\pricePlan[1].js 2,05KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\price_de[1].gif 14,11KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\promoText[1].gif 5,95KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\Sitewise[1].htm 4,28KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\spotlight_upgrade_156x120[1].gif 6,26KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\swatch_aa_15x18[1].gif 94 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\tab_enterpriseOn_105x22[1].gif 206 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\IVYVUVI9\tab_smbOff_190x22[1].gif 387 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\3[1].gif 180 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\50sum_livemap[1].png 22,58KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\6206mis[1].htm 8,93KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\box_mps_46x60[1].gif 2,41KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\box_msk_46x60[1].gif 2,13KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\btn_buyNow_107x20[1].gif 494 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\bullet_square_5x5[1].gif 142 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\CA1WPSGR.lpk 1,80KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\CA344AFX.lpk 1,80KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\CA85IJMR.gif 43 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\callOut-CornerTopLeft_11x11[1].gif 95 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\callOut-CornerTopRight_11x11[1].gif 123 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\corner_bottom_right_13x14[1].gif 130 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\corner_top_left_13x14[1].gif 129 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\datasheet_popup[1].js 1,40KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\default[1].htm 25,19KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\desktop.ini 67 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\frameRemoval[1].js 159 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\hdr_mis_nobox_220x35[1].gif 2,75KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\heading_msc_smaller_46x46[1].gif 997 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\hover[1].htc 897 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\left_both[1].gif 565 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\line[1].gif 214 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\login[1].htm 22,52KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\persnav_btm_left_off_4x4[1].gif 54 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\persnav_btm_off_1x4[1].gif 43 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\primarynav_bg_hp_1x28[1].gif 47 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\print[1].css 452 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\PurchaseWizard[1].css 708 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\spotlight_bundle_156x120[1].gif 5,12KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\spotlight_download_156x120[1].gif 6,92KB
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\swatch_ah_15x18[1].gif 94 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\tab_mid_bw_5x22[1].gif 70 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\WL3Q2I0B\validateEmail[1].js 943 bytes
C:\WINDOWS\TEMP\Verlauf\History.IE5\desktop.ini 113 bytes
C:\WINDOWS\TEMP\Verlauf\History.IE5\index.dat 48,00KB
C:\DOKUME~1\WOLFGA~1\LOKALE~1\Temp\0pb9A.tmp 0 bytes
C:\DOKUME~1\WOLFGA~1\LOKALE~1\Temp\2d3c05.mst 84,00KB
C:\DOKUME~1\WOLFGA~1\LOKALE~1\Temp\BWInstall.log 693 bytes
C:\DOKUME~1\WOLFGA~1\LOKALE~1\Temp\DIO10.tmp 45,62KB
C:\DOKUME~1\WOLFGA~1\LOKALE~1\Temp\DIO11.tmp 45,62KB
C:\DOKUME~1\WOLFGA~1\LOKALE~1\Temp\DIO12.tmp 45,62KB
C:\DOKUME~1\WOLFGA~1\LOKALE~1\Temp\DIO13.tmp 45,62KB
C:\DOKUME~1\WOLFGA~1\LOKALE~1\Temp\DIO5.tmp 45,62KB
C:\DOKUME~1\WOLFGA~1\LOKALE~1\Temp\DIO6.tmp 45,62KB
C:\DOKUME~1\WOLFGA~1\LOKALE~1\Temp\DIO7.tmp 45,62KB
C:\DOKUME~1\WOLFGA~1\LOKALE~1\Temp\DIO8.tmp 45,62KB
C:\DOKUME~1\WOLFGA~1\LOKALE~1\Temp\DIO9.tmp 45,62KB
C:\DOKUME~1\WOLFGA~1\LOKALE~1\Te