Vista + TRS2007 SE = TOT

  • Zitat

    geophil schrieb:
    Noch ein Tipp, der aber vielleicht schon etwas ins Eingemachte geht: Lade Dir von http://www.sysinternals.com den Process Monitor und verfolge damit die Registry-Zugriffe des CMP. Vielleicht ergibt sich sich damit eine Erklärung.


    Hallo geophil,


    Dann tu ich das mal und poste dann hier die TRS06/07-Relevanten Ergebnisse.


    Danke.

    Einmal editiert, zuletzt von Hurk ()

  • 538754 09:57:20,5947528 contentmanager.exe 3336 QueryNameInformationFile K:\Spiele\Auran\TRS2007\Bin\msvcr71.dll SUCCESS Name: \Spiele\Auran\TRS2007\Bin\msvcr71.dll


    538755 09:57:20,5948000 contentmanager.exe 3336 ReadFile C:\Windows\System32\kernel32.dll SUCCESS Offset: 771.072, Length: 12.288, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal


    Dann hat sich der Process Monitor aufgehängt.


    Gibt es die Möglichkeit, direkt den Process Monitor nach cmp oder trs oder so suchen zu lassen? Damit er nicht nochmal alle 12 Mio suchen muss.....



    Geht das so:


    Habe nach "Path is" K:\.........TRS2007\bin\ContentManager.exe gesucht. Herausgekommen ist - Achtung, lang - folgendes:


    203160 11:14:27,6109029 Explorer.EXE 960 QueryBasicInformationFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS CreationTime: 26.08.2008 11:34:45, LastAccessTime: 26.08.2008 11:34:45, LastWriteTime: 15.06.2007 14:35:30, ChangeTime: 26.08.2008 11:59:54, FileAttributes: A


    203176 11:14:27,6116673 Explorer.EXE 960 QueryDirectory K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS Filter: ContentManager.exe, 1: ContentManager.exe


    203179 11:14:27,6118047 Explorer.EXE 960 QueryOpen K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS CreationTime: 26.08.2008 11:34:45, LastAccessTime: 26.08.2008 11:34:45, LastWriteTime: 15.06.2007 14:35:30, ChangeTime: 26.08.2008 11:59:54, AllocationSize: 5.287.936, EndOfFile: 5.287.936, FileAttributes: A


    203210 11:14:27,6136860 Explorer.EXE 960 QueryOpen K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS CreationTime: 26.08.2008 11:34:45, LastAccessTime: 26.08.2008 11:34:45, LastWriteTime: 15.06.2007 14:35:30, ChangeTime: 26.08.2008 11:59:54, AllocationSize: 5.287.936, EndOfFile: 5.287.936, FileAttributes: A


    203211 11:14:27,6138055 Explorer.EXE 960 CreateFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened


    203219 11:14:27,6141791 Explorer.EXE 960 Load Image K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS Image Base: 0xe360000, Image Size: 0x50e000


    203220 11:14:27,6142173 Explorer.EXE 960 CloseFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS


    203224 11:14:27,6144288 Explorer.EXE 960 QueryOpen K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS CreationTime: 26.08.2008 11:34:45, LastAccessTime:
    26.08.2008 11:34:45, LastWriteTime: 15.06.2007 14:35:30, ChangeTime: 26.08.2008 11:59:54, AllocationSize: 5.287.936, EndOfFile: 5.287.936, FileAttributes: A


    203225 11:14:27,6145216 Explorer.EXE 960 CreateFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened


    203233 11:14:27,6147864 Explorer.EXE 960 Load Image K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS Image Base: 0xe360000, Image Size: 0x50e000


    203234 11:14:27,6148004 Explorer.EXE 960 CloseFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS


    203238 11:14:27,6150624 Explorer.EXE 960 QueryOpen K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS CreationTime: 26.08.2008 11:34:45, LastAccessTime: 26.08.2008 11:34:45, LastWriteTime: 15.06.2007 14:35:30, ChangeTime: 26.08.2008 11:59:54, AllocationSize: 5.287.936, EndOfFile: 5.287.936, FileAttributes: A


    203239 11:14:27,6151602 Explorer.EXE 960 CreateFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened


    203247 11:14:27,6154178 Explorer.EXE 960 Load Image K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS Image Base: 0xe360000, Image Size: 0x50e000


    203248 11:14:27,6154460 Explorer.EXE 960 CloseFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS


    203252 11:14:27,6156276 Explorer.EXE 960 QueryOpen K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS CreationTime: 26.08.2008 11:34:45, LastAccessTime: 26.08.2008 11:34:45, LastWriteTime: 15.06.2007 14:35:30, ChangeTime: 26.08.2008 11:59:54, AllocationSize: 5.287.936, EndOfFile: 5.287.936, FileAttributes: A


    203253 11:14:27,6157170 Explorer.EXE 960 CreateFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened


    203261 11:14:27,6160002 Explorer.EXE 960 Load Image K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS Image Base: 0xe360000, Image Size: 0x50e000


    203262 11:14:27,6160142 Explorer.EXE 960 CloseFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS


    203266 11:14:27,6168017 Explorer.EXE 960 CreateFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened


    203267 11:14:27,6168344 Explorer.EXE 960 QueryStandardInformationFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS AllocationSize: 5.287.936, EndOfFile: 5.287.936, NumberOfLinks: 1, DeletePending: False, Directory: False


    203275 11:14:27,6171071 Explorer.EXE 960 Load Image K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS Image Base: 0xe360000, Image Size: 0x50e000


    203276 11:14:27,6171462 Explorer.EXE 960 CloseFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS


    203660 11:14:27,7379671 Explorer.EXE 960 CreateFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS Desired Access: Generic Read/Execute, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened


    203668 11:14:27,7383373 Explorer.EXE 960 Load Image K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS Image Base: 0xe460000, Image Size: 0x50e000


    203673 11:14:27,7385680 Explorer.EXE 960 CloseFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS


    203677 11:14:27,7386954 Explorer.EXE 960 CloseFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS


    203681 11:14:27,7389064 Explorer.EXE 960 QueryOpen K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS CreationTime: 26.08.2008 11:34:45, LastAccessTime: 26.08.2008 11:34:45, LastWriteTime: 15.06.2007 14:35:30, ChangeTime: 26.08.2008 11:59:54, AllocationSize: 5.287.936, EndOfFile: 5.287.936, FileAttributes: A


    203682 11:14:27,7390206 Explorer.EXE 960 QueryOpen K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS CreationTime: 26.08.2008 11:34:45, LastAccessTime: 26.08.2008 11:34:45, LastWriteTime: 15.06.2007 14:35:30, ChangeTime: 26.08.2008 11:59:54, AllocationSize: 5.287.936, EndOfFile: 5.287.936, FileAttributes: A


    203683 11:14:27,7391276 Explorer.EXE 960 QueryOpen K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS CreationTime: 26.08.2008 11:34:45, LastAccessTime: 26.08.2008 11:34:45, LastWriteTime: 15.06.2007 14:35:30, ChangeTime: 26.08.2008 11:59:54, AllocationSize: 5.287.936, EndOfFile: 5.287.936, FileAttributes: A


    203684 11:14:27,7392332 Explorer.EXE 960 QueryOpen K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS CreationTime: 26.08.2008 11:34:45, LastAccessTime: 26.08.2008 11:34:45, LastWriteTime: 15.06.2007 14:35:30, ChangeTime: 26.08.2008 11:59:54, AllocationSize: 5.287.936, EndOfFile: 5.287.936, FileAttributes: A


    203685 11:14:27,7393531 Explorer.EXE 960 CreateFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened


    203693 11:14:27,7397199 Explorer.EXE 960 Load Image K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS Image Base: 0xe460000, Image Size: 0x50e000


    203694 11:14:27,7397520 Explorer.EXE 960 CloseFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS


    203698 11:14:27,7399381 Explorer.EXE 960 QueryOpen K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS CreationTime: 26.08.2008 11:34:45, LastAccessTime: 26.08.2008 11:34:45, LastWriteTime: 15.06.2007 14:35:30, ChangeTime: 26.08.2008 11:59:54, AllocationSize: 5.287.936, EndOfFile: 5.287.936, FileAttributes: A


    203699 11:14:27,7400381 Explorer.EXE 960 CreateFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened


    203707 11:14:27,7402646 Explorer.EXE 960 Load Image K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS Image Base: 0xe460000, Image Size: 0x50e000


    203708 11:14:27,7402780 Explorer.EXE 960 CloseFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS


    203712 11:14:27,7404007 Explorer.EXE 960 ReadFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS Offset: 1.454.080, Length: 16.384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal


    203713 11:14:27,7420713 Explorer.EXE 960 ReadFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS Offset: 2.916.352, Length: 16.384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal


    203743 11:14:27,7533071 Explorer.EXE 960 ReadFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS Offset: 2.899.968, Length: 16.384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal


    204037 11:14:27,8125830 Explorer.EXE 960 QueryOpen K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS CreationTime: 26.08.2008 11:34:45, LastAccessTime: 26.08.2008 11:34:45, LastWriteTime: 15.06.2007 14:35:30, ChangeTime: 26.08.2008 11:59:54, AllocationSize: 5.287.936, EndOfFile: 5.287.936, FileAttributes: A


    204038 11:14:27,8126976 Explorer.EXE 960 QueryOpen K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS CreationTime: 26.08.2008 11:34:45, LastAccessTime: 26.08.2008 11:34:45, LastWriteTime: 15.06.2007 14:35:30, ChangeTime: 26.08.2008 11:59:54, AllocationSize: 5.287.936, EndOfFile: 5.287.936, FileAttributes: A


    204039 11:14:27,8128037 Explorer.EXE 960 QueryOpen K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS CreationTime: 26.08.2008 11:34:45, LastAccessTime: 26.08.2008 11:34:45, LastWriteTime: 15.06.2007 14:35:30, ChangeTime: 26.08.2008 11:59:54, AllocationSize: 5.287.936, EndOfFile: 5.287.936, FileAttributes: A


    204040 11:14:27,8129099 Explorer.EXE 960 QueryOpen K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS CreationTime: 26.08.2008 11:34:45, LastAccessTime: 26.08.2008 11:34:45, LastWriteTime: 15.06.2007 14:35:30, ChangeTime: 26.08.2008 11:59:54, AllocationSize: 5.287.936, EndOfFile: 5.287.936, FileAttributes: A


    204041 11:14:27,8130292 Explorer.EXE 960 CreateFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened


    204049 11:14:27,8149889 Explorer.EXE 960 Load Image K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS Image Base: 0xdd20000, Image Size: 0x50e000


    204050 11:14:27,8150286 Explorer.EXE 960 CloseFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS


    204054 11:14:27,8152772 Explorer.EXE 960 QueryOpen K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS CreationTime: 26.08.2008 11:34:45, LastAccessTime: 26.08.2008 11:34:45, LastWriteTime: 15.06.2007 14:35:30, ChangeTime: 26.08.2008 11:59:54, AllocationSize: 5.287.936, EndOfFile: 5.287.936, FileAttributes: A


    204055 11:14:27,8153717 Explorer.EXE 960 CreateFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened


    204074 11:14:27,8164576 Explorer.EXE 960 Load Image K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS Image Base: 0xdd20000, Image Size: 0x50e000


    204075 11:14:27,8164743 Explorer.EXE 960 CloseFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS


    204128 11:14:27,8178776 Explorer.EXE 960 QueryOpen K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS CreationTime: 26.08.2008 11:34:45, LastAccessTime: 26.08.2008 11:34:45, LastWriteTime: 15.06.2007 14:35:30, ChangeTime: 26.08.2008 11:59:54, AllocationSize: 5.287.936, EndOfFile: 5.287.936, FileAttributes: A


    204129 11:14:27,8179753 Explorer.EXE 960 QueryOpen K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS CreationTime: 26.08.2008 11:34:45, LastAccessTime: 26.08.2008 11:34:45, LastWriteTime: 15.06.2007 14:35:30, ChangeTime: 26.08.2008 11:59:54, AllocationSize: 5.287.936, EndOfFile: 5.287.936, FileAttributes: A


    204130 11:14:27,8180801 Explorer.EXE 960 QueryOpen K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS CreationTime: 26.08.2008 11:34:45, LastAccessTime: 26.08.2008 11:34:45, LastWriteTime: 15.06.2007 14:35:30, ChangeTime: 26.08.2008 11:59:54, AllocationSize: 5.287.936, EndOfFile: 5.287.936, FileAttributes: A


    204131 11:14:27,8181851 Explorer.EXE 960 QueryOpen K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS CreationTime: 26.08.2008 11:34:45, LastAccessTime: 26.08.2008 11:34:45, LastWriteTime: 15.06.2007 14:35:30, ChangeTime: 26.08.2008 11:59:54, AllocationSize: 5.287.936, EndOfFile: 5.287.936, FileAttributes: A


    204132 11:14:27,8182910 Explorer.EXE 960 CreateFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened


    204151 11:14:27,8197971 Explorer.EXE 960 Load Image K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS Image Base: 0xdd20000, Image Size: 0x50e000


    204152 11:14:27,8198326 Explorer.EXE 960 CloseFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS


    204156 11:14:27,8200136 Explorer.EXE 960 QueryOpen K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS CreationTime: 26.08.2008 11:34:45, LastAccessTime: 26.08.2008 11:34:45, LastWriteTime: 15.06.2007 14:35:30, ChangeTime: 26.08.2008 11:59:54, AllocationSize: 5.287.936, EndOfFile: 5.287.936, FileAttributes: A


    204157 11:14:27,8201144 Explorer.EXE 960 CreateFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened


    204165 11:14:27,8203863 Explorer.EXE 960 Load Image K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS Image Base: 0xdd20000, Image Size: 0x50e000


    204166 11:14:27,8203997 Explorer.EXE 960 CloseFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS


    205184 11:14:28,5524936 Explorer.EXE 960 CreateFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS Desired Access: Generic Read, Disposition: Open, Options: Non-Directory File, Attributes: n/a, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened


    205185 11:14:28,5525785 Explorer.EXE 960 FileSystemControl K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS Control: FSCTL_REQUEST_FILTER_OPLOCK


    205186 11:14:28,5527584 Explorer.EXE 960 QueryOpen K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS CreationTime: 26.08.2008 11:34:45, LastAccessTime: 26.08.2008 11:34:45, LastWriteTime: 15.06.2007 14:35:30, ChangeTime: 26.08.2008 11:59:54, AllocationSize: 5.287.936, EndOfFile: 5.287.936, FileAttributes: A


    205187 11:14:28,5529472 Explorer.EXE 960 CreateFile
    K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened


    205195 11:14:28,5534635 Explorer.EXE 960 Load Image K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS Image Base: 0xdd20000, Image Size: 0x50e000


    205196 11:14:28,5535490 Explorer.EXE 960 CloseFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS


    205200 11:14:28,5538658 Explorer.EXE 960 QueryOpen K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS CreationTime: 26.08.2008 11:34:45, LastAccessTime: 26.08.2008 11:34:45, LastWriteTime: 15.06.2007 14:35:30, ChangeTime: 26.08.2008 11:59:54, AllocationSize: 5.287.936, EndOfFile: 5.287.936, FileAttributes: A


    205201 11:14:28,5540206 Explorer.EXE 960 CreateFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened


    205209 11:14:28,5543955 Explorer.EXE 960 Load Image K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS Image Base: 0xdd20000, Image Size: 0x50e000


    205210 11:14:28,5544181 Explorer.EXE 960 CloseFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS


    205214 11:14:28,5548260 Explorer.EXE 960 QueryOpen K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS CreationTime: 26.08.2008 11:34:45, LastAccessTime: 26.08.2008 11:34:45, LastWriteTime: 15.06.2007 14:35:30, ChangeTime: 26.08.2008 11:59:54, AllocationSize: 5.287.936, EndOfFile: 5.287.936, FileAttributes: A


    205215 11:14:28,5549897 Explorer.EXE 960 CreateFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened


    205223 11:14:28,5553772 Explorer.EXE 960 Load Image K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS Image Base: 0xdd20000, Image Size: 0x50e000


    205224 11:14:28,5554177 Explorer.EXE 960 CloseFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS


    205228 11:14:28,5557261 Explorer.EXE 960 QueryOpen K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS CreationTime: 26.08.2008 11:34:45, LastAccessTime: 26.08.2008 11:34:45, LastWriteTime: 15.06.2007 14:35:30, ChangeTime: 26.08.2008 11:59:54, AllocationSize: 5.287.936, EndOfFile: 5.287.936, FileAttributes: A


    205229 11:14:28,5558890 Explorer.EXE 960 CreateFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened


    205237 11:14:28,5562745 Explorer.EXE 960 Load Image K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS Image Base: 0xdd20000, Image Size: 0x50e000


    205238 11:14:28,5562960 Explorer.EXE 960 CloseFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS


    205250 11:14:28,5580286 Explorer.EXE 960 CloseFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS

    Einmal editiert, zuletzt von Hurk ()

  • Der Ansatz ist schon richtig. Man muss ein Filter setzen. Z.B. über den Prozessnamen. Das ist üblicherweise der Name der exe-Datei.


    Dann sollten beim Aufzeichnen (capture) weniger als 12 Mio Einträge entstehen. Danach das Filter weiter eingrenzen.


    Da der Verdacht besteht, dass es ein Registry-Zugriff sein könnte, insbesondere in diese Richtung filtern. Denn der Monitor gibt auch die Return-Values an. Wenn was schief gehen sollte, wird es dort aufgezeichnet werden.

  • Hallo geophil,


    kannst du mit den oben geposteten Ergebnissen etwas anfangen?


    Danke.

  • Wie gesagt, Du solltest nach Registry-Zugriffen des CMP filtern. Das sieht dann z.B. so aus (anderes exe, nur zur Verdeutlichung):

    Code
    60578	11:32:52,4375840	uedit32.exe	2544	RegOpenKey	HKCU	SUCCESS	Desired Access: Read
    60579	11:32:52,4376054	uedit32.exe	2544	RegOpenKey	HKCU\Control Panel\Desktop	SUCCESS	Desired Access: Read
    60580	11:32:52,4376182	uedit32.exe	2544	RegQueryValue	HKCU\Control Panel\Desktop\SmoothScroll	NAME NOT FOUND	Length: 144
    60581	11:32:52,4376353	uedit32.exe	2544	RegCloseKey	HKCU\Control Panel\Desktop	SUCCESS


    Vielleicht findet man dort etwas, was schief geht, aber nicht schief gehen soll. Ggf. kann man ein solches Log mit einem anderen Log, ebenfalls auf Vista, aber erfolgreich, vergleichen.

  • Wie muss ich dann filtern, dass ich das rausbekomme?


    also nicht nach Path, sondern registry K:\.....contentmanager.exe ?

  • Zitat

    geophil schrieb:[...]Und mal schauen, wie viel Einträge produziert werden.


    Hallo!


    Also beim ersten Aufruf am aktuellen Tag kommt es beim CMP vor, dass er waehrend er behauptet die Datenbank zu aktualisieren, stattdessen einige zehntausendmal auf ein und den selben Registry-Eintrag zugreift.


    Loesung CMP beenden und neuaufrufen...


    Scheint ein Bug zu sein, offenbar haengt er da in einer Schleife mit fehlerhafter Abbruchbedingung herum.


    Gruss Mick!

    One of the painful signs of years of dumbed-down education is how many people are unable to make a coherent argument. They can vent their emotions, question other people’s motives, make bold assertions, repeat slogans—anything except reason.“ (Thomas Sowell)

  • Hast Du zufällig Norton Systemworks oder so ähnlich von


    http://www.symantec.com


    auf deinem Rechner?


    Wird meist bei gekauften Komplettsystemen vorinstalliert und ist fast nicht wegzubringen. (normales Deinstallieren funktioniert nicht, geht nur mit auf oa. Seite erhältlichen Tool(s))
    Diese(s) Programm(e) könnten eventuell die dauernden Zugriffe auf die Registry durch den CMP verhindern und somit den Start verhindern.


    Wenn Du ein selbst aufgesetztes Vista ohne Symatec Software hast, vergiss meinen Tipp. :-@

  • Hallo Jofi,


    habe Norton 360, ist aber zurzeit nicht installiert.


    Von daher....




    @Mick:


    Hallo,


    leider bringt der CMP bei jedem Aufruf die Fehlermeldung "ContentManagerPlus funktioniert nicht mehr..."; dabei ist es völlig unerheblich obb ich den CMP 1mal, 2mal oder x-mal versuche zu starten.


    War gestern nicht mehr da, ich teste gleich auf Process Name.


    Danke für die Tips bisher.


    PS: Bei der suche nach "Process" "is" ContentManager.exe "include" findet er nach 10 Millionen Dateien oder Prozessen immer noch nichts.


    Ist das normal?


    Und ich habe alle anderen Windows-Prozesse, die im Filter mit "exclude" stehen, drin gelassen.

    Einmal editiert, zuletzt von Hurk ()

  • So, hier endlich mal der Erste Teil der Suchergebnisse nach "Process" "is" ContentManager.exe:


    1660288 12:21:41,6136908 contentmanager.exe 1792 RegOpenKey HKLM\SOFTWARE\Microsoft\CTF\KnownClasses NAME NOT FOUND Desired Access: Read
    1660290 12:21:41,6167669 contentmanager.exe 1792 RegCloseKey HKCR SUCCESS
    1660291 12:21:41,6174027 contentmanager.exe 1792 CreateFile K:\Spiele\Auran\TRS2007\Settings\userd.txt SUCCESS Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened
    1660292 12:21:41,6174857 contentmanager.exe 1792 QueryStandardInformationFile K:\Spiele\Auran\TRS2007\Settings\userd.txt SUCCESS AllocationSize: 152, EndOfFile: 147, NumberOfLinks: 1, DeletePending: False, Directory: False
    1660293 12:21:41,6175281 contentmanager.exe 1792 ReadFile K:\Spiele\Auran\TRS2007\Settings\userd.txt SUCCESS Offset: 0, Length: 147, Priority: Normal
    1660294 12:21:41,6175918 contentmanager.exe 1792 ReadFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS Offset: 372.736, Length: 4.096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal
    1660297 12:21:41,6295383 contentmanager.exe 1792 CloseFile K:\Spiele\Auran\TRS2007\Settings\userd.txt SUCCESS
    1660301 12:21:41,6306879 contentmanager.exe 1792 CreateFile K:\ SUCCESS Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened
    1660302 12:21:41,6308432 contentmanager.exe 1792 QueryNameInformationFile K:\ SUCCESS Name: \
    1660303 12:21:41,6308726 contentmanager.exe 1792 QueryAttributeInformationVolume K:\ SUCCESS FileSystemAttributes: Case Preserved, Case Sensitive, Unicode, ACLs, Compression, Named Streams, EFS, Object IDs, Reparse Points, Sparse Files, Quotas, Transactions, MaximumComponentNameLength: 255, FileSystemName: NTFS
    1660304 12:21:41,6308985 contentmanager.exe 1792 CloseFile K:\ SUCCESS
    1660310 12:21:41,6535324 contentmanager.exe 1792 CreateFile K:\Spiele\Auran\TRS2007\Bin\CMPData\details_nopreview.bmp SUCCESS Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened
    1660316 12:21:41,6602291 contentmanager.exe 1792 QueryStandardInformationFile K:\Spiele\Auran\TRS2007\Bin\CMPData\details_nopreview.bmp SUCCESS AllocationSize: 131.072, EndOfFile: 129.656, NumberOfLinks: 1, DeletePending: False, Directory: False
    1660317 12:21:41,6603000 contentmanager.exe 1792 CloseFile K:\Spiele\Auran\TRS2007\Bin\CMPData\details_nopreview.bmp SUCCESS
    1660319 12:21:41,6604118 contentmanager.exe 1792 CreateFile K:\ SUCCESS Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened
    1660320 12:21:41,6604506 contentmanager.exe 1792 QueryNameInformationFile K:\ SUCCESS Name: \
    1660321 12:21:41,6604738 contentmanager.exe 1792 QueryAttributeInformationVolume K:\ SUCCESS FileSystemAttributes: Case Preserved, Case Sensitive, Unicode, ACLs, Compression, Named Streams, EFS, Object IDs, Reparse Points, Sparse Files, Quotas, Transactions, MaximumComponentNameLength: 255, FileSystemName: NTFS
    1660322 12:21:41,6604917 contentmanager.exe 1792 CloseFile K:\ SUCCESS
    1660327 12:21:41,6744798 contentmanager.exe 1792 CreateFile K:\Spiele\Auran\TRS2007\Bin\TETData\logo.jpg SUCCESS Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened
    1660329 12:21:41,6759884 contentmanager.exe 1792 QueryStandardInformationFile K:\Spiele\Auran\TRS2007\Bin\TETData\logo.jpg SUCCESS AllocationSize: 32.768, EndOfFile: 28.885, NumberOfLinks: 1, DeletePending: False, Directory: False
    1660330 12:21:41,6761426 contentmanager.exe 1792 CloseFile K:\Spiele\Auran\TRS2007\Bin\TETData\logo.jpg SUCCESS
    1660332 12:21:41,6762591 contentmanager.exe 1792 CreateFile K:\ SUCCESS Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened
    1660333 12:21:41,6762976 contentmanager.exe 1792 QueryNameInformationFile K:\ SUCCESS Name: \
    1660334 12:21:41,6763211 contentmanager.exe 1792 QueryAttributeInformationVolume K:\ SUCCESS FileSystemAttributes: Case Preserved, Case Sensitive, Unicode, ACLs, Compression, Named Streams, EFS, Object IDs, Reparse Points, Sparse Files, Quotas, Transactions, MaximumComponentNameLength: 255, FileSystemName: NTFS
    1660335 12:21:41,6763398 contentmanager.exe 1792 CloseFile K:\ SUCCESS
    1660337 12:21:41,6764666 contentmanager.exe 1792 CreateFile K:\Spiele\Auran\TRS2007\Bin\Trainz.exe SUCCESS Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened
    1660338 12:21:41,6765150 contentmanager.exe 1792 QueryStandardInformationFile K:\Spiele\Auran\TRS2007\Bin\Trainz.exe SUCCESS AllocationSize: 4.108.288, EndOfFile: 4.108.288, NumberOfLinks: 1, DeletePending: False, Directory: False
    1660339 12:21:41,6766390 contentmanager.exe 1792 CloseFile K:\Spiele\Auran\TRS2007\Bin\Trainz.exe SUCCESS
    1660341 12:21:41,6767432 contentmanager.exe 1792 RegCreateKey HKCU\AppEvents\Schemes\Apps\trainzcmp SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660342 12:21:41,6767801 contentmanager.exe 1792 ReadFile C:\Users\Mr. Cortez\NTUSER.DAT SUCCESS Offset: 3.502.080, Length: 4.096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal
    1660344 12:21:41,6881586 contentmanager.exe 1792 ReadFile C:\Users\Mr. Cortez\NTUSER.DAT SUCCESS Offset: 3.497.984, Length: 4.096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal
    1660345 12:21:41,6886391 contentmanager.exe 1792 RegSetValue HKCU\AppEvents\Schemes\Apps\trainzcmp\(Default) SUCCESS Type: REG_SZ, Length: 520, Data: Content Manager Plus
    1660346 12:21:41,6886718 contentmanager.exe 1792 RegCloseKey HKCU\AppEvents\Schemes\Apps\trainzcmp SUCCESS
    1660347 12:21:41,6887263 contentmanager.exe 1792 RegOpenKey HKCU\AppEvents\Schemes\Apps\trainzcmp\trainzcmp_Download_Complete\.Current SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660348 12:21:41,6887735 contentmanager.exe 1792 RegCloseKey HKCU\AppEvents\Schemes\Apps\trainzcmp\trainzcmp_Download_Complete\.Current SUCCESS
    1660349 12:21:41,6888012 contentmanager.exe 1792 RegOpenKey HKCU\AppEvents\EventLabels\trainzcmp_Download_Complete SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660350 12:21:41,6888397 contentmanager.exe 1792 RegCloseKey HKCU\AppEvents\EventLabels\trainzcmp_Download_Complete SUCCESS
    1660351 12:21:41,6888738 contentmanager.exe 1792 RegOpenKey HKCU\AppEvents\Schemes\Apps\trainzcmp\trainzcmp_Open_Panel\.Current SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660352 12:21:41,6889012 contentmanager.exe 1792 ReadFile C:\Users\Mr. Cortez\NTUSER.DAT SUCCESS Offset: 3.055.616, Length: 4.096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal
    1660353 12:21:41,7088660 contentmanager.exe 1792 ReadFile C:\Users\Mr. Cortez\NTUSER.DAT SUCCESS Offset: 3.047.424, Length: 4.096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal
    1660354 12:21:41,7090716 contentmanager.exe 1792 RegCloseKey HKCU\AppEvents\Schemes\Apps\trainzcmp\trainzcmp_Open_Panel\.Current SUCCESS
    1660355 12:21:41,7091021 contentmanager.exe 1792 RegOpenKey HKCU\AppEvents\EventLabels\trainzcmp_Open_Panel SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660356 12:21:41,7091350 contentmanager.exe 1792 RegCloseKey HKCU\AppEvents\EventLabels\trainzcmp_Open_Panel SUCCESS
    1660357 12:21:41,7091716 contentmanager.exe 1792 RegOpenKey HKCU\AppEvents\Schemes\Apps\trainzcmp\trainzcmp_Close_Panel\.Current SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660358 12:21:41,7091987 contentmanager.exe 1792 ReadFile C:\Users\Mr. Cortez\NTUSER.DAT SUCCESS Offset: 3.121.152, Length: 4.096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal
    1660359 12:21:41,7106481 contentmanager.exe 1792 RegCloseKey HKCU\AppEvents\Schemes\Apps\trainzcmp\trainzcmp_Close_Panel\.Current SUCCESS
    1660360 12:21:41,7106752 contentmanager.exe 1792 RegOpenKey HKCU\AppEvents\EventLabels\trainzcmp_Close_Panel SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660361 12:21:41,7107067 contentmanager.exe 1792 RegCloseKey HKCU\AppEvents\EventLabels\trainzcmp_Close_Panel SUCCESS
    1660362 12:21:41,7107417 contentmanager.exe 1792 RegOpenKey HKCU\AppEvents\Schemes\Apps\trainzcmp\trainzcmp_Connection_Error\.Current SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660363 12:21:41,7107808 contentmanager.exe 1792 RegCloseKey HKCU\AppEvents\Schemes\Apps\trainzcmp\trainzcmp_Connection_Error\.Current SUCCESS
    1660364 12:21:41,7108285 contentmanager.exe 1792 RegOpenKey HKCU\AppEvents\EventLabels\trainzcmp_Connection_Error SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660365 12:21:41,7108604 contentmanager.exe 1792 RegCloseKey HKCU\AppEvents\EventLabels\trainzcmp_Connection_Error SUCCESS
    1660366 12:21:41,7108936 contentmanager.exe 1792 RegOpenKey HKCU\AppEvents\Schemes\Apps\trainzcmp\trainzcmp_DragDrop\.Current SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660367 12:21:41,7109353 contentmanager.exe 1792 RegCloseKey HKCU\AppEvents\Schemes\Apps\trainzcmp\trainzcmp_DragDrop\.Current SUCCESS
    1660368 12:21:41,7109601 contentmanager.exe 1792 RegOpenKey HKCU\AppEvents\EventLabels\trainzcmp_DragDrop SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660369 12:21:41,7109903 contentmanager.exe 1792 RegCloseKey HKCU\AppEvents\EventLabels\trainzcmp_DragDrop SUCCESS
    1660370 12:21:41,7110238 contentmanager.exe 1792 RegOpenKey HKCU\AppEvents\Schemes\Apps\trainzcmp\trainzcmp_Action_Click\.Current SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660371 12:21:41,7110501 contentmanager.exe 1792 ReadFile C:\Users\Mr. Cortez\NTUSER.DAT SUCCESS Offset: 3.334.144, Length: 4.096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal
    1660372 12:21:41,7274720 contentmanager.exe 1792 ReadFile C:\Users\Mr. Cortez\NTUSER.DAT SUCCESS Offset: 3.330.048, Length: 4.096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal
    1660373 12:21:41,7277181 contentmanager.exe 1792 RegCloseKey HKCU\AppEvents\Schemes\Apps\trainzcmp\trainzcmp_Action_Click\.Current SUCCESS
    1660374 12:21:41,7277488 contentmanager.exe 1792 RegOpenKey HKCU\AppEvents\EventLabels\trainzcmp_Action_Click SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660375 12:21:41,7277826 contentmanager.exe 1792 RegCloseKey HKCU\AppEvents\EventLabels\trainzcmp_Action_Click SUCCESS
    1660376 12:21:41,7278206 contentmanager.exe 1792 RegOpenKey HKCU\AppEvents\Schemes\Apps\trainzcmp\trainzcmp_Download_Start\.Current SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660377 12:21:41,7278623 contentmanager.exe 1792 RegCloseKey HKCU\AppEvents\Schemes\Apps\trainzcmp\trainzcmp_Download_Start\.Current SUCCESS
    1660378 12:21:41,7278880 contentmanager.exe 1792 RegOpenKey HKCU\AppEvents\EventLabels\trainzcmp_Download_Start SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660379 12:21:41,7279184 contentmanager.exe 1792 RegCloseKey HKCU\AppEvents\EventLabels\trainzcmp_Download_Start SUCCESS
    1660380 12:21:41,7279517 contentmanager.exe 1792 RegOpenKey HKCU\AppEvents\Schemes\Apps\trainzcmp\trainzcmp_Download_Stop\.Current SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660381 12:21:41,7279986 contentmanager.exe 1792 RegCloseKey HKCU\AppEvents\Schemes\Apps\trainzcmp\trainzcmp_Download_Stop\.Current SUCCESS
    1660382 12:21:41,7280237 contentmanager.exe 1792 RegOpenKey HKCU\AppEvents\EventLabels\trainzcmp_Download_Stop SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660383 12:21:41,7280547 contentmanager.exe 1792 RegCloseKey HKCU\AppEvents\EventLabels\trainzcmp_Download_Stop SUCCESS
    1660384 12:21:41,7280880 contentmanager.exe 1792 RegOpenKey HKCU\AppEvents\Schemes\Apps\trainzcmp\trainzcmp_Download_Success\.Current SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660385 12:21:41,7281257 contentmanager.exe 1792 RegCloseKey HKCU\AppEvents\Schemes\Apps\trainzcmp\trainzcmp_Download_Success\.Current SUCCESS
    1660386 12:21:41,7281511 contentmanager.exe 1792 RegOpenKey HKCU\AppEvents\EventLabels\trainzcmp_Download_Success SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660387 12:21:41,7281805 contentmanager.exe 1792 RegCloseKey HKCU\AppEvents\EventLabels\trainzcmp_Download_Success SUCCESS
    1660388 12:21:41,7282126 contentmanager.exe 1792 RegOpenKey HKCU\AppEvents\Schemes\Apps\trainzcmp\trainzcmp_Filter_Apply\.Current SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660389 12:21:41,7282517 contentmanager.exe 1792 RegCloseKey HKCU\AppEvents\Schemes\Apps\trainzcmp\trainzcmp_Filter_Apply\.Current SUCCESS
    1660390 12:21:41,7282766 contentmanager.exe 1792 RegOpenKey HKCU\AppEvents\EventLabels\trainzcmp_Filter_Apply SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660391 12:21:41,7283067 contentmanager.exe 1792 RegCloseKey HKCU\AppEvents\EventLabels\trainzcmp_Filter_Apply SUCCESS
    1660392 12:21:41,7283397 contentmanager.exe 1792 RegOpenKey HKCU\AppEvents\Schemes\Apps\trainzcmp\trainzcmp_Filter_Applied\.Current SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660393 12:21:41,7283777 contentmanager.exe 1792 RegCloseKey HKCU\AppEvents\Schemes\Apps\trainzcmp\trainzcmp_Filter_Applied\.Current SUCCESS
    1660394 12:21:41,7284207 contentmanager.exe 1792 RegOpenKey HKCU\AppEvents\EventLabels\trainzcmp_Filter_Applied SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660395 12:21:41,7284512 contentmanager.exe 1792 RegCloseKey HKCU\AppEvents\EventLabels\trainzcmp_Filter_Applied SUCCESS
    1660396 12:21:41,7284844 contentmanager.exe 1792 RegOpenKey HKCU\AppEvents\Schemes\Apps\trainzcmp\trainzcmp_Scan_Complete\.Current SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660397 12:21:41,7285232 contentmanager.exe 1792 RegCloseKey HKCU\AppEvents\Schemes\Apps\trainzcmp\trainzcmp_Scan_Complete\.Current SUCCESS
    1660398 12:21:41,7285481 contentmanager.exe 1792 RegOpenKey HKCU\AppEvents\EventLabels\trainzcmp_Scan_Complete SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660399 12:21:41,7285783 contentmanager.exe 1792 RegCloseKey HKCU\AppEvents\EventLabels\trainzcmp_Scan_Complete SUCCESS
    1660400 12:21:41,7286073 contentmanager.exe 1792 ReadFile K:\Spiele\Auran\TRS2007\Bin\MFC71.dll SUCCESS Offset: 712.704, Length: 32.768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal
    1660401 12:21:41,7399596 contentmanager.exe 1792 QueryOpen K:\Spiele\Auran\TRS2007\Bin\contentmanagerDEU.dll NAME NOT FOUND
    1660402 12:21:41,7400772 contentmanager.exe 1792 QueryOpen K:\Spiele\Auran\TRS2007\Bin\contentmanagerDEU.dll NAME NOT FOUND
    1660403 12:21:41,7403323 contentmanager.exe 1792 QueryOpen K:\Spiele\Auran\TRS2007\Bin\contentmanagerDEU.dll NAME NOT FOUND
    1660404 12:21:41,7404435 contentmanager.exe 1792 QueryOpen K:\Spiele\Auran\TRS2007\Bin\contentmanagerDEU.dll NAME NOT FOUND
    1660405 12:21:41,7408293 contentmanager.exe 1792 QueryOpen K:\Spiele\Auran\TRS2007\Bin\contentmanagerDEU.dll NAME NOT FOUND
    1660406 12:21:41,7409318 contentmanager.exe 1792 QueryOpen K:\Spiele\Auran\TRS2007\Bin\contentmanagerDEU.dll NAME NOT FOUND
    1660407 12:21:41,7410961 contentmanager.exe 1792 QueryOpen K:\Spiele\Auran\TRS2007\Bin\contentmanagerDEU.dll NAME NOT FOUND
    1660408 12:21:41,7411992 contentmanager.exe 1792 QueryOpen K:\Spiele\Auran\TRS2007\Bin\contentmanagerDEU.dll NAME NOT FOUND
    1660409 12:21:41,7413710 contentmanager.exe 1792 QueryOpen K:\Spiele\Auran\TRS2007\Bin\contentmanagerLOC.dll NAME NOT FOUND
    1660410 12:21:41,7414727 contentmanager.exe 1792 QueryOpen K:\Spiele\Auran\TRS2007\Bin\contentmanagerLOC.dll NAME NOT FOUND
    1660411 12:21:41,7417752 contentmanager.exe 1792 ReadFile K:\Spiele\Auran\TRS2007\Bin\MFC71.dll SUCCESS Offset: 385.024, Length: 32.768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal
    1660412 12:21:41,7503651 contentmanager.exe 1792 RegOpenKey HKCU\software SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660413 12:21:41,7504352 contentmanager.exe 1792 RegCreateKey HKCU\Software\Auran SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660414 12:21:41,7504858 contentmanager.exe 1792 RegCreateKey HKCU\Software\Auran\Content Manager Plus SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660415 12:21:41,7505177 contentmanager.exe 1792 RegCloseKey HKCU\Software SUCCESS
    1660416 12:21:41,7505344 contentmanager.exe 1792 RegCloseKey HKCU\Software\Auran SUCCESS
    1660417 12:21:41,7505568 contentmanager.exe 1792 RegCreateKey HKCU\Software\Auran\Content Manager Plus\Filters SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660418 12:21:41,7505855 contentmanager.exe 1792 RegCloseKey HKCU\Software\Auran\Content Manager Plus SUCCESS
    1660419 12:21:41,7506149 contentmanager.exe 1792 RegQueryValue HKCU\Software\Auran\Content Manager Plus\Filters\FilterCount NAME NOT FOUND Length: 144
    1660420 12:21:41,7506342 contentmanager.exe 1792 RegCloseKey HKCU\Software\Auran\Content Manager Plus\Filters SUCCESS
    1660421 12:21:41,7507034 contentmanager.exe 1792 ReadFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS Offset: 147.456, Length: 32.768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal
    1660424 12:21:41,7651011 contentmanager.exe 1792 ReadFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS Offset: 4.960.256, Length: 16.384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal
    1660425 12:21:41,7787472 contentmanager.exe 1792 RegOpenKey HKCU\software SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660426 12:21:41,7787880 contentmanager.exe 1792 RegCreateKey HKCU\Software\Auran SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660427 12:21:41,7788193 contentmanager.exe 1792 RegCreateKey HKCU\Software\Auran\Content Manager Plus SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660428 12:21:41,7788447 contentmanager.exe 1792 RegCloseKey HKCU\Software SUCCESS
    1660429 12:21:41,7788612 contentmanager.exe 1792 RegCloseKey HKCU\Software\Auran SUCCESS
    1660430 12:21:41,7788824 contentmanager.exe 1792 RegCreateKey HKCU\Software\Auran\Content Manager Plus\Filters SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660431 12:21:41,7789062 contentmanager.exe 1792 RegCloseKey HKCU\Software\Auran\Content Manager Plus SUCCESS
    1660432 12:21:41,7789252 contentmanager.exe 1792 RegQueryValue HKCU\Software\Auran\Content Manager Plus\Filters\LastFilterIndex NAME NOT FOUND Length: 144
    1660433 12:21:41,7789439 contentmanager.exe 1792 RegCloseKey HKCU\Software\Auran\Content Manager Plus\Filters SUCCESS
    1660434 12:21:41,7790040 contentmanager.exe 1792 ReadFile K:\Spiele\Auran\TRS2007\Bin\ContentManager.exe SUCCESS Offset: 704.512, Length: 32.768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal
    1660435 12:21:41,7872570 contentmanager.exe 1792 RegOpenKey HKLM\System\CurrentControlSet\Services\WinSock2\Parameters REPARSE Desired Access: All Access
    1660436 12:21:41,7872883 contentmanager.exe 1792 RegOpenKey HKLM\System\CurrentControlSet\Services\WinSock2\Parameters SUCCESS Desired Access: All Access
    1660437 12:21:41,7873201 contentmanager.exe 1792 RegQueryValue HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version SUCCESS Type: REG_SZ, Length: 8, Data: 2.0
    1660438 12:21:41,7873394 contentmanager.exe 1792 RegQueryValue HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version SUCCESS Type: REG_SZ, Length: 8, Data: 2.0
    1660439 12:21:41,7873676 contentmanager.exe 1792 RegOpenKey HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog SUCCESS Desired Access: Read
    1660440 12:21:41,7874131 contentmanager.exe 1792 RegOpenKey HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog\16081049 NAME NOT FOUND Desired Access: Read
    1660441 12:21:41,7874349 contentmanager.exe 1792 RegCloseKey HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog SUCCESS
    1660442 12:21:41,7874592 contentmanager.exe 1792 RegOpenKey HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9 SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660443 12:21:41,7874830 contentmanager.exe 1792 RegQueryValue HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num SUCCESS Type: REG_DWORD, Length: 4, Data: 13
    1660444 12:21:41,7875355 contentmanager.exe 1792 RegQueryValue HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num SUCCESS Type: REG_DWORD, Length: 4, Data: 13
    1660445 12:21:41,7875550 contentmanager.exe 1792 RegOpenKey HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\0000000D NAME NOT FOUND Desired Access: Read
    1660446 12:21:41,7875738 contentmanager.exe 1792 RegQueryValue HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID SUCCESS Type: REG_DWORD, Length: 4, Data: 1059
    1660447 12:21:41,7875911 contentmanager.exe 1792 RegQueryValue HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries SUCCESS Type: REG_DWORD, Length: 4, Data: 26
    1660448 12:21:41,7876084 contentmanager.exe 1792 RegOpenKey HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660449 12:21:41,7876403 contentmanager.exe 1792 RegOpenKey HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000001 SUCCESS Desired Access: Read
    1660450 12:21:41,7876682 contentmanager.exe 1792 RegQueryValue HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000001\PackedCatalogItem BUFFER OVERFLOW Length: 144
    1660451 12:21:41,7876936 contentmanager.exe 1792 RegQueryValue HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000001\PackedCatalogItem BUFFER OVERFLOW Length: 144
    1660452 12:21:41,7877107 contentmanager.exe 1792 RegQueryValue HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000001\PackedCatalogItem SUCCESS Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73
    1660453 12:21:41,7877319 contentmanager.exe 1792 RegQueryValue HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000001\ProtocolName SUCCESS Type: REG_SZ, Length: 86, Data: @%SystemRoot%\System32\wshtcpip.dll,-60100
    1660454 12:21:41,7880115 contentmanager.exe 1792 QueryOpen C:\Windows\System32\WSHTCPIP.DLL FAST IO DISALLOWED
    1660455 12:21:41,7881512 contentmanager.exe 1792 CreateFile C:\Windows\System32\WSHTCPIP.DLL SUCCESS Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened
    1660456 12:21:41,7881937 contentmanager.exe 1792 QueryBasicInformationFile C:\Windows\System32\WSHTCPIP.DLL SUCCESS CreationTime: 01.07.2008 19:40:42, LastAccessTime: 01.07.2008 19:40:42, LastWriteTime: 19.01.2008 09:37:11, ChangeTime: 23.08.2008 01:03:44, FileAttributes: A
    1660457 12:21:41,7882093 contentmanager.exe 1792 CloseFile C:\Windows\System32\WSHTCPIP.DLL SUCCESS
    1660459 12:21:41,7882727 contentmanager.exe 1792 RegCreateKey HKCU\Software\Classes\Local Settings SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660460 12:21:41,7883040 contentmanager.exe 1792 RegCreateKey HKCU\Software\Classes\Local Settings\RegMuiCache SUCCESS Desired Access: Query Value
    1660461 12:21:41,7883328 contentmanager.exe 1792 RegCloseKey HKCU\Software\Classes\Local Settings SUCCESS
    1660462 12:21:41,7883479 contentmanager.exe 1792 RegQueryValue HKCU\Software\Classes\Local Settings\RegMuiCache\LangID SUCCESS Type: REG_DWORD, Length: 4, Data: 1031
    1660463 12:21:41,7883674 contentmanager.exe 1792 RegCloseKey HKCU\Software\Classes\Local Settings\RegMuiCache SUCCESS
    1660464 12:21:41,7883940 contentmanager.exe 1792 RegCreateKey HKCU\Software\Classes\Local Settings SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660465 12:21:41,7884186 contentmanager.exe 1792 RegOpenKey HKCU\Software\Classes\Local Settings\RegMuiCache SUCCESS Desired Access: Query Value
    1660466 12:21:41,7884384 contentmanager.exe 1792 RegCloseKey HKCU\Software\Classes\Local Settings SUCCESS
    1660467 12:21:41,7884535 contentmanager.exe 1792 RegQueryValue HKCU\Software\Classes\Local Settings\RegMuiCache\60100,C:\Windows\System32\wshtcpip.dll SUCCESS Type: REG_SZ, Length: 42, Data: MSAFD-Tcpip [TCP/IP]
    1660468 12:21:41,7884730 contentmanager.exe 1792 RegCloseKey HKCU\Software\Classes\Local Settings\RegMuiCache SUCCESS
    1660469 12:21:41,7884971 contentmanager.exe 1792 RegQueryValue HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000001\ProtocolName SUCCESS Type: REG_SZ, Length: 86, Data: @%SystemRoot%\System32\wshtcpip.dll,-60100
    1660470 12:21:41,7886549 contentmanager.exe 1792 QueryOpen C:\Windows\System32\WSHTCPIP.DLL FAST IO DISALLOWED
    1660471 12:21:41,7887896 contentmanager.exe 1792 CreateFile C:\Windows\System32\WSHTCPIP.DLL SUCCESS Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened
    1660472 12:21:41,7888228 contentmanager.exe 1792 QueryBasicInformationFile C:\Windows\System32\WSHTCPIP.DLL SUCCESS CreationTime: 01.07.2008 19:40:42, LastAccessTime: 01.07.2008 19:40:42, LastWriteTime: 19.01.2008 09:37:11, ChangeTime: 23.08.2008 01:03:44, FileAttributes: A
    1660473 12:21:41,7888373 contentmanager.exe 1792 CloseFile C:\Windows\System32\WSHTCPIP.DLL SUCCESS
    1660475 12:21:41,7888921 contentmanager.exe 1792 RegCreateKey HKCU\Software\Classes\Local Settings SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660476 12:21:41,7889195 contentmanager.exe 1792 RegCreateKey HKCU\Software\Classes\Local Settings\RegMuiCache SUCCESS Desired Access: Query Value
    1660477 12:21:41,7889703 contentmanager.exe 1792 RegCloseKey HKCU\Software\Classes\Local Settings SUCCESS
    1660478 12:21:41,7889857 contentmanager.exe 1792 RegQueryValue HKCU\Software\Classes\Local Settings\RegMuiCache\LangID SUCCESS Type: REG_DWORD, Length: 4, Data: 1031
    1660479 12:21:41,7890030 contentmanager.exe 1792 RegCloseKey HKCU\Software\Classes\Local Settings\RegMuiCache SUCCESS
    1660480 12:21:41,7890279 contentmanager.exe 1792 RegCreateKey HKCU\Software\Classes\Local Settings SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660481 12:21:41,7890522 contentmanager.exe 1792 RegOpenKey HKCU\Software\Classes\Local Settings\RegMuiCache SUCCESS Desired Access: Query Value
    1660482 12:21:41,7890717 contentmanager.exe 1792 RegCloseKey HKCU\Software\Classes\Local Settings SUCCESS
    1660483 12:21:41,7890865 contentmanager.exe 1792 RegQueryValue HKCU\Software\Classes\Local Settings\RegMuiCache\60100,C:\Windows\System32\wshtcpip.dll SUCCESS Type: REG_SZ, Length: 42, Data: MSAFD-Tcpip [TCP/IP]
    1660484 12:21:41,7891038 contentmanager.exe 1792 RegCloseKey HKCU\Software\Classes\Local Settings\RegMuiCache SUCCESS
    1660485 12:21:41,7891228 contentmanager.exe 1792 RegCloseKey HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000001 SUCCESS
    1660486 12:21:41,7891430 contentmanager.exe 1792 RegOpenKey HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000002 SUCCESS Desired Access: Read
    1660487 12:21:41,7891695 contentmanager.exe 1792 RegQueryValue HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000002\PackedCatalogItem BUFFER OVERFLOW Length: 144
    1660488 12:21:41,7891927 contentmanager.exe 1792 RegQueryValue HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000002\PackedCatalogItem BUFFER OVERFLOW Length: 144
    1660489 12:21:41,7892092 contentmanager.exe 1792 RegQueryValue HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000002\PackedCatalogItem SUCCESS Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73
    1660490 12:21:41,7892287 contentmanager.exe 1792 RegQueryValue HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000002\ProtocolName SUCCESS Type: REG_SZ, Length: 86, Data: @%SystemRoot%\System32\wshtcpip.dll,-60101
    1660491 12:21:41,7893874 contentmanager.exe 1792 QueryOpen C:\Windows\System32\WSHTCPIP.DLL FAST IO DISALLOWED
    1660492 12:21:41,7895221 contentmanager.exe 1792 CreateFile C:\Windows\System32\WSHTCPIP.DLL SUCCESS Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened
    1660493 12:21:41,7895553 contentmanager.exe 1792 QueryBasicInformationFile C:\Windows\System32\WSHTCPIP.DLL SUCCESS CreationTime: 01.07.2008 19:40:42, LastAccessTime: 01.07.2008 19:40:42, LastWriteTime: 19.01.2008 09:37:11, ChangeTime: 23.08.2008 01:03:44, FileAttributes: A
    1660494 12:21:41,7895701 contentmanager.exe 1792 CloseFile C:\Windows\System32\WSHTCPIP.DLL SUCCESS
    1660496 12:21:41,7896249 contentmanager.exe 1792 RegCreateKey HKCU\Software\Classes\Local Settings SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660497 12:21:41,7896522 contentmanager.exe 1792 RegCreateKey HKCU\Software\Classes\Local Settings\RegMuiCache SUCCESS Desired Access: Query Value
    1660498 12:21:41,7896729 contentmanager.exe 1792 RegCloseKey HKCU\Software\Classes\Local Settings SUCCESS
    1660499 12:21:41,7896880 contentmanager.exe 1792 RegQueryValue HKCU\Software\Classes\Local Settings\RegMuiCache\LangID SUCCESS Type: REG_DWORD, Length: 4, Data: 1031
    1660500 12:21:41,7897048 contentmanager.exe 1792 RegCloseKey HKCU\Software\Classes\Local Settings\RegMuiCache SUCCESS
    1660501 12:21:41,7897296 contentmanager.exe 1792 RegCreateKey HKCU\Software\Classes\Local Settings SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660502 12:21:41,7897539 contentmanager.exe 1792 RegOpenKey HKCU\Software\Classes\Local Settings\RegMuiCache SUCCESS Desired Access: Query Value
    1660503 12:21:41,7897738 contentmanager.exe 1792 RegCloseKey HKCU\Software\Classes\Local Settings SUCCESS
    1660504 12:21:41,7897889 contentmanager.exe 1792 RegQueryValue HKCU\Software\Classes\Local Settings\RegMuiCache\60101,C:\Windows\System32\wshtcpip.dll SUCCESS Type: REG_SZ, Length: 42, Data: MSAFD-Tcpip [UDP/IP]
    1660505 12:21:41,7898081 contentmanager.exe 1792 RegCloseKey HKCU\Software\Classes\Local Settings\RegMuiCache SUCCESS
    1660506 12:21:41,7898271 contentmanager.exe 1792 RegQueryValue HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000002\ProtocolName SUCCESS Type: REG_SZ, Length: 86, Data: @%SystemRoot%\System32\wshtcpip.dll,-60101
    1660507 12:21:41,7900090 contentmanager.exe 1792 QueryOpen C:\Windows\System32\WSHTCPIP.DLL FAST IO DISALLOWED
    1660508 12:21:41,7901436 contentmanager.exe 1792 CreateFile C:\Windows\System32\WSHTCPIP.DLL SUCCESS Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened
    1660509 12:21:41,7901766 contentmanager.exe 1792 QueryBasicInformationFile C:\Windows\System32\WSHTCPIP.DLL SUCCESS CreationTime: 01.07.2008 19:40:42, LastAccessTime: 01.07.2008 19:40:42, LastWriteTime: 19.01.2008 09:37:11, ChangeTime: 23.08.2008 01:03:44, FileAttributes: A
    1660510 12:21:41,7901914 contentmanager.exe 1792 CloseFile C:\Windows\System32\WSHTCPIP.DLL SUCCESS
    1660512 12:21:41,7902459 contentmanager.exe 1792 RegCreateKey HKCU\Software\Classes\Local Settings SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660513 12:21:41,7902727 contentmanager.exe 1792 RegCreateKey HKCU\Software\Classes\Local Settings\RegMuiCache SUCCESS Desired Access: Query Value
    1660514 12:21:41,7902934 contentmanager.exe 1792 RegCloseKey HKCU\Software\Classes\Local Settings SUCCESS
    1660515 12:21:41,7903085 contentmanager.exe 1792 RegQueryValue HKCU\Software\Classes\Local Settings\RegMuiCache\LangID SUCCESS Type: REG_DWORD, Length: 4, Data: 1031
    1660516 12:21:41,7903258 contentmanager.exe 1792 RegCloseKey HKCU\Software\Classes\Local Settings\RegMuiCache SUCCESS
    1660517 12:21:41,7903498 contentmanager.exe 1792 RegCreateKey HKCU\Software\Classes\Local Settings SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660518 12:21:41,7903736 contentmanager.exe 1792 RegOpenKey HKCU\Software\Classes\Local Settings\RegMuiCache SUCCESS Desired Access: Query Value
    1660519 12:21:41,7903934 contentmanager.exe 1792 RegCloseKey HKCU\Software\Classes\Local Settings SUCCESS
    1660520 12:21:41,7904085 contentmanager.exe 1792 RegQueryValue HKCU\Software\Classes\Local Settings\RegMuiCache\60101,C:\Windows\System32\wshtcpip.dll SUCCESS Type: REG_SZ, Length: 42, Data: MSAFD-Tcpip [UDP/IP]
    1660521 12:21:41,7904261 contentmanager.exe 1792 RegCloseKey HKCU\Software\Classes\Local Settings\RegMuiCache SUCCESS
    1660522 12:21:41,7904451 contentmanager.exe 1792 RegCloseKey HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000002 SUCCESS
    1660523 12:21:41,7904649 contentmanager.exe 1792 RegOpenKey HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000003 SUCCESS Desired Access: Read
    1660524 12:21:41,7904923 contentmanager.exe 1792 RegQueryValue HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000003\PackedCatalogItem BUFFER OVERFLOW Length: 144
    1660525 12:21:41,7905146 contentmanager.exe 1792 RegQueryValue HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000003\PackedCatalogItem BUFFER OVERFLOW Length: 144
    1660526 12:21:41,7905317 contentmanager.exe 1792 RegQueryValue HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000003\PackedCatalogItem SUCCESS Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73
    1660527 12:21:41,7905518 contentmanager.exe 1792 RegQueryValue HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000003\ProtocolName SUCCESS Type: REG_SZ, Length: 86, Data: @%SystemRoot%\System32\wshtcpip.dll,-60102
    1660528 12:21:41,7907094 contentmanager.exe 1792 QueryOpen C:\Windows\System32\WSHTCPIP.DLL FAST IO DISALLOWED
    1660529 12:21:41,7908440 contentmanager.exe 1792 CreateFile C:\Windows\System32\WSHTCPIP.DLL SUCCESS Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened
    1660530 12:21:41,7908770 contentmanager.exe 1792 QueryBasicInformationFile C:\Windows\System32\WSHTCPIP.DLL SUCCESS CreationTime: 01.07.2008 19:40:42, LastAccessTime: 01.07.2008 19:40:42, LastWriteTime: 19.01.2008 09:37:11, ChangeTime: 23.08.2008 01:03:44, FileAttributes: A
    1660531 12:21:41,7909002 contentmanager.exe 1792 CloseFile C:\Windows\System32\WSHTCPIP.DLL SUCCESS
    1660533 12:21:41,7909549 contentmanager.exe 1792 RegCreateKey HKCU\Software\Classes\Local Settings SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660534 12:21:41,7909820 contentmanager.exe 1792 RegCreateKey HKCU\Software\Classes\Local Settings\RegMuiCache SUCCESS Desired Access: Query Value
    1660535 12:21:41,7910021 contentmanager.exe 1792 RegCloseKey HKCU\Software\Classes\Local Settings SUCCESS
    1660536 12:21:41,7910175 contentmanager.exe 1792 RegQueryValue HKCU\Software\Classes\Local Settings\RegMuiCache\LangID SUCCESS Type: REG_DWORD, Length: 4, Data: 1031
    1660537 12:21:41,7910348 contentmanager.exe 1792 RegCloseKey HKCU\Software\Classes\Local Settings\RegMuiCache SUCCESS
    1660538 12:21:41,7910591 contentmanager.exe 1792 RegCreateKey HKCU\Software\Classes\Local Settings SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660539 12:21:41,7910832 contentmanager.exe 1792 RegOpenKey HKCU\Software\Classes\Local Settings\RegMuiCache SUCCESS Desired Access: Query Value
    1660540 12:21:41,7911027 contentmanager.exe 1792 RegCloseKey HKCU\Software\Classes\Local Settings SUCCESS
    1660541 12:21:41,7911181 contentmanager.exe 1792 RegQueryValue HKCU\Software\Classes\Local Settings\RegMuiCache\60102,C:\Windows\System32\wshtcpip.dll SUCCESS Type: REG_SZ, Length: 42, Data: MSAFD-Tcpip [RAW/IP]
    1660542 12:21:41,7911376 contentmanager.exe 1792 RegCloseKey HKCU\Software\Classes\Local Settings\RegMuiCache SUCCESS
    1660543 12:21:41,7939687 contentmanager.exe 1792 RegQueryValue HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000003\ProtocolName SUCCESS Type: REG_SZ, Length: 86, Data: @%SystemRoot%\System32\wshtcpip.dll,-60102
    1660544 12:21:41,7941497 contentmanager.exe 1792 QueryOpen C:\Windows\System32\WSHTCPIP.DLL FAST IO DISALLOWED
    1660545 12:21:41,7942852 contentmanager.exe 1792 CreateFile C:\Windows\System32\WSHTCPIP.DLL SUCCESS Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened
    1660546 12:21:41,7943213 contentmanager.exe 1792 QueryBasicInformationFile C:\Windows\System32\WSHTCPIP.DLL SUCCESS CreationTime: 01.07.2008 19:40:42, LastAccessTime: 01.07.2008 19:40:42, LastWriteTime: 19.01.2008 09:37:11, ChangeTime: 23.08.2008 01:03:44, FileAttributes: A
    1660547 12:21:41,7943364 contentmanager.exe 1792 CloseFile C:\Windows\System32\WSHTCPIP.DLL SUCCESS
    1660549 12:21:41,7943931 contentmanager.exe 1792 RegCreateKey HKCU\Software\Classes\Local Settings SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660550 12:21:41,7944218 contentmanager.exe 1792 RegCreateKey HKCU\Software\Classes\Local Settings\RegMuiCache SUCCESS Desired Access: Query Value
    1660551 12:21:41,7944431 contentmanager.exe 1792 RegCloseKey HKCU\Software\Classes\Local Settings SUCCESS
    1660552 12:21:41,7944582 contentmanager.exe 1792 RegQueryValue HKCU\Software\Classes\Local Settings\RegMuiCache\LangID SUCCESS Type: REG_DWORD, Length: 4, Data: 1031
    1660553 12:21:41,7944752 contentmanager.exe 1792 RegCloseKey HKCU\Software\Classes\Local Settings\RegMuiCache SUCCESS
    1660554 12:21:41,7945009 contentmanager.exe 1792 RegCreateKey HKCU\Software\Classes\Local Settings SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660555 12:21:41,7945252 contentmanager.exe 1792 RegOpenKey HKCU\Software\Classes\Local Settings\RegMuiCache SUCCESS Desired Access: Query Value
    1660556 12:21:41,7945450 contentmanager.exe 1792 RegCloseKey HKCU\Software\Classes\Local Settings SUCCESS
    1660557 12:21:41,7945604 contentmanager.exe 1792 RegQueryValue HKCU\Software\Classes\Local Settings\RegMuiCache\60102,C:\Windows\System32\wshtcpip.dll SUCCESS Type: REG_SZ, Length: 42, Data: MSAFD-Tcpip [RAW/IP]
    1660558 12:21:41,7945780 contentmanager.exe 1792 RegCloseKey HKCU\Software\Classes\Local Settings\RegMuiCache SUCCESS
    1660559 12:21:41,7945978 contentmanager.exe 1792 RegCloseKey HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000003 SUCCESS
    1660560 12:21:41,7946185 contentmanager.exe 1792 RegOpenKey HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000004 SUCCESS Desired Access: Read
    1660561 12:21:41,7946470 contentmanager.exe 1792 RegQueryValue HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000004\PackedCatalogItem BUFFER OVERFLOW Length: 144
    1660562 12:21:41,7946705 contentmanager.exe 1792 RegQueryValue HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000004\PackedCatalogItem BUFFER OVERFLOW Length: 144
    1660563 12:21:41,7946872 contentmanager.exe 1792 RegQueryValue HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000004\PackedCatalogItem SUCCESS Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73
    1660564 12:21:41,7947071 contentmanager.exe 1792 RegQueryValue HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000004\ProtocolName SUCCESS Type: REG_SZ, Length: 82, Data: @%SystemRoot%\System32\wship6.dll,-60100
    1660565 12:21:41,7948727 contentmanager.exe 1792 QueryOpen C:\Windows\System32\wship6.dll FAST IO DISALLOWED
    1660566 12:21:41,7950077 contentmanager.exe 1792 CreateFile C:\Windows\System32\wship6.dll SUCCESS Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened
    1660567 12:21:41,7950434 contentmanager.exe 1792 QueryBasicInformationFile C:\Windows\System32\wship6.dll SUCCESS CreationTime: 01.07.2008 19:40:42, LastAccessTime: 01.07.2008 19:40:42, LastWriteTime: 19.01.2008 09:37:11, ChangeTime: 23.08.2008 01:03:17, FileAttributes: A
    1660568 12:21:41,7950585 contentmanager.exe 1792 CloseFile C:\Windows\System32\wship6.dll SUCCESS
    1660570 12:21:41,7951133 contentmanager.exe 1792 RegCreateKey HKCU\Software\Classes\Local Settings SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660571 12:21:41,7951404 contentmanager.exe 1792 RegCreateKey HKCU\Software\Classes\Local Settings\RegMuiCache SUCCESS Desired Access: Query Value
    1660572 12:21:41,7951610 contentmanager.exe 1792 RegCloseKey HKCU\Software\Classes\Local Settings SUCCESS
    1660573 12:21:41,7951761 contentmanager.exe 1792 RegQueryValue HKCU\Software\Classes\Local Settings\RegMuiCache\LangID SUCCESS Type: REG_DWORD, Length: 4, Data: 1031
    1660574 12:21:41,7951932 contentmanager.exe 1792 RegCloseKey HKCU\Software\Classes\Local Settings\RegMuiCache SUCCESS
    1660575 12:21:41,7952178 contentmanager.exe 1792 RegCreateKey HKCU\Software\Classes\Local Settings SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660576 12:21:41,7952418 contentmanager.exe 1792 RegOpenKey HKCU\Software\Classes\Local Settings\RegMuiCache SUCCESS Desired Access: Query Value
    1660577 12:21:41,7952613 contentmanager.exe 1792 RegCloseKey HKCU\Software\Classes\Local Settings SUCCESS
    1660578 12:21:41,7952764 contentmanager.exe 1792 RegQueryValue HKCU\Software\Classes\Local Settings\RegMuiCache\60100,C:\Windows\System32\wship6.dll SUCCESS Type: REG_SZ, Length: 46, Data: MSAFD-Tcpip [TCP/IPv6]
    1660579 12:21:41,7952960 contentmanager.exe 1792 RegCloseKey HKCU\Software\Classes\Local Settings\RegMuiCache SUCCESS
    1660580 12:21:41,7953147 contentmanager.exe 1792 RegQueryValue HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000004\ProtocolName SUCCESS Type: REG_SZ, Length: 82, Data: @%SystemRoot%\System32\wship6.dll,-60100
    1660581 12:21:41,7954695 contentmanager.exe 1792 QueryOpen C:\Windows\System32\wship6.dll FAST IO DISALLOWED
    1660582 12:21:41,7956036 contentmanager.exe 1792 CreateFile C:\Windows\System32\wship6.dll SUCCESS Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened
    1660583 12:21:41,7956365 contentmanager.exe 1792 QueryBasicInformationFile C:\Windows\System32\wship6.dll SUCCESS CreationTime: 01.07.2008 19:40:42, LastAccessTime: 01.07.2008 19:40:42, LastWriteTime: 19.01.2008 09:37:11, ChangeTime: 23.08.2008 01:03:17, FileAttributes: A
    1660584 12:21:41,7956510 contentmanager.exe 1792 CloseFile C:\Windows\System32\wship6.dll SUCCESS
    1660586 12:21:41,7957055 contentmanager.exe 1792 RegCreateKey HKCU\Software\Classes\Local Settings SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660587 12:21:41,7957326 contentmanager.exe 1792 RegCreateKey HKCU\Software\Classes\Local Settings\RegMuiCache SUCCESS Desired Access: Query Value
    1660588 12:21:41,7957533 contentmanager.exe 1792 RegCloseKey HKCU\Software\Classes\Local Settings SUCCESS
    1660589 12:21:41,7957843 contentmanager.exe 1792 RegQueryValue HKCU\Software\Classes\Local Settings\RegMuiCache\LangID SUCCESS Type: REG_DWORD, Length: 4, Data: 1031
    1660590 12:21:41,7958025 contentmanager.exe 1792 RegCloseKey HKCU\Software\Classes\Local Settings\RegMuiCache SUCCESS
    1660591 12:21:41,7958282 contentmanager.exe 1792 RegCreateKey HKCU\Software\Classes\Local Settings SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660592 12:21:41,7958528 contentmanager.exe 1792 RegOpenKey HKCU\Software\Classes\Local Settings\RegMuiCache SUCCESS Desired Access: Query Value
    1660593 12:21:41,7958723 contentmanager.exe 1792 RegCloseKey HKCU\Software\Classes\Local Settings SUCCESS
    1660594 12:21:41,7958871 contentmanager.exe 1792 RegQueryValue HKCU\Software\Classes\Local Settings\RegMuiCache\60100,C:\Windows\System32\wship6.dll SUCCESS Type: REG_SZ, Length: 46, Data: MSAFD-Tcpip [TCP/IPv6]
    1660595 12:21:41,7959047 contentmanager.exe 1792 RegCloseKey HKCU\Software\Classes\Local Settings\RegMuiCache SUCCESS
    1660596 12:21:41,7959234 contentmanager.exe 1792 RegCloseKey HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000004 SUCCESS
    1660597 12:21:41,7959433 contentmanager.exe 1792 RegOpenKey HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000005 SUCCESS Desired Access: Read
    1660598 12:21:41,7959704 contentmanager.exe 1792 RegQueryValue HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000005\PackedCatalogItem BUFFER OVERFLOW Length: 144
    1660599 12:21:41,7959936 contentmanager.exe 1792 RegQueryValue HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000005\PackedCatalogItem BUFFER OVERFLOW Length: 144
    1660600 12:21:41,7960103 contentmanager.exe 1792 RegQueryValue HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000005\PackedCatalogItem SUCCESS Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73
    1660601 12:21:41,7960301 contentmanager.exe 1792 RegQueryValue HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000005\ProtocolName SUCCESS Type: REG_SZ, Length: 82, Data: @%SystemRoot%\System32\wship6.dll,-60101
    1660602 12:21:41,7961863 contentmanager.exe 1792 QueryOpen C:\Windows\System32\wship6.dll FAST IO DISALLOWED
    1660603 12:21:41,7963201 contentmanager.exe 1792 CreateFile C:\Windows\System32\wship6.dll SUCCESS Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened
    1660604 12:21:41,7963531 contentmanager.exe 1792 QueryBasicInformationFile C:\Windows\System32\wship6.dll SUCCESS CreationTime: 01.07.2008 19:40:42, LastAccessTime: 01.07.2008 19:40:42, LastWriteTime: 19.01.2008 09:37:11, ChangeTime: 23.08.2008 01:03:17, FileAttributes: A
    1660605 12:21:41,7963676 contentmanager.exe 1792 CloseFile C:\Windows\System32\wship6.dll SUCCESS
    1660607 12:21:41,7964224 contentmanager.exe 1792 RegCreateKey HKCU\Software\Classes\Local Settings SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660608 12:21:41,7964498 contentmanager.exe 1792 RegCreateKey HKCU\Software\Classes\Local Settings\RegMuiCache SUCCESS Desired Access: Query Value
    1660609 12:21:41,7964704 contentmanager.exe 1792 RegCloseKey HKCU\Software\Classes\Local Settings SUCCESS
    1660610 12:21:41,7964852 contentmanager.exe 1792 RegQueryValue HKCU\Software\Classes\Local Settings\RegMuiCache\LangID SUCCESS Type: REG_DWORD, Length: 4, Data: 1031
    1660611 12:21:41,7965028 contentmanager.exe 1792 RegCloseKey HKCU\Software\Classes\Local Settings\RegMuiCache SUCCESS
    1660612 12:21:41,7965277 contentmanager.exe 1792 RegCreateKey HKCU\Software\Classes\Local Settings SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660613 12:21:41,7965514 contentmanager.exe 1792 RegOpenKey HKCU\Software\Classes\Local Settings\RegMuiCache SUCCESS Desired Access: Query Value
    1660614 12:21:41,7965710 contentmanager.exe 1792 RegCloseKey HKCU\Software\Classes\Local Settings SUCCESS
    1660615 12:21:41,7965866 contentmanager.exe 1792 RegQueryValue HKCU\Software\Classes\Local Settings\RegMuiCache\60101,C:\Windows\System32\wship6.dll SUCCESS Type: REG_SZ, Length: 46, Data: MSAFD-Tcpip [UDP/IPv6]
    1660616 12:21:41,7966059 contentmanager.exe 1792 RegCloseKey HKCU\Software\Classes\Local Settings\RegMuiCache SUCCESS
    1660617 12:21:41,7966244 contentmanager.exe 1792 RegQueryValue HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000005\ProtocolName SUCCESS Type: REG_SZ, Length: 82, Data: @%SystemRoot%\System32\wship6.dll,-60101
    1660618 12:21:41,7972035 contentmanager.exe 1792 QueryOpen C:\Windows\System32\wship6.dll FAST IO DISALLOWED
    1660619 12:21:41,7973437 contentmanager.exe 1792 CreateFile C:\Windows\System32\wship6.dll SUCCESS Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened
    1660620 12:21:41,7973781 contentmanager.exe 1792 QueryBasicInformationFile C:\Windows\System32\wship6.dll SUCCESS CreationTime: 01.07.2008 19:40:42, LastAccessTime: 01.07.2008 19:40:42, LastWriteTime: 19.01.2008 09:37:11, ChangeTime: 23.08.2008 01:03:17, FileAttributes: A
    1660621 12:21:41,7973926 contentmanager.exe 1792 CloseFile C:\Windows\System32\wship6.dll SUCCESS
    1660623 12:21:41,7974493 contentmanager.exe 1792 RegCreateKey HKCU\Software\Classes\Local Settings SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660624 12:21:41,7974773 contentmanager.exe 1792 RegCreateKey HKCU\Software\Classes\Local Settings\RegMuiCache SUCCESS Desired Access: Query Value
    1660625 12:21:41,7974979 contentmanager.exe 1792 RegCloseKey HKCU\Software\Classes\Local Settings SUCCESS
    1660626 12:21:41,7975130 contentmanager.exe 1792 RegQueryValue HKCU\Software\Classes\Local Settings\RegMuiCache\LangID SUCCESS Type: REG_DWORD, Length: 4, Data: 1031
    1660627 12:21:41,7975303 contentmanager.exe 1792 RegCloseKey HKCU\Software\Classes\Local Settings\RegMuiCache SUCCESS
    1660628 12:21:41,7975560 contentmanager.exe 1792 RegCreateKey HKCU\Software\Classes\Local Settings SUCCESS Desired Access: Maximum Allowed, Granted Access: All Access
    1660629 12:21:41,7975801 contentmanager.exe 1792 RegOpenKey HKCU\Software\Classes\Local Settings\RegMuiCache SUCCESS Desired Access: Query Value
    1660630 12:21:41,7975999 contentmanager.exe 1792 RegCloseKey HKCU\Software\Classes\Local Settings SUCCESS
    1660631 12:21:41,7976150 contentmanager.exe 1792 RegQueryValue HKCU\Software\Classes\Local Settings\RegMuiCache\60101,C:\Windows\System32\wship6.dll SUCCESS Type: REG_SZ, Length: 46, Data: MSAFD-Tcpip [UDP/IPv6]
    1660632 12:21:41,7976326 contentmanager.exe 1792 RegCloseKey HKCU\Software\Classes\Local Settings\RegMuiCache SUCCESS
    1660633 12:21:41,7976516 contentmanager.exe 1792 RegCloseKey HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000005 SUCCESS
    1660634 12:21:41,7976720 contentmanager.exe 1792 RegOpenKey HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000006 SUCCESS Desired Access: Read
    1660635 12:21:41,7976996 contentmanager.exe 1792 RegQueryValue HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000006\PackedCatalogItem BUFFER OVERFLOW Length: 144

  • Aus reiner Neugierde: Hast Du Dein Problem schon gelöst?


    Ansonsten probiere einmal die TRS-Installation auf einem anderen PC und/oder auf ein frisch und sauber installiertes Vista. :winking_face:

  • Hallo jofi,


    das Problem ist noch immer nicht gelöst.


    Und ich werde sicher nicht den PC neu formatieren und alles neu installieren. Nur weil ein Spiel nicht läuft lösche ich doch nicht alle Daten. Ich warte weiterhin auf das ServicePack 1, was ja eigentlich erscheinen sollte. Eigentlich war man ja schon bei der Übersetzung. Ich denke nicht dass bei der Installation seitenweise Texte sind die übersetzt werden müssen, von daher verstehe ich nicht was da so lange dauert.


    Aber mit uns Kunden kann man es ja machen...

  • Zitat

    von daher verstehe ich nicht was da so lange dauert.


    Ja, dass du nicht alles verstehst, kann man sehen - nichts fuer ungut! Aber dann unterlasse auch, ueber das, was du nicht verstehst, Kommentare zu verfassen. Danke :winking_face:


    Nur so ein Grundanstoss: ueberlege einfach einmal, auf wievielen PC (ob mit Vista oder XP) TRS laueft, ausgerechnet auf dem Deinen nicht... woran kann das liegen, wenn du nicht gerade eine defekte Installations-DVD erhalten hast?


    Zitat

    Nur weil ein Spiel nicht läuft lösche ich doch nicht alle Daten.


    Soll das heissen, dass Dein PC nur ein Laufwerk auf der Festplatte hat, auf dem sich alles tummelt, also Daten, Programme und System huebsch durcheinander? Mahlzeit...


    WIR ALLE muessen jeden Tag viel lernen, manche noch etwas mehr...vor allem, wenn wir neuen Grund betreten....

  • Zitat


    von daher verstehe ich nicht was da so lange dauert.


    Zitat

    Brummel schrieb:
    Ja, dass du nicht alles verstehst, kann man sehen - nichts fuer ungut! Aber dann unterlasse auch, ueber das, was du nicht verstehst, Kommentare zu verfassen. Danke :winking_face:


    Fakt ist, dass seit April die TRS2007 im Handel durch die TRS2007 SE ersetzt werden sollte.
    Fakt ist auch, dass ich mir im Juni oder Juli TRS2007 (ohne SE gekauft habe, damals wußte ich noch nichts von einer SE!) gekauft habe.


    Fakt ist weiterhin, dass in der SE bereits das SP1 enthalten ist. Und jetzt soll meine Behauptung, dass die Übersetzung ins Deutsche als Standalone keine 3 Monate dauern kann, heißen, dass ich keine Ahnung habe?


    Wenn du helfen möchtest, danke, gerne, wenn du motzen willst geh woanders hin. Ansonsten verbitte ich mir solche Bemerkungen.



    Zitat

    Brummel schrieb:
    Nur so ein Grundanstoss: ueberlege einfach einmal, auf wievielen PC (ob mit Vista oder XP) TRS laueft, ausgerechnet auf dem Deinen nicht... woran kann das liegen, wenn du nicht gerade eine defekte Installations-DVD erhalten hast?


    Deshalb bin ich hier, um das herauszufinden.



    Zitat

    Brummel schrieb
    Soll das heissen, dass Dein PC nur ein Laufwerk auf der Festplatte hat, auf dem sich alles tummelt, also Daten, Programme und System huebsch durcheinander? Mahlzeit...


    Woraus schliesst du aus meiner Anmerkung, dass ich wegen einem Spiel meine Daten nicht löschen will, dass alles auf einer Festplatte ist? Es gibt auch mehrere Festplatten, JA! Es ist keine Lüge! Genauer hab ich 1 Systemplatte, 1 Programmplatte und 1 Spieleplatte! Und ich werde wegen eines nicht funktionierendem Spieles nicht die ganzen Daten löschen, die auf dieser Festplatte sind. Jetzt verstanden? Aber wie war dein letzter Kommentar?


    Zitat

    Brummel schrieb:
    WIR ALLE muessen jeden Tag viel lernen, manche noch etwas mehr...vor allem, wenn wir neuen Grund betreten....


    Also, dann lern noch ein bisschen.

  • Brrrrrrrrr, langsam mit den jungen Pferden, Leute ! :winking_face:



    Sachte, ganz sachte........und immer schön geschmeidig bleiben.


    Alles klar ? Na dann....

  • Ahoi


    Zitat

    sva747 schrieb:
    ...wenn du motzen willst geh woanders hin...


    Fakt ist: Nimm Dir das mal selbst zu Herzen.




    Zitat

    sva747 schrieb:
    ...Fakt ist weiterhin, dass in der SE bereits das SP1 enthalten ist. Und jetzt soll meine Behauptung, dass die Übersetzung ins Deutsche als Standalone keine 3 Monate dauern kann, heißen, dass ich keine Ahnung habe?...


    Vielleicht nicht.
    Sicher ist nur: Kommt Zeit, kommt SP.
    Das wird Dein Problem aber nicht beseitigen.
    Da bin ich mir sicher.



    Gruß
    Edgar

    Einmal editiert, zuletzt von Edgar_Wood ()

  • nein, SVA747, du verstehst gar nichts von dem, was ich schrieb und tust mir (nicht nur deswegen) leid! Denn wie E.Wood schon schrieb, wird kein SP dieser Welt dir helfen. Und jetzt laeufst du am besten erst einmal um den Block, um nicht wieder solche eine aggressive und unpassende Antwort zu geben!


    Wer soll dir denn da noch helfen? Hallo?
    Auf eine Deiner merkwuerdigen Aeusserungen: ob ein Datentraeger (hier die Installations-DVD) defekt ist, kann man pruefen...aber jetzt such dir jemand anderen, der dir sagt wie und womit! Du weisst schon...wie man in den Wald....


    Und was glaubst du eigentlich, mit wem du hier so reden kannst? Solange man das nicht weiss, sollte man besser leiser treten....

  • Mein Gott ...Wer wieder Wem leid tut...man kann es ja nicht mehr lesen.:-o
    Und wohin man seine Daten speichert das bleibt wohl Jeden selber überlassen.Oder steht da auf der Verpackung ..Trainz ist nicht für Laufwerk C:/ geeignet..Wohl kaum.;-)


    @sva747
    Halte dich an Edgar Wood, der hilft Dir weiter und Er hat auch den Sachverstand dazu.


    greets ice