lop entfernen? + O4 - HKCU\..\Run: [Microsoft DirectX] rasmngr.exe |
||
---|---|---|
#0
| ||
16.09.2005, 23:01
Ehrenmitglied
Beiträge: 29434 |
||
|
||
16.09.2005, 23:04
Member
Themenstarter Beiträge: 43 |
#47
uchuuuuuuuuuu freu freu,
dich zu bodenknuddel und dich heute abend in mein nachtgebet positiv erwähne nein im ernst ich danke dir dafür das du deine freizeit opferst um leuten wie mir aus der patsche zu helfen, das ist in der heutigen gesellschaft ja nicht gerade normal (zumindest nicht wenn mann/frau dafür nicht bares auf die hand bekommt) also noch mal herzlichen dank. PS: ich hoffe das wir uns sobald nicht wiederlesen (ich denke du verstehst wie ich das meine *gg*) liebe grüße mela |
|
|
||
28.09.2005, 18:09
...neu hier
Beiträge: 3 |
#48
hatte auch das lop ding auf meinen pc und habe msgplus deinstalliert .. möchte gern wissen ob sonst noch datein dort sind die ich löschen sollte :
Logfile of HijackThis v1.99.1 Scan saved at 18:11:15, on 28.09.2005 Platform: Windows 2000 (WinNT 5.00.2195) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106) Running processes: D:\WINNT\System32\smss.exe D:\WINNT\system32\winlogon.exe D:\WINNT\system32\services.exe D:\WINNT\system32\lsass.exe D:\WINNT\system32\svchost.exe D:\WINNT\System32\svchost.exe D:\WINNT\system32\spoolsv.exe D:\Programme\AVPersonal\AVWUPSRV.EXE D:\WINNT\System32\nvsvc32.exe D:\WINNT\system32\regsvc.exe D:\WINNT\system32\MSTask.exe D:\WINNT\system32\stisvc.exe D:\WINNT\System32\Tablet.exe D:\WINNT\System32\WBEM\WinMgmt.exe D:\WINNT\System32\mspmspsv.exe D:\WINNT\Explorer.exe D:\WINNT\System32\RunDll32.exe D:\WINNT\loadqm.exe D:\Programme\Gemeinsame Dateien\Real\Update_OB\evntsvc.exe D:\WINNT\mHotkey.exe D:\Programme\MSN Messenger\msnmsgr.exe C:\Program Files\interMute\SpySubtract\SpySub.exe D:\WINNT\system32\WTablet\TabUserW.exe D:\Programme\Ulead Systems\Ulead Photo Express 3.0 SE\CalCheck.exe D:\Dokumente und Einstellungen\Administrator\Eigene Dateien\hijackthis\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.de/ O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:\Programme\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - D:\PROGRA~1\SPYBOT~1\SDHelper.dll (file missing) O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - d:\programme\google\googletoolbar1.dll O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - D:\WINNT\System32\msdxm.ocx O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - d:\programme\google\googletoolbar1.dll O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE D:\WINNT\System32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [LoadQM] loadqm.exe O4 - HKLM\..\Run: [TkBellExe] D:\Programme\Gemeinsame Dateien\Real\Update_OB\evntsvc.exe -osboot O4 - HKLM\..\Run: [NeroFilterCheck] D:\WINNT\system32\NeroCheck.exe O4 - HKLM\..\Run: [CHotkey] mHotkey.exe O4 - HKLM\..\Run: [QuickTime Task] "D:\Programme\QuickTime\qttask.exe" -atboottime O4 - HKCU\..\Run: [msnmsgr] "D:\Programme\MSN Messenger\msnmsgr.exe" /background O4 - Global Startup: Adobe Gamma Loader.lnk = D:\Programme\Gemeinsame Dateien\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Global Startup: SpySubtract.lnk = C:\Program Files\interMute\SpySubtract\SpySub.exe O4 - Global Startup: TabUserW.exe.lnk = D:\WINNT\system32\WTablet\TabUserW.exe O4 - Global Startup: Ulead Photo Express SE Calendar Checker.lnk = D:\Programme\Ulead Systems\Ulead Photo Express 3.0 SE\CalCheck.exe O8 - Extra context menu item: &Google-Suche - res://D:\Programme\Google\GoogleToolbar1.dll/cmsearch.html O8 - Extra context menu item: &Ins Deutsche übersetzen - res://D:\Programme\Google\GoogleToolbar1.dll/cmwordtrans.html O8 - Extra context menu item: Im Cache gespeicherte Seite - res://D:\Programme\Google\GoogleToolbar1.dll/cmcache.html O8 - Extra context menu item: Verweisseiten - res://D:\Programme\Google\GoogleToolbar1.dll/cmbacklinks.html O8 - Extra context menu item: Ähnliche Seiten - res://D:\Programme\Google\GoogleToolbar1.dll/cmsimilar.html O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:\WINNT\System32\msjava.dll O9 - Extra 'Tools' menuitem: Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:\WINNT\System32\msjava.dll O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - D:\Programme\AIM95\aim.exe O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - D:\Programme\ICQLite\ICQLite.exe O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - D:\Programme\ICQLite\ICQLite.exe O12 - Plugin for .spop: D:\Programme\Internet Explorer\Plugins\NPDocBox.dll O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab O16 - DPF: {15AD6789-CDB4-47E1-A9DA-992EE8E6BAD6} - http://static.35mb.com/applet/applet_l.cab O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/msnmessengersetupdownloader.cab O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{4951500B-B1E9-4DF1-B996-2A43D9ABD1AE}: NameServer = 192.168.123.254 O23 - Service: AntiVir Service (AntiVirService) - H+BEDV Datentechnik GmbH - D:\PROGRAMME\AVPERSONAL\AVGUARD.EXE O23 - Service: AntiVir Update (AVWUpSrv) - H+BEDV Datentechnik GmbH, Germany - D:\Programme\AVPersonal\AVWUPSRV.EXE O23 - Service: Verwaltungsdienst für die Verwaltung logischer Datenträger (dmadmin) - VERITAS Software Corp. - D:\WINNT\System32\dmadmin.exe O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - D:\WINNT\System32\nvsvc32.exe O23 - Service: TabletService - Wacom Technology, Corp. - D:\WINNT\System32\Tablet.exe danke schonmal im vorraus (: Dieser Beitrag wurde am 28.09.2005 um 18:15 Uhr von Miyu editiert.
|
|
|
||
28.09.2005, 19:26
Ehrenmitglied
Beiträge: 29434 |
#49
Hallo@Miyu
scanne mit escan laut Anweisungen und poste, was angezeigt wird http://virus-protect.org/escan.html __________ MfG Sabina rund um die PC-Sicherheit |
|
|
||
28.09.2005, 20:27
...neu hier
Beiträge: 3 |
#50
--------------------------------------------------
-------------------- INFECTED -------------------- -------------------------------------------------- 1: Wed Sep 28 19:40:19 2005 => System found infected with websearch toolbar Spyware/Adware ({15ad6789-cdb4-47e1-a9da-992ee8e6bad6})! Action taken: No Action Taken. 2: Wed Sep 28 19:40:19 2005 => System found infected with istbar Spyware/Adware ({10e42047-deb9-4535-a118-b3f6ec39b807})! Action taken: No Action Taken. 3: Wed Sep 28 19:40:19 2005 => System found infected with websearch toolbar Spyware/Adware ({15ad6789-cdb4-47e1-a9da-992ee8e6bad6})! Action taken: No Action Taken. 4: Wed Sep 28 19:40:21 2005 => Offending file found: D:\WINNT\DOWNLO~1\mediaaccx.dll 5: Wed Sep 28 19:40:21 2005 => System found infected with media pass Spyware/Adware (mediaaccx.dll)! Action taken: No Action Taken. 6: Wed Sep 28 19:40:24 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Anwendungsdaten\real\realone player\datacache\channels\channels.ini 7: Wed Sep 28 19:40:24 2005 => System found infected with clipgenie Spyware/Adware (channels.ini)! Action taken: No Action Taken. 8: Wed Sep 28 19:40:24 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Anwendungsdaten\real\realone player\datacache\gpfeat\devicesoffline\index.html 9: Wed Sep 28 19:40:24 2005 => System found infected with easysearch Spyware/Adware (index.html)! Action taken: No Action Taken. 10: Wed Sep 28 19:40:24 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Anwendungsdaten\real\realone player\datacache\login\index.html 11: Wed Sep 28 19:40:24 2005 => System found infected with easysearch Spyware/Adware (index.html)! Action taken: No Action Taken. 12: Wed Sep 28 19:40:26 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Eigene Dateien\meine empfangenen dateien\sage firewall\inject.dll 13: Wed Sep 28 19:40:26 2005 => System found infected with all-in-one spy Spyware/Adware (inject.dll)! Action taken: No Action Taken. 14: Wed Sep 28 19:40:29 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\temp\temporary internet files\content.ie5\b8hg4pk0\ads[1].htm 15: Wed Sep 28 19:40:29 2005 => System found infected with whenu.savenow Spyware/Adware (ads[1].htm)! Action taken: No Action Taken. 16: Wed Sep 28 19:40:29 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\temp\temporary internet files\content.ie5\b8hg4pk0\ads[2].htm 17: Wed Sep 28 19:40:29 2005 => System found infected with whenu.savenow Spyware/Adware (ads[2].htm)! Action taken: No Action Taken. 18: Wed Sep 28 19:40:29 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\temp\temporary internet files\content.ie5\b8hg4pk0\show_ads[2].js 19: Wed Sep 28 19:40:29 2005 => System found infected with whenu.savenow Spyware/Adware (show_ads[2].js)! Action taken: No Action Taken. 20: Wed Sep 28 19:40:29 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\temp\temporary internet files\content.ie5\d6jjiinr\ads[1].htm 21: Wed Sep 28 19:40:29 2005 => System found infected with whenu.savenow Spyware/Adware (ads[1].htm)! Action taken: No Action Taken. 22: Wed Sep 28 19:40:29 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\temp\temporary internet files\content.ie5\d6jjiinr\ads[2].htm 23: Wed Sep 28 19:40:29 2005 => System found infected with whenu.savenow Spyware/Adware (ads[2].htm)! Action taken: No Action Taken. 24: Wed Sep 28 19:40:29 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\temp\temporary internet files\content.ie5\k6n5q5yy\ads[1].htm 25: Wed Sep 28 19:40:29 2005 => System found infected with whenu.savenow Spyware/Adware (ads[1].htm)! Action taken: No Action Taken. 26: Wed Sep 28 19:40:29 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\temp\temporary internet files\content.ie5\k6n5q5yy\ads[2].htm 27: Wed Sep 28 19:40:29 2005 => System found infected with whenu.savenow Spyware/Adware (ads[2].htm)! Action taken: No Action Taken. 28: Wed Sep 28 19:40:29 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\temp\temporary internet files\content.ie5\k6n5q5yy\formie[1].css 29: Wed Sep 28 19:40:29 2005 => System found infected with whenu.savenow Spyware/Adware (formie[1].css)! Action taken: No Action Taken. 30: Wed Sep 28 19:40:29 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\temp\temporary internet files\content.ie5\kz1lhajz\ads[1].htm 31: Wed Sep 28 19:40:29 2005 => System found infected with whenu.savenow Spyware/Adware (ads[1].htm)! Action taken: No Action Taken. 32: Wed Sep 28 19:40:29 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\temp\temporary internet files\content.ie5\kz1lhajz\ads[2].htm 33: Wed Sep 28 19:40:29 2005 => System found infected with whenu.savenow Spyware/Adware (ads[2].htm)! Action taken: No Action Taken. 34: Wed Sep 28 19:40:29 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\temporary internet files\content.ie5\0t2bwl6n\ads[2].htm 35: Wed Sep 28 19:40:29 2005 => System found infected with whenu.savenow Spyware/Adware (ads[2].htm)! Action taken: No Action Taken. 36: Wed Sep 28 19:40:29 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\temporary internet files\content.ie5\53bvtt46\ads[1].htm 37: Wed Sep 28 19:40:29 2005 => System found infected with whenu.savenow Spyware/Adware (ads[1].htm)! Action taken: No Action Taken. 38: Wed Sep 28 19:40:29 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\temporary internet files\content.ie5\53bvtt46\ads[2].htm 39: Wed Sep 28 19:40:29 2005 => System found infected with whenu.savenow Spyware/Adware (ads[2].htm)! Action taken: No Action Taken. 40: Wed Sep 28 19:40:30 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\temporary internet files\content.ie5\53bvtt46\show_ads[2].js 41: Wed Sep 28 19:40:30 2005 => System found infected with whenu.savenow Spyware/Adware (show_ads[2].js)! Action taken: No Action Taken. 42: Wed Sep 28 19:40:30 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\temporary internet files\content.ie5\c5efwti7\ads[1].htm 43: Wed Sep 28 19:40:30 2005 => System found infected with whenu.savenow Spyware/Adware (ads[1].htm)! Action taken: No Action Taken. 44: Wed Sep 28 19:40:30 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\temporary internet files\content.ie5\c5efwti7\ads[2].htm 45: Wed Sep 28 19:40:30 2005 => System found infected with whenu.savenow Spyware/Adware (ads[2].htm)! Action taken: No Action Taken. 46: Wed Sep 28 19:40:30 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\temporary internet files\content.ie5\c5efwti7\blank[1].htm 47: Wed Sep 28 19:40:30 2005 => System found infected with whenu.savenow Spyware/Adware (blank[1].htm)! Action taken: No Action Taken. 48: Wed Sep 28 19:40:30 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\temporary internet files\content.ie5\fig3nh0p\ads[1].htm 49: Wed Sep 28 19:40:30 2005 => System found infected with whenu.savenow Spyware/Adware (ads[1].htm)! Action taken: No Action Taken. 50: Wed Sep 28 19:40:30 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\temporary internet files\content.ie5\fig3nh0p\ads[2].htm 51: Wed Sep 28 19:40:30 2005 => System found infected with whenu.savenow Spyware/Adware (ads[2].htm)! Action taken: No Action Taken. 52: Wed Sep 28 19:40:30 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\temporary internet files\content.ie5\fig3nh0p\formie[1].css 53: Wed Sep 28 19:40:30 2005 => System found infected with whenu.savenow Spyware/Adware (formie[1].css)! Action taken: No Action Taken. 54: Wed Sep 28 19:40:31 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\temporary internet files\content.ie5\fig3nh0p\show_ads[2].js 55: Wed Sep 28 19:40:31 2005 => System found infected with whenu.savenow Spyware/Adware (show_ads[2].js)! Action taken: No Action Taken. 56: Wed Sep 28 19:40:31 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\temporary internet files\content.ie5\ulh6fetg\ads[1].htm 57: Wed Sep 28 19:40:31 2005 => System found infected with whenu.savenow Spyware/Adware (ads[1].htm)! Action taken: No Action Taken. 58: Wed Sep 28 19:40:31 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\temporary internet files\content.ie5\ulh6fetg\ads[2].htm 59: Wed Sep 28 19:40:31 2005 => System found infected with whenu.savenow Spyware/Adware (ads[2].htm)! Action taken: No Action Taken. 60: Wed Sep 28 19:40:31 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\temporary internet files\content.ie5\ulh6fetg\blank[1].htm 61: Wed Sep 28 19:40:31 2005 => System found infected with whenu.savenow Spyware/Adware (blank[1].htm)! Action taken: No Action Taken. 62: Wed Sep 28 19:40:31 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\temporary internet files\content.ie5\w5m7sxe7\ads[1].htm 63: Wed Sep 28 19:40:31 2005 => System found infected with whenu.savenow Spyware/Adware (ads[1].htm)! Action taken: No Action Taken. 64: Wed Sep 28 19:40:32 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\temporary internet files\content.ie5\wpizwxer\index[1].html 65: Wed Sep 28 19:40:32 2005 => System found infected with whenu.savenow Spyware/Adware (index[1].html)! Action taken: No Action Taken. 66: Wed Sep 28 19:40:32 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temporary Internet Files\content.ie5\0t2bwl6n\ads[2].htm 67: Wed Sep 28 19:40:32 2005 => System found infected with whenu.savenow Spyware/Adware (ads[2].htm)! Action taken: No Action Taken. 68: Wed Sep 28 19:40:32 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temporary Internet Files\content.ie5\53bvtt46\ads[1].htm 69: Wed Sep 28 19:40:32 2005 => System found infected with whenu.savenow Spyware/Adware (ads[1].htm)! Action taken: No Action Taken. 70: Wed Sep 28 19:40:32 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temporary Internet Files\content.ie5\53bvtt46\ads[2].htm 71: Wed Sep 28 19:40:32 2005 => System found infected with whenu.savenow Spyware/Adware (ads[2].htm)! Action taken: No Action Taken. 72: Wed Sep 28 19:40:32 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temporary Internet Files\content.ie5\53bvtt46\show_ads[2].js 73: Wed Sep 28 19:40:32 2005 => System found infected with whenu.savenow Spyware/Adware (show_ads[2].js)! Action taken: No Action Taken. 74: Wed Sep 28 19:40:32 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temporary Internet Files\content.ie5\c5efwti7\ads[1].htm 75: Wed Sep 28 19:40:32 2005 => System found infected with whenu.savenow Spyware/Adware (ads[1].htm)! Action taken: No Action Taken. 76: Wed Sep 28 19:40:32 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temporary Internet Files\content.ie5\c5efwti7\ads[2].htm 77: Wed Sep 28 19:40:32 2005 => System found infected with whenu.savenow Spyware/Adware (ads[2].htm)! Action taken: No Action Taken. 78: Wed Sep 28 19:40:32 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temporary Internet Files\content.ie5\c5efwti7\blank[1].htm 79: Wed Sep 28 19:40:32 2005 => System found infected with whenu.savenow Spyware/Adware (blank[1].htm)! Action taken: No Action Taken. 80: Wed Sep 28 19:40:32 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temporary Internet Files\content.ie5\fig3nh0p\ads[1].htm 81: Wed Sep 28 19:40:32 2005 => System found infected with whenu.savenow Spyware/Adware (ads[1].htm)! Action taken: No Action Taken. 82: Wed Sep 28 19:40:32 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temporary Internet Files\content.ie5\fig3nh0p\ads[2].htm 83: Wed Sep 28 19:40:32 2005 => System found infected with whenu.savenow Spyware/Adware (ads[2].htm)! Action taken: No Action Taken. 84: Wed Sep 28 19:40:32 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temporary Internet Files\content.ie5\fig3nh0p\formie[1].css 85: Wed Sep 28 19:40:32 2005 => System found infected with whenu.savenow Spyware/Adware (formie[1].css)! Action taken: No Action Taken. 86: Wed Sep 28 19:40:32 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temporary Internet Files\content.ie5\fig3nh0p\show_ads[2].js 87: Wed Sep 28 19:40:32 2005 => System found infected with whenu.savenow Spyware/Adware (show_ads[2].js)! Action taken: No Action Taken. 88: Wed Sep 28 19:40:32 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temporary Internet Files\content.ie5\ulh6fetg\ads[1].htm 89: Wed Sep 28 19:40:32 2005 => System found infected with whenu.savenow Spyware/Adware (ads[1].htm)! Action taken: No Action Taken. 90: Wed Sep 28 19:40:32 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temporary Internet Files\content.ie5\ulh6fetg\ads[2].htm 91: Wed Sep 28 19:40:32 2005 => System found infected with whenu.savenow Spyware/Adware (ads[2].htm)! Action taken: No Action Taken. 92: Wed Sep 28 19:40:32 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temporary Internet Files\content.ie5\ulh6fetg\blank[1].htm 93: Wed Sep 28 19:40:32 2005 => System found infected with whenu.savenow Spyware/Adware (blank[1].htm)! Action taken: No Action Taken. 94: Wed Sep 28 19:40:32 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temporary Internet Files\content.ie5\w5m7sxe7\ads[1].htm 95: Wed Sep 28 19:40:32 2005 => System found infected with whenu.savenow Spyware/Adware (ads[1].htm)! Action taken: No Action Taken. 96: Wed Sep 28 19:40:32 2005 => Offending file found: D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temporary Internet Files\content.ie5\wpizwxer\index[1].html 97: Wed Sep 28 19:40:32 2005 => System found infected with whenu.savenow Spyware/Adware (index[1].html)! Action taken: No Action Taken. 98: Wed Sep 28 19:42:41 2005 => Scanning File D:\DOKUME~1\ADMINI~1\LOKALE~1\TEMPOR~1\Content.IE5\ULH6FETG\infected6xz[1].gif [**] 99: Wed Sep 28 19:44:54 2005 => Scanning File C:\Musik\-Sepultura\Sepultura - Infected Voice.mp3 [**] 100: Wed Sep 28 19:46:03 2005 => Scanning File D:\Dokumente und Einstellungen\Administrator\Eigene Dateien\Meine empfangenen Dateien\Bartezz - Infected.mp3 [**] 101: Wed Sep 28 19:47:49 2005 => Scanning File D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temporary Internet Files\Content.IE5\ULH6FETG\infected6xz[1].gif [**] 102: Wed Sep 28 19:49:12 2005 => Scanning Folder: D:\Programme\AVPersonal\INFECTED\*.* 103: Wed Sep 28 19:49:12 2005 => Scanning File D:\Programme\AVPersonal\INFECTED\svcnet.VIR 104: Wed Sep 28 19:49:12 2005 => File D:\Programme\AVPersonal\INFECTED\svcnet.VIR infected by "P2P-Worm.Win32.Tibick.d" Virus! Action Taken: No Action Taken. 105: Wed Sep 28 19:49:12 2005 => Scanning File D:\Programme\AVPersonal\INFECTED\svcnet.VIR00 106: Wed Sep 28 19:49:12 2005 => File D:\Programme\AVPersonal\INFECTED\svcnet.VIR00 infected by "P2P-Worm.Win32.Tibick.d" Virus! Action Taken: No Action Taken. 107: Wed Sep 28 19:49:12 2005 => Scanning File D:\Programme\AVPersonal\INFECTED\svcnet.VIR01 108: Wed Sep 28 19:49:12 2005 => File D:\Programme\AVPersonal\INFECTED\svcnet.VIR01 infected by "P2P-Worm.Win32.Tibick.d" Virus! Action Taken: No Action Taken. 109: Wed Sep 28 19:49:12 2005 => Scanning File D:\Programme\AVPersonal\INFECTED\svcnet.VIR02 110: Wed Sep 28 19:49:12 2005 => File D:\Programme\AVPersonal\INFECTED\svcnet.VIR02 infected by "P2P-Worm.Win32.Tibick.d" Virus! Action Taken: No Action Taken. 111: Wed Sep 28 19:50:55 2005 => Scanning File D:\Programme\eMule.de\Incoming\infected mushroom berry sakharof - deeply distrubed.mp3 [**] 112: Wed Sep 28 19:56:55 2005 => Scanning File D:\sicherung\Dokumente und Einstellungen\Downloads\Sum_41_Does_This_Look_Infected.rar -------------------------------------------------- --------------------- TAGGED --------------------- -------------------------------------------------- 1: Wed Sep 28 19:41:41 2005 => File D:\DOKUME~1\ADMINI~1\LOKALE~1\Temp\res2.tmp tagged as "not-a-virus:AdWare.Win32.180Solutions.g". Action Taken: No Action Taken. 2: Wed Sep 28 19:42:19 2005 => File D:\DOKUME~1\ADMINI~1\LOKALE~1\Temp\xylgpnhj.exe tagged as "not-a-virus:AdWare.Win32.Lop.m". Action Taken: No Action Taken. 3: Wed Sep 28 19:46:55 2005 => File D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temp\res2.tmp tagged as "not-a-virus:AdWare.Win32.180Solutions.g". Action Taken: No Action Taken. 4: Wed Sep 28 19:47:28 2005 => File D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temp\xylgpnhj.exe tagged as "not-a-virus:AdWare.Win32.Lop.m". Action Taken: No Action Taken. 5: Wed Sep 28 19:48:13 2005 => File D:\Program Files\Media Gateway\MediaGateway.exe tagged as "not-a-virus:AdWare.Win32.WinAD.bj". Action Taken: No Action Taken. 6: Wed Sep 28 19:58:24 2005 => File D:\sicherung\mIRC\mirc.exe tagged as not-a-virus:Client-IRC.Win32.mIRC.616. No Action Taken. 7: Wed Sep 28 19:58:24 2005 => File D:\sicherung\mirc616.exe tagged as not-a-virus:Client-IRC.Win32.mIRC.616. No Action Taken. 8: Wed Sep 28 20:02:40 2005 => File D:\temp\MediaGateway.exe tagged as "not-a-virus:AdWare.Win32.WinAD.bj". Action Taken: No Action Taken. 9: Wed Sep 28 20:02:44 2005 => File D:\WINNT\Downloaded Program Files\MediaAccX.dll tagged as "not-a-virus:AdWare.Win32.WinAD.ak". Action Taken: No Action Taken. -------------------------------------------------- --------------------- ERRORS --------------------- -------------------------------------------------- 1: Wed Sep 28 19:40:11 2005 => ERROR!!! Invalid Entry = D:\PROGRA~1\SPYBOT~1\SDHelper.dll (in key Software\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}). No Action Taken. 2: Wed Sep 28 19:40:33 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\ModuleUsage" refers to invalid object "D:\WINNT\Downloaded Program Files\AdToolsX.dll". Action Taken: No Action Taken. 3: Wed Sep 28 19:40:33 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\ModuleUsage" refers to invalid object "D:\WINNT\Downloaded Program Files\HDPlugin1100.dll". Action Taken: No Action Taken. 4: Wed Sep 28 19:40:33 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\ModuleUsage" refers to invalid object "D:\WINNT\Downloaded Program Files\ysbactivex.dll". Action Taken: No Action Taken. 5: Wed Sep 28 19:40:33 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "D:\WINNT\System32\pxwma.dll". Action Taken: No Action Taken. 6: Wed Sep 28 19:40:33 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "D:\WINNT\Downloaded Program Files\HDPlugin1100.dll". Action Taken: No Action Taken. 7: Wed Sep 28 19:40:33 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "D:\WINNT\Downloaded Program Files\AdToolsX.dll". Action Taken: No Action Taken. 8: Wed Sep 28 19:40:33 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "D:\DOKUME~1\ADMINI~1\LOKALE~1\Temp\_ISTMP2.DIR\_ISTMP0.DIR\FileGrp\Msvcrt10.dll". Action Taken: No Action Taken. 9: Wed Sep 28 19:40:33 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "D:\DOKUME~1\ADMINI~1\LOKALE~1\Temp\_ISTMP2.DIR\_ISTMP0.DIR\FileGrp\MSVCP60.DLL". Action Taken: No Action Taken. 10: Wed Sep 28 19:40:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "D:\WINNT\Downloaded Program Files\ysbactivex.dll". Action Taken: No Action Taken. 11: Wed Sep 28 19:40:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "D:\Programme\Nokia\Connectivity Cable Driver\nmwcdmen.inf". Action Taken: No Action Taken. 12: Wed Sep 28 19:40:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "D:\Programme\Nokia\Connectivity Cable Driver\nmwcdm9x.inf". Action Taken: No Action Taken. 13: Wed Sep 28 19:40:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "D:\Programme\Nokia\Connectivity Cable Driver\nmwcdm2k.inf". Action Taken: No Action Taken. 14: Wed Sep 28 19:40:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "D:\Programme\Nokia\Connectivity Cable Driver\nmwcdlog.dll". Action Taken: No Action Taken. 15: Wed Sep 28 19:40:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "D:\Programme\Nokia\Connectivity Cable Driver\nmwcdcm.sys". Action Taken: No Action Taken. 16: Wed Sep 28 19:40:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "D:\Programme\Nokia\Connectivity Cable Driver\nmwcdcls.dll". Action Taken: No Action Taken. 17: Wed Sep 28 19:40:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "D:\Programme\Nokia\Connectivity Cable Driver\nmwcdc.inf". Action Taken: No Action Taken. 18: Wed Sep 28 19:40:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "D:\Programme\Nokia\Connectivity Cable Driver\nmwcd.inf". Action Taken: No Action Taken. 19: Wed Sep 28 19:40:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "D:\Programme\Nokia\Connectivity Cable Driver\nmwcd.sys". Action Taken: No Action Taken. 20: Wed Sep 28 19:40:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "D:\Programme\Nokia\Connectivity Cable Driver\nmwcdc.sys". Action Taken: No Action Taken. 21: Wed Sep 28 19:40:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "D:\WINNT\System32\pxsfs.dll". Action Taken: No Action Taken. 22: Wed Sep 28 19:40:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "D:\WINNT\System32\pxinsa64.exe". Action Taken: No Action Taken. 23: Wed Sep 28 19:40:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "D:\WINNT\System32\pxinsi64.exe". Action Taken: No Action Taken. 24: Wed Sep 28 19:40:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "D:\WINNT\System32\pxcpya64.exe". Action Taken: No Action Taken. 25: Wed Sep 28 19:40:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "D:\WINNT\System32\pxcpyi64.exe". Action Taken: No Action Taken. 26: Wed Sep 28 19:40:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\App Paths\bantam.dll" refers to invalid object "bantam.dll". Action Taken: No Action Taken. 27: Wed Sep 28 19:40:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\App Paths\bdeadmin.hlp" refers to invalid object "bdeadmin.hlp". Action Taken: No Action Taken. 28: Wed Sep 28 19:40:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\App Paths\blw32.dll" refers to invalid object "blw32.dll". Action Taken: No Action Taken. 29: Wed Sep 28 19:40:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\App Paths\Createcd50.exe" refers to invalid object "D:\Programme\Gemeinsame Dateien\Adaptec Shared\CreateCD\createcd50.exe". Action Taken: No Action Taken. 30: Wed Sep 28 19:40:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\App Paths\disp.dll" refers to invalid object "disp.dll". Action Taken: No Action Taken. 31: Wed Sep 28 19:40:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\App Paths\ga_main.exe" refers to invalid object "". Action Taken: No Action Taken. 32: Wed Sep 28 19:40:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\App Paths\idapi32.dll" refers to invalid object "idapi32.dll". Action Taken: No Action Taken. 33: Wed Sep 28 19:40:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\App Paths\idasci32.dll" refers to invalid object "idasci32.dll". Action Taken: No Action Taken. 34: Wed Sep 28 19:40:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\App Paths\idbat32.dll" refers to invalid object "idbat32.dll". Action Taken: No Action Taken. 35: Wed Sep 28 19:40:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\App Paths\idda3532.dll" refers to invalid object "idda3532.dll". Action Taken: No Action Taken. 36: Wed Sep 28 19:40:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\App Paths\iddao32.dll" refers to invalid object "iddao32.dll". Action Taken: No Action Taken. 37: Wed Sep 28 19:40:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\App Paths\iddbas32.dll" refers to invalid object "iddbas32.dll". Action Taken: No Action Taken. 38: Wed Sep 28 19:40:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\App Paths\iddr32.dll" refers to invalid object "iddr32.dll". Action Taken: No Action Taken. 39: Wed Sep 28 19:40:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\App Paths\idodbc32.dll" refers to invalid object "idodbc32.dll". Action Taken: No Action Taken. 40: Wed Sep 28 19:40:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\App Paths\idpdx32.dll" refers to invalid object "idpdx32.dll". Action Taken: No Action Taken. 41: Wed Sep 28 19:40:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\App Paths\idqbe32.dll" refers to invalid object "idqbe32.dll". Action Taken: No Action Taken. 42: Wed Sep 28 19:40:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\App Paths\idr20009.dll" refers to invalid object "idr20009.dll". Action Taken: No Action Taken. 43: Wed Sep 28 19:40:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\App Paths\idsql32.dll" refers to invalid object "idsql32.dll". Action Taken: No Action Taken. 44: Wed Sep 28 19:40:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\App Paths\MediaRack.exe" refers to invalid object "D:\Programme\C-Media 3D Audio\MediaRack.exe". Action Taken: No Action Taken. 45: Wed Sep 28 19:40:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\App Paths\YourApp.exe" refers to invalid object "D:\Programme\KYE\USB Multimedia keyboard driver Ver1.02\YourApp.exe". Action Taken: No Action Taken. 46: Wed Sep 28 19:40:36 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders" refers to invalid object "D:\Programme\Nokia\". Action Taken: No Action Taken. 47: Wed Sep 28 19:40:36 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders" refers to invalid object "D:\Programme\Nokia\Nokia PC Suite 6\". Action Taken: No Action Taken. 48: Wed Sep 28 19:40:36 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders" refers to invalid object "D:\Programme\Nokia\Connectivity Cable Driver\". Action Taken: No Action Taken. 49: Wed Sep 28 19:40:36 2005 => Entry "HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts" refers to invalid object ".04-Bild012". Action Taken: No Action Taken. 50: Wed Sep 28 19:40:36 2005 => Entry "HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts" refers to invalid object ".7/client/". Action Taken: No Action Taken. 51: Wed Sep 28 19:40:36 2005 => Entry "HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts" refers to invalid object ".7/client/Skins/". Action Taken: No Action Taken. 52: Wed Sep 28 19:40:36 2005 => Entry "HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts" refers to invalid object ".7/client/Transcedent/". Action Taken: No Action Taken. 53: Wed Sep 28 19:40:36 2005 => Entry "HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts" refers to invalid object ".cue". Action Taken: No Action Taken. 54: Wed Sep 28 19:40:36 2005 => Entry "HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts" refers to invalid object ".db". Action Taken: No Action Taken. 55: Wed Sep 28 19:40:36 2005 => Entry "HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts" refers to invalid object ".dxtheme". Action Taken: No Action Taken. 56: Wed Sep 28 19:40:36 2005 => Entry "HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts" refers to invalid object ".gb". Action Taken: No Action Taken. 57: Wed Sep 28 19:40:36 2005 => Entry "HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts" refers to invalid object ".gba". Action Taken: No Action Taken. 58: Wed Sep 28 19:40:36 2005 => Entry "HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts" refers to invalid object ".gbc". Action Taken: No Action Taken. 59: Wed Sep 28 19:40:36 2005 => Entry "HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts" refers to invalid object ".gov/pub/storm_archives/atlantic/prelimat/atl1958/". Action Taken: No Action Taken. 60: Wed Sep 28 19:40:36 2005 => Entry "HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts" refers to invalid object ".gov/pub/storm_archives/atlantic/prelimat/atl1958/helene/". Action Taken: No Action Taken. 61: Wed Sep 28 19:40:36 2005 => Entry "HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts" refers to invalid object ".mirror_nothing". Action Taken: No Action Taken. 62: Wed Sep 28 19:40:36 2005 => Entry "HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts" refers to invalid object ".ngp". Action Taken: No Action Taken. 63: Wed Sep 28 19:40:36 2005 => Entry "HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts" refers to invalid object ".RIF". Action Taken: No Action Taken. 64: Wed Sep 28 19:40:36 2005 => Entry "HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts" refers to invalid object ".sav". Action Taken: No Action Taken. 65: Wed Sep 28 19:40:36 2005 => Entry "HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts" refers to invalid object ".sgm". Action Taken: No Action Taken. 66: Wed Sep 28 19:40:36 2005 => Entry "HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts" refers to invalid object ".sized". Action Taken: No Action Taken. 67: Wed Sep 28 19:40:36 2005 => Entry "HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts" refers to invalid object ".torrent". Action Taken: No Action Taken. 68: Wed Sep 28 19:40:36 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache" refers to invalid object "70tovmto". Action Taken: No Action Taken. 69: Wed Sep 28 19:40:36 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache" refers to invalid object "AdTools Service". Action Taken: No Action Taken. 70: Wed Sep 28 19:40:36 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache" refers to invalid object "DivXCodec". Action Taken: No Action Taken. 71: Wed Sep 28 19:40:36 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache" refers to invalid object "Media Gateway". Action Taken: No Action Taken. 72: Wed Sep 28 19:40:36 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache" refers to invalid object "{ABEB838C-A1A7-4C5D-B7E1-8B4314600137}". Action Taken: No Action Taken. 73: Wed Sep 28 19:40:36 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache" refers to invalid object "{ABEB838C-A1A7-4C5D-B7E1-8B4314600205}". Action Taken: No Action Taken. 74: Wed Sep 28 19:40:36 2005 => Entry "HKCR\CLSID\{04FE9017-F873-410E-871E-AB91661A4EF7}" refers to invalid object "C:\Programme\Windows Media Player\ffdshow\ffdshow.ax". Action Taken: No Action Taken. 75: Wed Sep 28 19:40:36 2005 => Entry "HKCR\CLSID\{0A346871-C8AA-4D8D-B665-4906C9BF371C}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTVideoCompress.dll". Action Taken: No Action Taken. 76: Wed Sep 28 19:40:36 2005 => Entry "HKCR\CLSID\{0A7D1D59-0CFD-494F-B0F8-E36F77008E39}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTAudioCompress2.dll". Action Taken: No Action Taken. 77: Wed Sep 28 19:40:36 2005 => Entry "HKCR\CLSID\{198C4AAF-527C-4DEE-9D76-7F94FC2B3D34}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTWMVBroadcastService.dll". Action Taken: No Action Taken. 78: Wed Sep 28 19:40:36 2005 => Entry "HKCR\CLSID\{1ADD57B8-A7A9-4518-B9B5-862590FF9EB4}" refers to invalid object "D:\WINNT\System32\divxdec.ax". Action Taken: No Action Taken. 79: Wed Sep 28 19:40:36 2005 => Entry "HKCR\CLSID\{1B62A3D1-9C04-4BD5-84B5-D2607302501F}" refers to invalid object "D:\WINNT\System32\divxdec.ax". Action Taken: No Action Taken. 80: Wed Sep 28 19:40:36 2005 => Entry "HKCR\CLSID\{1C9920E5-7623-4AAF-936B-A14BCAB742EC}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTAudioRecord2.dll". Action Taken: No Action Taken. 81: Wed Sep 28 19:40:36 2005 => Entry "HKCR\CLSID\{24B53040-3A78-4D52-A6C9-9B84A3D75DF8}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTVideoCompress.dll". Action Taken: No Action Taken. 82: Wed Sep 28 19:40:36 2005 => Entry "HKCR\CLSID\{2630C450-189E-4911-BFFF-457A0645292E}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTAudioArrayProcessingEx.dll". Action Taken: No Action Taken. 83: Wed Sep 28 19:40:36 2005 => Entry "HKCR\CLSID\{35B8892D-C3FB-4D88-990D-31DB2EBD72BD}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTAudioFile2.dll". Action Taken: No Action Taken. 84: Wed Sep 28 19:40:36 2005 => Entry "HKCR\CLSID\{3C74D128-AB84-47E2-B0F7-2650D36A65D4}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTVideoView.dll". Action Taken: No Action Taken. 85: Wed Sep 28 19:40:36 2005 => Entry "HKCR\CLSID\{53707962-6F74-2D53-2644-206D7942484F}" refers to invalid object "D:\PROGRA~1\SPYBOT~1\SDHelper.dll". Action Taken: No Action Taken. 86: Wed Sep 28 19:40:36 2005 => Entry "HKCR\CLSID\{5AD31A03-9136-4C8E-AAA8-121B20B5EA66}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTAudioTransform2.dll". Action Taken: No Action Taken. 87: Wed Sep 28 19:40:36 2005 => Entry "HKCR\CLSID\{5F752827-675A-445A-B5F5-5A3BF9F49D06}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTAudioTransform2.dll". Action Taken: No Action Taken. 88: Wed Sep 28 19:40:36 2005 => Entry "HKCR\CLSID\{6A10A80B-D0F7-4380-BD8D-285728A1142D}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTImageFile.dll". Action Taken: No Action Taken. 89: Wed Sep 28 19:40:36 2005 => Entry "HKCR\CLSID\{6B1E11AC-BF5C-4CF5-9DC9-F81F715EB790}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTAVIFile.dll". Action Taken: No Action Taken. 90: Wed Sep 28 19:40:37 2005 => Entry "HKCR\CLSID\{77829F14-D911-40FF-A2F0-D11DB8D6D0BC}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTAudioFile2.dll". Action Taken: No Action Taken. 91: Wed Sep 28 19:40:37 2005 => Entry "HKCR\CLSID\{78766964-0000-0010-8000-00AA00389B71}" refers to invalid object "D:\WINNT\System32\divxdec.ax". Action Taken: No Action Taken. 92: Wed Sep 28 19:40:37 2005 => Entry "HKCR\CLSID\{7944D4BB-2D20-4FE5-A489-35F7E2717322}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTVideoDxCapture.dll". Action Taken: No Action Taken. 93: Wed Sep 28 19:40:37 2005 => Entry "HKCR\CLSID\{7993FB10-F4FE-462C-B2AC-C3B684CD64AD}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTQuickTimeFile.dll". Action Taken: No Action Taken. 94: Wed Sep 28 19:40:37 2005 => Entry "HKCR\CLSID\{7A4363E7-A896-493E-ADA4-A7CF005335A1}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTAudioCompressEx.dll". Action Taken: No Action Taken. 95: Wed Sep 28 19:40:37 2005 => Entry "HKCR\CLSID\{83E66439-05D5-488C-A236-AA20E543D384}" refers to invalid object "D:\WINNT\System32\divxdec.ax". Action Taken: No Action Taken. 96: Wed Sep 28 19:40:37 2005 => Entry "HKCR\CLSID\{847BB821-2B52-45DE-85DF-81D9C7127291}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTVideoDxCapture.dll". Action Taken: No Action Taken. 97: Wed Sep 28 19:40:37 2005 => Entry "HKCR\CLSID\{8532DECB-E102-48A8-BE72-DADC2B02C49F}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTAudioPlayer2.dll". Action Taken: No Action Taken. 98: Wed Sep 28 19:40:37 2005 => Entry "HKCR\CLSID\{85D56A9B-19C6-4C0A-983A-8822755CE8DC}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTVideoCapture.dll". Action Taken: No Action Taken. 99: Wed Sep 28 19:40:37 2005 => Entry "HKCR\CLSID\{8A4B99CF-4AA2-4BDE-8244-F661FBD24306}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTVideoFile.dll". Action Taken: No Action Taken. 100: Wed Sep 28 19:40:37 2005 => Entry "HKCR\CLSID\{8A70ECD0-1CEF-46A6-99D5-24E56FFEAAA0}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTVideoDxPlayer.dll". Action Taken: No Action Taken. 101: Wed Sep 28 19:40:37 2005 => Entry "HKCR\CLSID\{8EEF9744-17C2-4F98-947E-99AC3F41B812}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTVideoTransform.dll". Action Taken: No Action Taken. 102: Wed Sep 28 19:40:37 2005 => Entry "HKCR\CLSID\{9A5A8E7C-EC78-4C18-84EA-6789FDB77471}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTVideoCompose.dll". Action Taken: No Action Taken. 103: Wed Sep 28 19:40:37 2005 => Entry "HKCR\CLSID\{9A98ADCC-C6A4-449E-A8B1-0363673D9F8A}" refers to invalid object "C:\Programme\Windows Media Player\ffdshow\ffdshow.ax". Action Taken: No Action Taken. 104: Wed Sep 28 19:40:37 2005 => Entry "HKCR\CLSID\{A481288F-15E4-4FB9-B1EB-7392CB48C6F0}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTVideoPlayer.dll". Action Taken: No Action Taken. 105: Wed Sep 28 19:40:37 2005 => Entry "HKCR\CLSID\{A4845882-333F-11D0-B724-00AA0062CBB7}" refers to invalid object "D:\WINNT\System32\WBEM\WBEMSTUB.DLL". Action Taken: No Action Taken. 106: Wed Sep 28 19:40:37 2005 => Entry "HKCR\CLSID\{A61F916F-44E6-45A1-BDD8-8CC60C6D6645}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTMPEGFile.dll". Action Taken: No Action Taken. 107: Wed Sep 28 19:40:37 2005 => Entry "HKCR\CLSID\{BE350E78-5CD5-4C8C-B9C7-60339BD43418}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTAudioCompress2.dll". Action Taken: No Action Taken. 108: Wed Sep 28 19:40:37 2005 => Entry "HKCR\CLSID\{C74C522D-9E0E-4C4B-923D-AD0746781CE8}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTAudioArrayProcessingEx.dll". Action Taken: No Action Taken. 109: Wed Sep 28 19:40:37 2005 => Entry "HKCR\CLSID\{D2AE39EF-965C-4058-A21B-AC0E0673F72D}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTWMVFile.dll". Action Taken: No Action Taken. 110: Wed Sep 28 19:40:37 2005 => Entry "HKCR\CLSID\{DADDCB07-8034-4541-88A1-0B15F05861CA}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTRMFile.dll". Action Taken: No Action Taken. 111: Wed Sep 28 19:40:37 2005 => Entry "HKCR\CLSID\{E07D3492-32B5-11D0-B724-00AA0062CBB7}" refers to invalid object "D:\WINNT\System32\WBEM\WBEMSTUB.DLL". Action Taken: No Action Taken. 112: Wed Sep 28 19:40:37 2005 => Entry "HKCR\CLSID\{E27FC1E5-B5CB-4C3E-8AA6-81C2A4BAC8AF}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTWMVFile.dll". Action Taken: No Action Taken. 113: Wed Sep 28 19:40:37 2005 => Entry "HKCR\CLSID\{F2F8D1EC-46A6-4817-9B0C-953347A45F76}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTVideoDxCapture.dll". Action Taken: No Action Taken. 114: Wed Sep 28 19:40:37 2005 => Entry "HKCR\TypeLib\{0A1BD94F-4E9A-40E5-8B95-EB7BD5D2180E}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTVideoCompose.dll". Action Taken: No Action Taken. 115: Wed Sep 28 19:40:37 2005 => Entry "HKCR\TypeLib\{1ACB38E1-9F4F-4728-A154-9AE78ACD6D7A}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTVideoFile.dll". Action Taken: No Action Taken. 116: Wed Sep 28 19:40:37 2005 => Entry "HKCR\TypeLib\{1C25833D-B378-4188-ABDB-D6709BA610DF}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTImageFile.dll". Action Taken: No Action Taken. 117: Wed Sep 28 19:40:37 2005 => Entry "HKCR\TypeLib\{2345C85B-969D-459C-90E9-D5E65ECC294E}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTAudioPlayer2.dll". Action Taken: No Action Taken. 118: Wed Sep 28 19:40:37 2005 => Entry "HKCR\TypeLib\{234A27D7-FE96-4834-854B-A024D446BF70}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTVideoPlayer.dll". Action Taken: No Action Taken. 119: Wed Sep 28 19:40:37 2005 => Entry "HKCR\TypeLib\{26AEB14D-8715-4281-AEAC-3343AEB2630F}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTAudioRecord2.dll". Action Taken: No Action Taken. 120: Wed Sep 28 19:40:37 2005 => Entry "HKCR\TypeLib\{2A51C423-CAC7-4307-AEE9-6A70F1B02614}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTWMVBroadcastService.dll". Action Taken: No Action Taken. 121: Wed Sep 28 19:40:37 2005 => Entry "HKCR\TypeLib\{47F59201-8783-11D2-8343-00A0C945A819}" refers to invalid object "D:\Programme\Internet Explorer\PLUGINS\RichFX\Player\nprfxins.dll". Action Taken: No Action Taken. 122: Wed Sep 28 19:40:37 2005 => Entry "HKCR\TypeLib\{4B64B01E-65B1-4496-97C4-070BEFD8E659}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTQuickTimeFile.dll". Action Taken: No Action Taken. 123: Wed Sep 28 19:40:37 2005 => Entry "HKCR\TypeLib\{6347CFE9-22A9-4ED7-9C74-0E06CA27F188}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTVideoCapture.dll". Action Taken: No Action Taken. 124: Wed Sep 28 19:40:37 2005 => Entry "HKCR\TypeLib\{6A7A4F55-B4D8-41C3-96FD-7C4280FE9A61}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTAudioArrayProcessingEx.dll". Action Taken: No Action Taken. 125: Wed Sep 28 19:40:37 2005 => Entry "HKCR\TypeLib\{730BA53A-40CE-4667-91ED-3B6C10609861}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTVideoTransform.dll". Action Taken: No Action Taken. 126: Wed Sep 28 19:40:37 2005 => Entry "HKCR\TypeLib\{764CEFF9-F729-4F2E-9872-64B716BF7D54}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTAudioTransform2.dll". Action Taken: No Action Taken. 127: Wed Sep 28 19:40:37 2005 => Entry "HKCR\TypeLib\{882E9F1F-9CD8-4526-9614-7268A840244A}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTVideoDxCapture.dll". Action Taken: No Action Taken. 128: Wed Sep 28 19:40:37 2005 => Entry "HKCR\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTAudioFile2.dll". Action Taken: No Action Taken. 129: Wed Sep 28 19:40:37 2005 => Entry "HKCR\TypeLib\{94F04149-D842-40E6-992C-7D6D66547E1D}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTWMVFile.dll". Action Taken: No Action Taken. 130: Wed Sep 28 19:40:37 2005 => Entry "HKCR\TypeLib\{ABB1251C-F0AB-4468-AF66-ABC79ABA7BC6}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTVideoCompress.dll". Action Taken: No Action Taken. 131: Wed Sep 28 19:40:37 2005 => Entry "HKCR\TypeLib\{C2241BBB-D9AF-4D66-BB7C-5824427E6F56}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTAudioCompressEx.dll". Action Taken: No Action Taken. 132: Wed Sep 28 19:40:37 2005 => Entry "HKCR\TypeLib\{C3578BE1-D404-4678-9D37-87D1130899B6}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTAVIFile.dll". Action Taken: No Action Taken. 133: Wed Sep 28 19:40:37 2005 => Entry "HKCR\TypeLib\{C535B0F5-FA39-473C-BF95-7E631F89F557}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTRMFile.dll". Action Taken: No Action Taken. 134: Wed Sep 28 19:40:37 2005 => Entry "HKCR\TypeLib\{E3B78610-A00A-414A-8770-3751198673EB}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTVideoView.dll". Action Taken: No Action Taken. 135: Wed Sep 28 19:40:37 2005 => Entry "HKCR\TypeLib\{E59AEAF6-BD38-470E-82E8-D84E37444185}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTMPEGFile.dll". Action Taken: No Action Taken. 136: Wed Sep 28 19:40:37 2005 => Entry "HKCR\TypeLib\{F4C36E73-F94F-429A-955A-25A8D5B727CB}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTVideoDxPlayer.dll". Action Taken: No Action Taken. 137: Wed Sep 28 19:40:37 2005 => Entry "HKCR\TypeLib\{F5188F76-BC78-48C3-BD36-D6445CC0A15D}" refers to invalid object "D:\Programme\avi2divx\Redist\NCTAudioCompress2.dll". Action Taken: No Action Taken. 138: Wed Sep 28 19:40:38 2005 => Entry "HKCR\.pot" refers to invalid object "Powerpoint.Template". Action Taken: No Action Taken. 139: Wed Sep 28 19:40:38 2005 => Entry "HKCR\.ppt" refers to invalid object "Powerpoint.Show.7". Action Taken: No Action Taken. 140: Wed Sep 28 19:40:38 2005 => Entry "HKCR\Class" refers to invalid object "{AA8A5B6C-DA1E-4926-8E69-8221F609DF4E}". Action Taken: No Action Taken. 141: Wed Sep 28 19:40:38 2005 => Entry "HKCR\dipFile\shell\open\command" refers to invalid object ""D:\Programme\DivX\Dr.DivX\Dr.DivX ProfEdit.exe" "%1"". Action Taken: No Action Taken. 142: Wed Sep 28 19:40:39 2005 => Entry "HKCR\Plenoptic.Plenoptic" refers to invalid object "{607C27E9-AB27-11d3-A116-A0EA50C10801}". Action Taken: No Action Taken. 143: Wed Sep 28 19:40:39 2005 => Entry "HKCR\Plenoptic.Plenoptic.1" refers to invalid object "{607C27E9-AB27-11d3-A116-A0EA50C10801}". Action Taken: No Action Taken. 144: Wed Sep 28 19:40:39 2005 => Entry "HKCR\WMDMPDAExplorer.WMDMPDAExplorer" refers to invalid object "{939438A9-CF0F-44d8-9140-599736F0D3A2}". Action Taken: No Action Taken. 145: Wed Sep 28 19:40:39 2005 => Entry "HKCR\WMDMPDAExplorer.WMDMPDAExplorer.1" refers to invalid object "{939438A9-CF0F-44d8-9140-599736F0D3A2}". Action Taken: No Action Taken. 146: Wed Sep 28 19:48:01 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\AlexaRelated.zip is Not Scanned 147: Wed Sep 28 19:48:01 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\AlexaRelated1.zip is Not Scanned 148: Wed Sep 28 19:48:02 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\DSOExploit.zip is Not Scanned 149: Wed Sep 28 19:48:02 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\DyFuCA.zip is Not Scanned 150: Wed Sep 28 19:48:02 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\GAINDashBar.zip is Not Scanned 151: Wed Sep 28 19:48:02 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\GAINGator.zip is Not Scanned 152: Wed Sep 28 19:48:02 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\GAINGator1.zip is Not Scanned 153: Wed Sep 28 19:48:02 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\GAINGator10.zip is Not Scanned 154: Wed Sep 28 19:48:02 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\GAINGator11.zip is Not Scanned 155: Wed Sep 28 19:48:02 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\GAINGator12.zip is Not Scanned 156: Wed Sep 28 19:48:02 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\GAINGator13.zip is Not Scanned 157: Wed Sep 28 19:48:02 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\GAINGator14.zip is Not Scanned 158: Wed Sep 28 19:48:02 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\GAINGator2.zip is Not Scanned 159: Wed Sep 28 19:48:02 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\GAINGator3.zip is Not Scanned 160: Wed Sep 28 19:48:02 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\GAINGator4.zip is Not Scanned 161: Wed Sep 28 19:48:02 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\GAINGator5.zip is Not Scanned 162: Wed Sep 28 19:48:02 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\GAINGator6.zip is Not Scanned 163: Wed Sep 28 19:48:02 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\GAINGator7.zip is Not Scanned 164: Wed Sep 28 19:48:02 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\GAINGator8.zip is Not Scanned 165: Wed Sep 28 19:48:02 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\GAINGator9.zip is Not Scanned 166: Wed Sep 28 19:48:02 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechISTactiveX.zip is Not Scanned 167: Wed Sep 28 19:48:02 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechISTactiveX1.zip is Not Scanned 168: Wed Sep 28 19:48:02 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechISTsvc.zip is Not Scanned 169: Wed Sep 28 19:48:02 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechISTsvcUpdater.zip is Not Scanned 170: Wed Sep 28 19:48:02 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechPowerScan.zip is Not Scanned 171: Wed Sep 28 19:48:02 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechPowerScan1.zip is Not Scanned 172: Wed Sep 28 19:48:02 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechPowerScan2.zip is Not Scanned 173: Wed Sep 28 19:48:02 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechPowerScan3.zip is Not Scanned 174: Wed Sep 28 19:48:02 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechPowerScan4.zip is Not Scanned 175: Wed Sep 28 19:48:02 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechPowerScan5.zip is Not Scanned 176: Wed Sep 28 19:48:02 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSideFind.zip is Not Scanned 177: Wed Sep 28 19:48:02 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSideFind1.zip is Not Scanned 178: Wed Sep 28 19:48:02 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSideFind2.zip is Not Scanned 179: Wed Sep 28 19:48:02 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSideFind3.zip is Not Scanned 180: Wed Sep 28 19:48:02 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSideFind4.zip is Not Scanned 181: Wed Sep 28 19:48:02 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSideFind5.zip is Not Scanned 182: Wed Sep 28 19:48:03 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSideFind6.zip is Not Scanned 183: Wed Sep 28 19:48:03 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSideFind7.zip is Not Scanned 184: Wed Sep 28 19:48:03 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSideFind8.zip is Not Scanned 185: Wed Sep 28 19:48:03 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSlotch.zip is Not Scanned 186: Wed Sep 28 19:48:03 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSlotch1.zip is Not Scanned 187: Wed Sep 28 19:48:03 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSlotch2.zip is Not Scanned 188: Wed Sep 28 19:48:03 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSlotch3.zip is Not Scanned 189: Wed Sep 28 19:48:03 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechYSB.zip is Not Scanned 190: Wed Sep 28 19:48:03 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechYSB1.zip is Not Scanned 191: Wed Sep 28 19:48:03 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ShopAtHome.zip is Not Scanned 192: Wed Sep 28 19:48:03 2005 => Result: ERROR!!! File D:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\Targetsaver.zip is Not Scanned 193: Wed Sep 28 19:51:10 2005 => Result: ERROR!!! File D:\Programme\eMule.de\Incoming\NFSU2\Need.For.Speed.Underground.2.German.Patch.02.by.GEAR.for.www.goldesel.6x.to.rar is Not Scanned 194: Wed Sep 28 19:56:38 2005 => Result: ERROR!!! File D:\sicherung\Dokumente und Einstellungen\Downloads\285.rar is Not Scanned -------------------------------------------------- -------- DATEIEN ZUM LÖSCHEN HINZUGEFÜGT --------- -------------------------------------------------- 1: C:\Musik\-Sepultura\Sepultura - => 2: D:\Programme\AVPersonal\INFECTED\svcnet.VIR => P2P-Worm.Win32.Tibick.d 3: D:\Programme\AVPersonal\INFECTED\svcnet.VIR00 => P2P-Worm.Win32.Tibick.d 4: D:\Programme\AVPersonal\INFECTED\svcnet.VIR01 => P2P-Worm.Win32.Tibick.d 5: D:\Programme\AVPersonal\INFECTED\svcnet.VIR02 => P2P-Worm.Win32.Tibick.d 6: D:\Programme\eMule.de\Incoming => 7: D:\sicherung\mIRC\mirc.exe => tagged:Client-IRC.Win32.mIRC.616. 8: D:\sicherung\mirc616.exe => tagged:Client-IRC.Win32.mIRC.616. -------------------------------------------------- -------------------- Statistik ------------------- -------------------------------------------------- Wed Sep 28 20:08:10 2005 => Total Objects Scanned: 102380 Wed Sep 28 20:08:10 2005 => Total Virus(es) Found: 67 Wed Sep 28 20:08:10 2005 => Total Errors: 194 Wed Sep 28 20:08:10 2005 => Virus Database Date: 2005/09/28 Wed Sep 28 20:08:10 2005 => Virus Database Count: 151576 Wed Sep 28 20:20:50 2005 => Total Objects Scanned: 102380 Wed Sep 28 20:20:50 2005 => Total Virus(es) Found: 67 Wed Sep 28 20:20:50 2005 => Total Errors: 194 ohje ^^; |
|
|
||
28.09.2005, 23:22
Ehrenmitglied
Beiträge: 29434 |
#51
Hallo@Miyu
KillBox http://www.bleepingcomputer.com/files/killbox.php Anleitung: (bebildert) http://virus-protect.org/killbox.html Delete File on Reboot -- anhaken reinkopieren: ... und klicke auf das rote Kreuz, wenn gefragt wird, ob "Do you want to reboot? "---- klicke auf "no",und kopiere das nächste rein, erst beim letzten auf "yes" D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temp\res2.tmp D:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Temp\xylgpnhj.exe D:\Dokumente und Einstellungen\Administrator\Eigene Dateien\meine empfangenen dateien\sage firewall\inject.dll D:\sicherung\mirc616.exe D:\temp\MediaGateway.exe D:\WINNT\Downloaded Program Files\MediaAccX.dll D:\Program Files\Media Gateway\MediaGateway.exe PC neustarten loeschen: D:\Program Files\Media Gateway ---------------------------------------------------------------------------------------------------------------------------------------- CCleaner (loesche alle temp-Dateien und hake auch index.dat an) http://virus-protect.org/temp.html scanne mit ewido http://virus-protect.org/ewido.html Start -- alle Programme -- Zubehör -- Editor und kopiere folgenden Text rein: dir %Windir%\tasks /a h > files.txt notepad files.txt - Speichern als: findjobs.bat - abspeichern unter : Dateityp: alle Dateien - speichere auf dem Desktop - Locate findjobs.bat-- doppelklick auf die bat-Datei , der Editor öffnet sich -- poste den Text __________ MfG Sabina rund um die PC-Sicherheit |
|
|
||
29.09.2005, 19:31
...neu hier
Beiträge: 3 |
#52
Datentr„ger in Laufwerk D: hat keine Bezeichnung.
Datentr„gernummer: CDCD-6061 Verzeichnis von D:\WINNT\tasks 28.09.2005 17:57 <DIR> . 28.09.2005 17:57 <DIR> .. 10.12.1999 14:00 65 desktop.ini 29.09.2005 16:34 6 SA.DAT 2 Datei(en) 71 Bytes Verzeichnis von D:\Dokumente und Einstellungen\Administrator\Desktop O_o haben sie noch irgendwelche anti virus/anti spy programm die sie mir empfehlen können? hab antivirus xp , spysubtract,ad-aware und spybot ... oder reichen die? |
|
|
||
na gut, ueberzeugt
Alles Gute, bis zum naechsten Mal
Gruss
Sabina
__________
MfG Sabina
rund um die PC-Sicherheit