NewDotNet - keine Internetverbindung mehr - winsockfix bringt nichts

#0
08.02.2007, 11:41
Ehrenmitglied
Avatar Sabina

Beiträge: 29434
#31 arbeite bitte ab, was ich im vorherigen Beitrag geschrieben hatte - also: die betreffenden Eintraege mit hijackThis fixen, den Rechner neustarten + mit Counterspy scannen - alles ab in die Quarantaene und den scanreport hier posten ;)
__________
MfG Sabina

rund um die PC-Sicherheit
Seitenanfang Seitenende
08.02.2007, 20:07
Member

Beiträge: 12
#32 Sabina,

hier der scanreport von counterspy:

Scan History Details
Start Date: 08.02.2007 19:35:19
End Date: 08.02.2007 19:58:28
Total Time: 23 Min 9 Sec
Detected security risks

Cookie: Ad-Flow.com Cookie (General) more information...
Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs.
Status: Ignored

Cookies detected
c:\dokumente und einstellungen\owner\cookies\owner@ad-flow[2].txt
c:\dokumente und einstellungen\owner\cookies\owner@ad-flow[3].txt


Cookie: AdDynamix Cookie (General) more information...
Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs.
Status: Ignored

Cookies detected
c:\dokumente und einstellungen\owner\cookies\owner@addynamix[1].txt
c:\dokumente und einstellungen\owner\cookies\owner@addynamix[2].txt


Cookie: AdServer.News.com Cookie (General) more information...
Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs.
Status: Ignored

Cookies detected
c:\dokumente und einstellungen\owner\cookies\owner@adserver.news.com[2].txt


Cookie: Adserver Cookie (General) more information...
Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs.
Status: Ignored

Cookies detected
c:\dokumente und einstellungen\owner\cookies\owner@adserver[1].txt
c:\dokumente und einstellungen\owner\cookies\owner@adserver[2].txt


Cookie: Adviva Cookie (General) more information...
Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs.
Status: Ignored

Cookies detected
c:\dokumente und einstellungen\owner\cookies\owner@adviva[1].txt


Cookie: Trafficmp.com Cookie (General) more information...
Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs.
Status: Ignored

Cookies detected
c:\dokumente und einstellungen\owner\cookies\owner@trafficmp[1].txt
c:\dokumente und einstellungen\owner\cookies\owner@trafficmp[2].txt


Cookie: AJRotator Cookie (General) more information...
Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs.
Status: Ignored

Cookies detected
c:\dokumente und einstellungen\owner\cookies\owner@ajrotator[2].txt


Cookie: ATDMT.com Cookie (General) more information...
Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs.
Status: Ignored

Cookies detected
c:\dokumente und einstellungen\owner\cookies\owner@atdmt[2].txt


BearShare P2P Program more information...
Details: BearShare is a peer-to-peer (P2P) application that allows its users to join together in a network via the Internet and share files from each other's hard drives.
Status: Ignored

Files detected
C:\PROGRAMME\BEARSHARE\BearShare.dat
C:\PROGRAMME\BEARSHARE\db\config.bin
C:\PROGRAMME\BEARSHARE\db\connect.txt
C:\PROGRAMME\BEARSHARE\db\gwebcache.dat
C:\PROGRAMME\BEARSHARE\db\Hostiles.txt
C:\PROGRAMME\BEARSHARE\db\library.dat
C:\PROGRAMME\BEARSHARE\db\TMP10.tmp
C:\PROGRAMME\BEARSHARE\db\TMP11.tmp
C:\PROGRAMME\BEARSHARE\db\TMP12.tmp
C:\PROGRAMME\BEARSHARE\db\TMP16.tmp
C:\PROGRAMME\BEARSHARE\db\TMP1B7.tmp
C:\PROGRAMME\BEARSHARE\db\TMP1C.tmp
C:\PROGRAMME\BEARSHARE\db\TMP1C9.tmp
C:\PROGRAMME\BEARSHARE\db\TMP6.tmp
C:\PROGRAMME\BEARSHARE\db\TMP7.tmp
C:\PROGRAMME\BEARSHARE\db\TMP8.tmp
C:\PROGRAMME\BEARSHARE\db\TMP84.tmp
C:\PROGRAMME\BEARSHARE\db\TMP9.tmp
C:\PROGRAMME\BEARSHARE\db\TMPA.tmp
C:\PROGRAMME\BEARSHARE\db\TMPB.tmp
C:\PROGRAMME\BEARSHARE\db\TMPC.tmp
C:\PROGRAMME\BEARSHARE\db\TMPD.tmp
C:\PROGRAMME\BEARSHARE\db\TMPE.tmp
C:\PROGRAMME\BEARSHARE\db\TMPF.tmp
C:\PROGRAMME\BEARSHARE\FreePeers.ini
C:\PROGRAMME\BEARSHARE\Logs\memory.txt
C:\PROGRAMME\BEARSHARE\Logs\ordinal.txt
C:\PROGRAMME\BEARSHARE\Temp\036B1F.tmp
C:\PROGRAMME\BEARSHARE\Temp\036B36.tmp
C:\PROGRAMME\BEARSHARE\Temp\0439D1.tmp
C:\PROGRAMME\BEARSHARE\Temp\139DBB.tmp
C:\PROGRAMME\BEARSHARE\Temp\139DBD.tmp
C:\PROGRAMME\BEARSHARE\Temp\144D8E.tmp
C:\PROGRAMME\BEARSHARE\Temp\16215.tmp
C:\PROGRAMME\BEARSHARE\Temp\16218.tmp
C:\PROGRAMME\BEARSHARE\Temp\162ADD.tmp
C:\PROGRAMME\BEARSHARE\Temp\162F.tmp
C:\PROGRAMME\BEARSHARE\Temp\288B49.tmp
C:\PROGRAMME\BEARSHARE\Temp\288BC1.tmp
C:\PROGRAMME\BEARSHARE\Temp\316B05.tmp
C:\PROGRAMME\BEARSHARE\Temp\330B7C.tmp
C:\PROGRAMME\BEARSHARE\Temp\3949E8.tmp
C:\PROGRAMME\BEARSHARE\Temp\3949EA.tmp
C:\PROGRAMME\BEARSHARE\Temp\405ADE.tmp
C:\PROGRAMME\BEARSHARE\Temp\413A91.tmp
C:\PROGRAMME\BEARSHARE\Temp\413A93.tmp
C:\PROGRAMME\BEARSHARE\Temp\413D.tmp
C:\PROGRAMME\BEARSHARE\Temp\598C0C.tmp
C:\PROGRAMME\BEARSHARE\Temp\598CF7.tmp
C:\PROGRAMME\BEARSHARE\Temp\6261D8.tmp
C:\PROGRAMME\BEARSHARE\Temp\652B1C.tmp
C:\PROGRAMME\BEARSHARE\Temp\742E.tmp
C:\PROGRAMME\BEARSHARE\Temp\840DB5.tmp
C:\PROGRAMME\BEARSHARE\Temp\840DC0.tmp
C:\PROGRAMME\BEARSHARE\Temp\854B19.tmp
C:\PROGRAMME\BEARSHARE\Temp\8759E0.tmp
C:\PROGRAMME\BEARSHARE\Temp\875CF3.tmp
C:\PROGRAMME\BEARSHARE\Temp\899D92.tmp
C:\PROGRAMME\BEARSHARE\Temp\952A7E.tmp
C:\PROGRAMME\BEARSHARE\Temp\952A8C.tmp
C:\PROGRAMME\BEARSHARE\Temp\952A8D.tmp
C:\PROGRAMME\BEARSHARE\Temp\952A8F.tmp
C:\PROGRAMME\BEARSHARE\Temp\TMP108_peter_wackel_-_oberammergau-mod.mp3
C:\PROGRAMME\BEARSHARE\Temp\TMP108_peter_wackel_-_oberammergau-mod.tiger
C:\PROGRAMME\BEARSHARE\Temp\TMPAstrada - Just another day.dat
C:\PROGRAMME\BEARSHARE\Temp\TMPAstrada - Just another day.mp3
C:\PROGRAMME\BEARSHARE\Temp\TMPBallermann Hits 2003 - CD1 - 02 - Viva Colonia (2003)Höhner.MP3
C:\PROGRAMME\BEARSHARE\Temp\TMPGreen Day - Boulavard of Broken Dreams.mp3
C:\PROGRAMME\BEARSHARE\Temp\TMPGreen Day - Boulavard of Broken Dreams.tiger
C:\PROGRAMME\BEARSHARE\Temp\TMPyves_deruyter_-_born_slippy-ktmp3 207_.mp3
C:\PROGRAMME\BEARSHARE
C:\PROGRAMME\BEARSHARE\DB
C:\PROGRAMME\BEARSHARE\LOGS
C:\PROGRAMME\BEARSHARE\TEMP

Registry entries detected
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{558EC983-BEDB-9168-B2DE-31DBF0EE543E}
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{558EC983-BEDB-9168-B2DE-31DBF0EE543E}
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{558EC983-BEDB-9168-B2DE-31DBF0EE543E}
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{558EC983-BEDB-9168-B2DE-31DBF0EE543E}\InProcServer32
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{558EC983-BEDB-9168-B2DE-31DBF0EE543E}\InProcServer32
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{558EC983-BEDB-9168-B2DE-31DBF0EE543E}\InProcServer32
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{558EC983-BEDB-9168-B2DE-31DBF0EE543E}\ProgID
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{558EC983-BEDB-9168-B2DE-31DBF0EE543E}\ProgID
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{558EC983-BEDB-9168-B2DE-31DBF0EE543E}\VersionIndependentProgID
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{558EC983-BEDB-9168-B2DE-31DBF0EE543E}\VersionIndependentProgID
HKEY_LOCAL_MACHINE\Software\Classes\TYPELIB\{905D0DF2-3A0A-4D94-853C-54A12A745905}
HKEY_LOCAL_MACHINE\Software\Classes\TYPELIB\{905D0DF2-3A0A-4D94-853C-54A12A745905}\1.0
HKEY_LOCAL_MACHINE\Software\Classes\TYPELIB\{905D0DF2-3A0A-4D94-853C-54A12A745905}\1.0
HKEY_LOCAL_MACHINE\Software\Classes\TYPELIB\{905D0DF2-3A0A-4D94-853C-54A12A745905}\1.0\0
HKEY_LOCAL_MACHINE\Software\Classes\TYPELIB\{905D0DF2-3A0A-4D94-853C-54A12A745905}\1.0\0\win32
HKEY_LOCAL_MACHINE\Software\Classes\TYPELIB\{905D0DF2-3A0A-4D94-853C-54A12A745905}\1.0\0\win32
HKEY_LOCAL_MACHINE\Software\Classes\TYPELIB\{905D0DF2-3A0A-4D94-853C-54A12A745905}\1.0\FLAGS
HKEY_LOCAL_MACHINE\Software\Classes\TYPELIB\{905D0DF2-3A0A-4D94-853C-54A12A745905}\1.0\FLAGS
HKEY_LOCAL_MACHINE\Software\Classes\TYPELIB\{905D0DF2-3A0A-4D94-853C-54A12A745905}\1.0\HELPDIR
HKEY_LOCAL_MACHINE\Software\Classes\TYPELIB\{905D0DF2-3A0A-4D94-853C-54A12A745905}\1.0\HELPDIR


Cookie: BFast.com Cookie (General) more information...
Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs.
Status: Ignored

Cookies detected
c:\dokumente und einstellungen\owner\cookies\owner@bfast[1].txt
c:\dokumente und einstellungen\owner\cookies\owner@bfast[2].txt
c:\dokumente und einstellungen\owner\cookies\owner@bfast[3].txt


Cookie: Bizrate Cookie (General) more information...
Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs.
Status: Ignored

Cookies detected
c:\dokumente und einstellungen\owner\cookies\owner@bizrate[1].txt
c:\dokumente und einstellungen\owner\cookies\owner@bizrate[3].txt


Cookie: BlueMountain.com Cookie (General) more information...
Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs.
Status: Ignored

Cookies detected
c:\dokumente und einstellungen\owner\cookies\owner@bluemountain[1].txt


Cookie: Bluestreak.com Cookie (General) more information...
Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs.
Status: Ignored

Cookies detected
c:\dokumente und einstellungen\owner\cookies\owner@bluestreak[1].txt
c:\dokumente und einstellungen\owner\cookies\owner@bluestreak[2].txt
c:\dokumente und einstellungen\owner\cookies\owner@bluestreak[4].txt


Cookie: Bravenet.com Cookie (General) more information...
Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs.
Status: Ignored

Cookies detected
c:\dokumente und einstellungen\owner\cookies\owner@bravenet[1].txt
c:\dokumente und einstellungen\owner\cookies\owner@bravenet[2].txt
c:\dokumente und einstellungen\owner\cookies\owner@bravenet[3].txt
c:\dokumente und einstellungen\owner\cookies\owner@bravenet[4].txt


BrilliantDigital Adware (General) more information...
Details: Brilliant Digital Entertainment (BDE) provides the ability for advertising and other content to be displayed using rich multimedia.
Status: Ignored

Files detected
C:\WINDOWS\BDE\BDEEngine2.dll
C:\WINDOWS\BDE\bdeimage.dll
C:\WINDOWS\BDE\Cache\b3d.b3d
C:\WINDOWS\BDE\Cache\installb3d3105.cab
C:\WINDOWS\BDE\Cache\installb3dplayer3101.cab
C:\WINDOWS\system32\bdedata2.dll
C:\WINDOWS\system32\bdedownloader.dll
C:\WINDOWS\system32\bdesecureinstall.cab

Registry entries detected
HKEY_LOCAL_MACHINE\SOFTWARE\BRILLIANT DIGITAL ENTERTAINMENT
HKEY_LOCAL_MACHINE\SOFTWARE\BRILLIANT DIGITAL ENTERTAINMENT\BDEinstaller
HKEY_LOCAL_MACHINE\SOFTWARE\BRILLIANT DIGITAL ENTERTAINMENT\BDEinstaller\BDECache
HKEY_LOCAL_MACHINE\SOFTWARE\BRILLIANT DIGITAL ENTERTAINMENT\BDEinstaller\BDECache
HKEY_LOCAL_MACHINE\SOFTWARE\BRILLIANT DIGITAL ENTERTAINMENT\BDEinstaller\BDECache
HKEY_LOCAL_MACHINE\SOFTWARE\BRILLIANT DIGITAL ENTERTAINMENT\BDEinstaller\BDECache
HKEY_LOCAL_MACHINE\SOFTWARE\BRILLIANT DIGITAL ENTERTAINMENT\BDEinstaller\BDECache
HKEY_LOCAL_MACHINE\SOFTWARE\BRILLIANT DIGITAL ENTERTAINMENT\BDEinstaller\BDECache
HKEY_LOCAL_MACHINE\SOFTWARE\BRILLIANT DIGITAL ENTERTAINMENT\BDEinstaller
HKEY_LOCAL_MACHINE\SOFTWARE\BRILLIANT DIGITAL ENTERTAINMENT\BDEinstaller
HKEY_LOCAL_MACHINE\SOFTWARE\BRILLIANT DIGITAL ENTERTAINMENT\BDEinstaller
HKEY_LOCAL_MACHINE\SOFTWARE\BRILLIANT DIGITAL ENTERTAINMENT\BDEinstaller
HKEY_LOCAL_MACHINE\SOFTWARE\BRILLIANT DIGITAL ENTERTAINMENT\BDEinstaller
HKEY_LOCAL_MACHINE\SOFTWARE\BRILLIANT DIGITAL ENTERTAINMENT\BDEPlayer
HKEY_LOCAL_MACHINE\SOFTWARE\BRILLIANT DIGITAL ENTERTAINMENT\BDEPlayer\settings
HKEY_LOCAL_MACHINE\SOFTWARE\BRILLIANT DIGITAL ENTERTAINMENT\BDEPlayer\settings
HKEY_LOCAL_MACHINE\SOFTWARE\BRILLIANT DIGITAL ENTERTAINMENT\BDEPlayer\settings
HKEY_LOCAL_MACHINE\SOFTWARE\BRILLIANT DIGITAL ENTERTAINMENT\BDEPlayer\settings
HKEY_LOCAL_MACHINE\SOFTWARE\BRILLIANT DIGITAL ENTERTAINMENT\BDEViewer
HKEY_LOCAL_MACHINE\SOFTWARE\BRILLIANT DIGITAL ENTERTAINMENT\Install
HKEY_LOCAL_MACHINE\SOFTWARE\BRILLIANT DIGITAL ENTERTAINMENT\Install
HKEY_LOCAL_MACHINE\SOFTWARE\BRILLIANT DIGITAL ENTERTAINMENT\Products
HKEY_LOCAL_MACHINE\SOFTWARE\BRILLIANT DIGITAL ENTERTAINMENT\Products
HKEY_LOCAL_MACHINE\SOFTWARE\BRILLIANT DIGITAL ENTERTAINMENT\Products
HKEY_LOCAL_MACHINE\Software\Classes\B3DS_AUTO_FILE
HKEY_LOCAL_MACHINE\Software\Classes\B3DS_AUTO_FILE
HKEY_LOCAL_MACHINE\Software\Classes\B3DS_AUTO_FILE\shell
HKEY_LOCAL_MACHINE\Software\Classes\B3DS_AUTO_FILE\shell\Open
HKEY_LOCAL_MACHINE\Software\Classes\B3DS_AUTO_FILE\shell\Open\command
HKEY_LOCAL_MACHINE\Software\Classes\B3DS_AUTO_FILE\shell\Open\command
HKEY_LOCAL_MACHINE\Software\Classes\BDESMARTINSTALLER25.BDESMARTINSTALLER25
HKEY_LOCAL_MACHINE\Software\Classes\BDESMARTINSTALLER25.BDESMARTINSTALLER25
HKEY_LOCAL_MACHINE\Software\Classes\BDESMARTINSTALLER25.BDESMARTINSTALLER25\CurVer
HKEY_LOCAL_MACHINE\Software\Classes\BDESMARTINSTALLER25.BDESMARTINSTALLER25\CurVer
HKEY_LOCAL_MACHINE\Software\Classes\INTERFACE\{67925164-C4B6-11D2-B9C6-0000E84F59A6}
HKEY_LOCAL_MACHINE\Software\Classes\INTERFACE\{67925164-C4B6-11D2-B9C6-0000E84F59A6}
HKEY_LOCAL_MACHINE\Software\Classes\INTERFACE\{67925164-C4B6-11D2-B9C6-0000E84F59A6}\ProxyStubClsid
HKEY_LOCAL_MACHINE\Software\Classes\INTERFACE\{67925164-C4B6-11D2-B9C6-0000E84F59A6}\ProxyStubClsid
HKEY_LOCAL_MACHINE\Software\Classes\INTERFACE\{67925164-C4B6-11D2-B9C6-0000E84F59A6}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\Software\Classes\INTERFACE\{67925164-C4B6-11D2-B9C6-0000E84F59A6}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\Software\Classes\INTERFACE\{67925164-C4B6-11D2-B9C6-0000E84F59A6}\TypeLib
HKEY_LOCAL_MACHINE\Software\Classes\INTERFACE\{67925164-C4B6-11D2-B9C6-0000E84F59A6}\TypeLib
HKEY_LOCAL_MACHINE\Software\Classes\INTERFACE\{67925164-C4B6-11D2-B9C6-0000E84F59A6}\TypeLib
HKEY_LOCAL_MACHINE\Software\Classes\TYPELIB\{82FC7881-AACC-11D2-B9C6-0000E842E40A}
HKEY_LOCAL_MACHINE\Software\Classes\TYPELIB\{82FC7881-AACC-11D2-B9C6-0000E842E40A}\1.0
HKEY_LOCAL_MACHINE\Software\Classes\TYPELIB\{82FC7881-AACC-11D2-B9C6-0000E842E40A}\1.0
HKEY_LOCAL_MACHINE\Software\Classes\TYPELIB\{82FC7881-AACC-11D2-B9C6-0000E842E40A}\1.0\0
HKEY_LOCAL_MACHINE\Software\Classes\TYPELIB\{82FC7881-AACC-11D2-B9C6-0000E842E40A}\1.0\0\win32
HKEY_LOCAL_MACHINE\Software\Classes\TYPELIB\{82FC7881-AACC-11D2-B9C6-0000E842E40A}\1.0\0\win32
HKEY_LOCAL_MACHINE\Software\Classes\TYPELIB\{82FC7881-AACC-11D2-B9C6-0000E842E40A}\1.0\FLAGS
HKEY_LOCAL_MACHINE\Software\Classes\TYPELIB\{82FC7881-AACC-11D2-B9C6-0000E842E40A}\1.0\FLAGS
HKEY_LOCAL_MACHINE\Software\Classes\TYPELIB\{82FC7881-AACC-11D2-B9C6-0000E842E40A}\1.0\HELPDIR
HKEY_LOCAL_MACHINE\Software\Classes\TYPELIB\{82FC7881-AACC-11D2-B9C6-0000E842E40A}\1.0\HELPDIR
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\BRILLIANT DIGITAL ENTERTAINMENT
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\BRILLIANT DIGITAL ENTERTAINMENT\PROJECTOR
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\BRILLIANT DIGITAL ENTERTAINMENT\PROJECTOR\GUI
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\BRILLIANT DIGITAL ENTERTAINMENT\PROJECTOR\GUI


Cookie: BS.Serving-Sys Cookie (General) more information...
Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs.
Status: Ignored

Cookies detected
c:\dokumente und einstellungen\owner\cookies\owner@bs.serving-sys[1].txt
c:\dokumente und einstellungen\owner\cookies\owner@bs.serving-sys[2].txt
c:\dokumente und einstellungen\owner\cookies\owner@serving-sys[1].txt
c:\dokumente und einstellungen\owner\cookies\owner@serving-sys[2].txt
c:\dokumente und einstellungen\owner\cookies\owner@serving-sys[3].txt
c:\dokumente und einstellungen\owner\cookies\owner@serving-sys[4].txt
c:\dokumente und einstellungen\owner\cookies\owner@serving-sys[5].txt


Cookie: BurstNet.com Cookie (General) more information...
Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs.
Status: Ignored

Cookies detected
c:\dokumente und einstellungen\owner\cookies\owner@burstnet[1].txt


Cookie: CGI-Bin Cookie (General) more information...
Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs.
Status: Ignored

Cookies detected
c:\dokumente und einstellungen\owner\cookies\owner@cgi-bin[1].txt
c:\dokumente und einstellungen\owner\cookies\owner@cgi-bin[3].txt
c:\dokumente und einstellungen\owner\cookies\owner@cgi-bin[4].txt
c:\dokumente und einstellungen\owner\cookies\owner@cgi-bin[5].txt
c:\dokumente und einstellungen\owner\cookies\owner@cgi-bin[6].txt
c:\dokumente und einstellungen\owner\cookies\owner@cgi-bin[8].txt


Cookie: Citi.BridgeTrack Cookie (General) more information...
Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs.
Status: Ignored

Cookies detected
c:\dokumente und einstellungen\owner\cookies\owner@citi.bridgetrack[1].txt


ClipGenie Adware (General) more information...
Details: ClipGenie.com is a subscription-based entertainment portal that allows you to purchase and view movies on your computer. ClipGenie displays banner ads in its user interface and usually bundled with file sharing programs.
Status: Ignored

Files detected
C:\Programme\MediaLoads\medialoads\media\channels\bikini\gui\bikpreview.wmv
C:\Programme\MediaLoads\medialoads\media\channels\bikini\gui\icon.gif
C:\Programme\MediaLoads\medialoads\media\channels\bikini\gui\icon_new.gif
C:\Programme\MediaLoads\medialoads\media\channels\casino\gui\casinopreview.wmv
C:\Programme\MediaLoads\medialoads\media\channels\casino\gui\icon.gif
C:\Programme\MediaLoads\medialoads\media\channels\casino\gui\icon_new.gif
C:\Programme\MediaLoads\medialoads\media\channels\celebs\gui\celebpreview.wmv
C:\Programme\MediaLoads\medialoads\media\channels\celebs\gui\icon.gif
C:\Programme\MediaLoads\medialoads\media\channels\celebs\gui\icon_new.gif
C:\Programme\MediaLoads\medialoads\media\channels\comingsoon\gui\mid.gif
C:\Programme\MediaLoads\medialoads\media\channels\extreme\gui\extpreview.wmv
C:\Programme\MediaLoads\medialoads\media\channels\extreme\gui\icon.gif
C:\Programme\MediaLoads\medialoads\media\channels\extreme\gui\icon_new.gif
C:\Programme\MediaLoads\medialoads\media\channels\groovy\gui\grvpreview.wmv
C:\Programme\MediaLoads\medialoads\media\channels\groovy\gui\icon.gif
C:\Programme\MediaLoads\medialoads\media\channels\groovy\gui\icon_new.gif
C:\Programme\MediaLoads\medialoads\media\channels\weird\gui\icon_new.gif
C:\Programme\MediaLoads\medialoads\media\channels\weird\gui\wrdpreview.wmv
C:\Programme\MediaLoads\medialoads\media\gui\player\f1_2b_categories.html
C:\Programme\MediaLoads\medialoads\media\gui\player\player.html
C:\Programme\MediaLoads\medialoads\media\gui\player\playerslices.htm
C:\Programme\MediaLoads\medialoads\media\gui\player\scroller.swf

Registry entries detected
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\MEDIALOADS ENHANCED
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\MEDIALOADS ENHANCED
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\MEDIALOADS ENHANCED


Cookie: CMS Cookie (General) more information...
Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs.
Status: Ignored

Cookies detected
c:\dokumente und einstellungen\owner\cookies\owner@cms[2].txt


Cookie: Com.com Cookie (General) more information...
Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs.
Status: Ignored

Cookies detected
c:\dokumente und einstellungen\owner\cookies\owner@com[1].txt
c:\dokumente und einstellungen\owner\cookies\owner@com[2].txt
c:\dokumente und einstellungen\owner\cookies\owner@com[3].txt


Cookie: CoreMetrics.com Cookie (General) more information...
Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs.
Status: Ignored

Cookies detected
c:\dokumente und einstellungen\owner\cookies\owner@data.coremetrics[1].txt


Cydoor Adware (General) more information...
Details: Cydoor is an adware program that downloads advertisements from a server and displays them on your computer.
Status: Ignored

Registry entries detected
HKEY_LOCAL_MACHINE\SOFTWARE\CYDOOR
HKEY_LOCAL_MACHINE\SOFTWARE\CYDOOR
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\CYDOOR
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\CYDOOR
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\CYDOOR
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\CYDOOR
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\CYDOOR
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\CYDOOR
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\CYDOOR
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\CYDOOR
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\CYDOOR
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\CYDOOR
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\CYDOOR
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\CYDOOR
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\CYDOOR
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\CYDOOR
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\CYDOOR
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\CYDOOR


Cookie: Desktop.kazaa.com Cookie (General) more information...
Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs.
Status: Ignored

Cookies detected
c:\dokumente und einstellungen\owner\cookies\owner@desktop.kazaa[1].txt
c:\dokumente und einstellungen\owner\cookies\owner@desktop.kazaa[2].txt
c:\dokumente und einstellungen\owner\cookies\owner@desktop.kazaa[4].txt


Cookie: DomainSponsor.com Cookie (General) more information...
Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs.
Status: Ignored

Cookies detected
c:\dokumente und einstellungen\owner\cookies\owner@domainsponsor[1].txt
c:\dokumente und einstellungen\owner\cookies\owner@domainsponsor[2].txt
c:\dokumente und einstellungen\owner\cookies\owner@domainsponsor[3].txt


Cookie: DoubleClick Cookie (General) more information...
Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs.
Status: Ignored

Cookies detected
c:\dokumente und einstellungen\owner\cookies\owner@doubleclick[1].txt


DownloadWare Adware (General) more information...
Details: DownloadWare is a process that runs on Windows startup. If a network connection is available it will connect to its servers, which can direct it to download and install software from advertisers. It may be installed through an ActiveX control.
Status: Ignored

Files detected
C:\PROGRAMME\DOWNLOADWARE\Cfg\1013.pid
C:\PROGRAMME\DOWNLOADWARE\Cfg\51.dl
C:\PROGRAMME\DOWNLOADWARE\Cfg\90.dl
C:\PROGRAMME\DOWNLOADWARE\Cfg\global.cfg
C:\PROGRAMME\DOWNLOADWARE\Cfg\status.cfg
C:\PROGRAMME\DOWNLOADWARE\Cfg\user.cfg
C:\PROGRAMME\DOWNLOADWARE
C:\PROGRAMME\DOWNLOADWARE\CFG
C:\PROGRAMME\DOWNLOADWARE\DOWNLOADS
C:\PROGRAMME\DOWNLOADWARE\TEMP

Registry entries detected
HKEY_LOCAL_MACHINE\SOFTWARE\DOWNLOADWARE
HKEY_LOCAL_MACHINE\SOFTWARE\DOWNLOADWARE\Prefs
HKEY_LOCAL_MACHINE\SOFTWARE\DOWNLOADWARE\Prefs
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\MEDIALOADS INSTALLER
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\MEDIALOADS INSTALLER
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\MEDIALOADS INSTALLER
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\DOWNLOADWARE
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\DOWNLOADWARE\Prefs
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\DOWNLOADWARE\Prefs
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\DOWNLOADWARE\Prefs
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\DOWNLOADWARE\Prefs
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\DOWNLOADWARE\Prefs
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\DOWNLOADWARE\Prefs
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\DOWNLOADWARE\Prefs
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\DOWNLOADWARE\Prefs
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\DOWNLOADWARE\Prefs
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\DOWNLOADWARE\Prefs
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\DOWNLOADWARE\Prefs
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\DOWNLOADWARE\Prefs
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\DOWNLOADWARE\Prefs
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\DOWNLOADWARE\Prefs
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\DOWNLOADWARE\Prefs
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\DOWNLOADWARE\Prefs
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\DOWNLOADWARE\Prefs
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\DOWNLOADWARE\Prefs
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\DOWNLOADWARE\Prefs
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\DOWNLOADWARE\Prefs
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\DOWNLOADWARE\Prefs
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\DOWNLOADWARE\Prefs
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\MEDIALOADS
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\MEDIALOADS\Enhanced
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\MEDIALOADS\Enhanced
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\MEDIALOADS\Enhanced
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\MEDIALOADS\Enhanced\Params
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\MEDIALOADS\Enhanced\Params
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\MEDIALOADS\Enhanced\Params
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\MEDIALOADS\Enhanced\Params
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\MEDIALOADS\Enhanced\Params
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\MEDIALOADS\Enhanced\Params
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\MEDIALOADS\Enhanced
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\MEDIALOADS\Enhanced
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\MEDIALOADS\Enhanced
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\MEDIALOADS\Prefs
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\MEDIALOADS\Prefs
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\MEDIALOADS\Prefs


Cookie: Hitbox.com Cookie (General) more information...
Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs.
Status: Ignored

Cookies detected
c:\dokumente und einstellungen\owner\cookies\owner@hg1.hitbox[1].txt
c:\dokumente und einstellungen\owner\cookies\owner@hg1.hitbox[2].txt
c:\dokumente und einstellungen\owner\cookies\owner@hg1.hitbox[4].txt
c:\dokumente und einstellungen\owner\cookies\owner@hg1.hitbox[5].txt
c:\dokumente und einstellungen\owner\cookies\owner@hitbox[1].txt
c:\dokumente und einstellungen\owner\cookies\owner@hitbox[2].txt
c:\dokumente und einstellungen\owner\cookies\owner@hitbox[3].txt
c:\dokumente und einstellungen\owner\cookies\owner@hitbox[4].txt
c:\dokumente und einstellungen\owner\cookies\owner@hitbox[5].txt
c:\dokumente und einstellungen\owner\cookies\owner@hitbox[6].txt
c:\dokumente und einstellungen\owner\cookies\owner@hitbox[8].txt
c:\dokumente und einstellungen\owner\cookies\owner@phg.hitbox[2].txt
c:\dokumente und einstellungen\owner\cookies\owner@phg.hitbox[3].txt


Cookie: FastClick.com Cookie (General) more information...
Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs.
Status: Ignored

Cookies detected
c:\dokumente und einstellungen\owner\cookies\owner@fastclick[1].txt
c:\dokumente und einstellungen\owner\cookies\owner@fastclick[2].txt
c:\dokumente und einstellungen\owner\cookies\owner@fastclick[3].txt
c:\dokumente und einstellungen\owner\cookies\owner@fastclick[4].txt
c:\dokumente und einstellungen\owner\cookies\owner@fastclick[5].txt
c:\dokumente und einstellungen\owner\cookies\owner@fastclick[6].txt
c:\dokumente und einstellungen\owner\cookies\owner@fastclick[7].txt
c:\dokumente und einstellungen\owner\cookies\owner@fastclick[8].txt
c:\dokumente und einstellungen\owner\cookies\owner@fastclick[9].txt


Cookie: FortuneCity.com Cookie (General) more information...
Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs.
Status: Ignored

Cookies detected
c:\dokumente und einstellungen\owner\cookies\owner@fortunecity[1].txt
c:\dokumente und einstellungen\owner\cookies\owner@fortunecity[2].txt


Claria.GAIN.CommonElements Adware (General) more information...
Details: Claria's GAIN network consists of several applications inlcuding Gator eWallet, GotSmiley, ScreenSeenes, WebSecureAlert, DashBar, Weatherscope, Date Manager and Precision Time.
Status: Ignored

Registry entries detected
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{21FFB6C0-0DA1-11D5-A9D5-00500413153C}
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{21FFB6C0-0DA1-11D5-A9D5-00500413153C}
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{21FFB6C0-0DA1-11D5-A9D5-00500413153C}
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{21FFB6C0-0DA1-11D5-A9D5-00500413153C}
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{21FFB6C0-0DA1-11D5-A9D5-00500413153C}
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{21FFB6C0-0DA1-11D5-A9D5-00500413153C}
HKEY_LOCAL_MACHINE\SOFTWARE\GATOR.COM
HKEY_LOCAL_MACHINE\SOFTWARE\GATOR.COM\Gator
HKEY_LOCAL_MACHINE\SOFTWARE\GATOR.COM\Gator\dyn
HKEY_LOCAL_MACHINE\SOFTWARE\GATOR.COM\Gator\dyn\GUS
HKEY_LOCAL_MACHINE\SOFTWARE\GATOR.COM\Gator\dyn\GUS
HKEY_LOCAL_MACHINE\SOFTWARE\GATOR.COM\Gator\dyn
HKEY_LOCAL_MACHINE\SOFTWARE\GATOR.COM\Gator\stat
HKEY_LOCAL_MACHINE\SOFTWARE\GATOR.COM\Gator\stat
HKEY_LOCAL_MACHINE\SOFTWARE\GATOR.COM\Gator\stat
HKEY_LOCAL_MACHINE\SOFTWARE\GATOR.COM\trickles
HKEY_LOCAL_MACHINE\SOFTWARE\GATOR.COM\trickles\TRICKLER_3210
HKEY_LOCAL_MACHINE\SOFTWARE\GATOR.COM\trickles\TRICKLER_3210\Trickler
HKEY_LOCAL_MACHINE\SOFTWARE\GATOR.COM\trickles\TRICKLER_3210\Trickler\trickle.gator.com:80/download/3305.gsz
HKEY_LOCAL_MACHINE\SOFTWARE\GATOR.COM\trickles\TRICKLER_3210\Trickler\trickle.gator.com:80/download/3305.gsz
HKEY_LOCAL_MACHINE\SOFTWARE\GATOR.COM\trickles\TRICKLER_3210\Trickler\trickle.gator.com:80/download/3305.gsz
HKEY_LOCAL_MACHINE\SOFTWARE\GATOR.COM\trickles\TRICKLER_3210\Trickler\trickle.gator.com:80/download/3305.gsz
HKEY_LOCAL_MACHINE\SOFTWARE\GATOR.COM\trickles\TRICKLER_3210\Trickler\trickle.gator.com:80/download/PdpSetup3201.ex_
HKEY_LOCAL_MACHINE\SOFTWARE\GATOR.COM\trickles\TRICKLER_3210\Trickler\trickle.gator.com:80/download/PdpSetup3201.ex_
HKEY_LOCAL_MACHINE\SOFTWARE\GATOR.COM\trickles\TRICKLER_3210\Trickler\trickle.gator.com:80/download/PdpSetup3201.ex_
HKEY_LOCAL_MACHINE\SOFTWARE\GATOR.COM\trickles\TRICKLER_3210\Trickler\trickle.gator.com:80/download/PdpSetup3201.ex_
HKEY_LOCAL_MACHINE\SOFTWARE\GATOR.COM\trickles\TRICKLER_3210\Trickler\trickle.gator.com:80/download/trickler3.inf
HKEY_LOCAL_MACHINE\SOFTWARE\GATOR.COM\trickles\TRICKLER_3210\Trickler\trickle.gator.com:80/download/trickler3.inf
HKEY_LOCAL_MACHINE\SOFTWARE\GATOR.COM\trickles\TRICKLER_3210\Trickler\trickle.gator.com:80/download/trickler3.inf
HKEY_LOCAL_MACHINE\SOFTWARE\GATOR.COM\trickles\TRICKLER_3210\Trickler\trickle.gator.com:80/download/trickler3.inf
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\MODULEUSAGE\C:/WINDOWS/DOWNLOADED PROGRAM FILES/IEGATOR.DLL
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\MODULEUSAGE\C:/WINDOWS/DOWNLOADED PROGRAM FILES/IEGATOR.DLL
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\MODULEUSAGE\C:/WINDOWS/DOWNLOADED PROGRAM FILES/IEGATOR.DLL


Cookie: Gator.com Cookie (General) more information...
Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs.
Status: Ignored

Cookies detected
c:\dokumente und einstellungen\owner\cookies\owner@gator[1].txt


Cookie: GeoCities Cookie (General) more information...
Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs.
Status: Ignored

Cookies detected
c:\dokumente und einstellungen\owner\cookies\owner@geocities[1].txt
c:\dokumente und einstellungen\owner\cookies\owner@geocities[2].txt
c:\dokumente und einstellungen\owner\cookies\owner@geocities[3].txt
c:\dokumente und einstellungen\owner\cookies\owner@geocities[4].txt
c:\dokumente und einstellungen\owner\cookies\owner@geocities[5].txt


Cookie: HC2.HumanClick Cookie (General) more information...
Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs.
Status: Ignored

Cookies detected
c:\dokumente und einstellungen\owner\cookies\owner@hc2.humanclick[2].txt


Cookie: IndexTools.com Cookie (General) more information...
Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs.
Status: Ignored

Cookies detected
c:\dokumente und einstellungen\owner\cookies\owner@indextools[1].txt
c:\dokumente und einstellungen\owner\cookies\owner@indextools[2].txt


KaZaA P2P Program more information...
Details: KaZaA is a peer-to-peer (P2P) application that allows its users to join together in a network via the Internet and share files from each other's hard drives.
Status: Ignored

Registry entries detected
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\KAZAA
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\KAZAA
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\KAZAA
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\KAZAA\ResultsFilter
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\KAZAA\ResultsFilter
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\KAZAA\ResultsFilter
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\KAZAA\Search
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\KAZAA\Search
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\KAZAA\Search
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\KAZAA\Search
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\KAZAA\Search
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\KAZAA\Search
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\KAZAA\Search
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\KAZAA\Search
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\KAZAA\Search
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\KAZAA\Search
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\KAZAA\Search
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\KAZAA\Search
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\KAZAA\Search
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\KAZAA\Settings
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\KAZAA\Settings
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\KAZAA\Settings
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\KAZAA\Transfer
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\KAZAA\Transfer
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\KAZAA\Transfer
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\KAZAA\Transfer
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\KAZAA\Transfer
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\KAZAA\Transfer
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\KAZAA\UserDetails
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\KAZAA\UserDetails
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\KAZAA\UserDetails
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\KAZAA\UserDetails
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\KAZAA\UserDetails
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\KAZAA\UserDetails
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\KAZAA\UserDetails
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\KAZAA\UserDetails
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\KAZAA\UserDetails


Cookie: Lop.com Cookie (General) more information...
Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs.
Status: Ignored

Cookies detected
c:\dokumente und einstellungen\owner\cookies\owner@lop[1].txt
c:\dokumente und einstellungen\owner\cookies\owner@lop[2].txt


C2.Lop Hijacker more information...
Details: Lop is a group of spyware and hijacker programs that set your Internet Explorer start page and search features to use the site lop.com ('Live Online Portal') or one of its clone sites.
Status: Ignored

Files detected
C:\Dokumente und Einstellungen\Owner\Anwendungsdaten\ctstckr.lib
C:\Dokumente und Einstellungen\Owner\Favoriten\ Adult Entertainment.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Adult\Adult Chat.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Adult\Amateur Photo.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Adult\Asian Sex.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Adult\Ebony.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Adult\Fetish.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Adult\Gay and Lesbian.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Adult\Hardcore.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Adult\Live Video Feeds.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Adult\Matchmaking.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Adult\XXX Cartoons.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Business and Finance\B to B.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Business and Finance\Banking.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Business and Finance\Business.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Business and Finance\Careers.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Business and Finance\Credit Cards.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Business and Finance\Finance.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Business and Finance\Insurance.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Business and Finance\Office.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Business and Finance\Printing.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Computers and Tech\Computer Games.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Computers and Tech\Computer Stores.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Computers and Tech\Dedicated Server.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Computers and Tech\Domain Names.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Computers and Tech\Hardware.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Computers and Tech\Laptops.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Computers and Tech\Software.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Computers and Tech\Telecommunication\Mobile Phones.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Computers and Tech\Telecommunication\Telecommunication.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Computers and Tech\Telecommunication\Telephone.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Computers and Tech\Telecommunication\Text SMS Messaging.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Computers and Tech\Web Design.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Computers and Tech\Web Hosting.url
C:\DOKUMENTE UND EINSTELLUNGEN\Owner\FAVORITEN\ COOL STUFF\Auction.url
C:\DOKUMENTE UND EINSTELLUNGEN\Owner\FAVORITEN\ COOL STUFF\Classifieds.url
C:\DOKUMENTE UND EINSTELLUNGEN\Owner\FAVORITEN\ COOL STUFF\Free Emails.url
C:\DOKUMENTE UND EINSTELLUNGEN\Owner\FAVORITEN\ COOL STUFF\Free Homepages.url
C:\DOKUMENTE UND EINSTELLUNGEN\Owner\FAVORITEN\ COOL STUFF\Free Services.url
C:\DOKUMENTE UND EINSTELLUNGEN\Owner\FAVORITEN\ COOL STUFF\School Essays and Homework.url
C:\DOKUMENTE UND EINSTELLUNGEN\Owner\FAVORITEN\ COOL STUFF\Services.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Entertainment\Automotive.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Entertainment\DVD.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Entertainment\Entertainment.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Entertainment\Hot Games and Gaming.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Entertainment\Mp3.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Entertainment\Travel.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Gambling.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Gambling\Black Jack.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Gambling\Chips.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Gambling\Craps.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Gambling\Multi Player.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Gambling\Online Casinos.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Gambling\Poker.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Gambling\Roulette.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Gambling\Slots.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Gambling\Sports Books.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Games.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ MP3 Music.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ News.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ On Lifestyle\Art.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ On Lifestyle\Astrology.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ On Lifestyle\Books.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ On Lifestyle\Community.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ On Lifestyle\eBooks.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ On Lifestyle\Education\Education.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ On Lifestyle\Education\Training.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ On Lifestyle\Health and Beauty\Beauty.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ On Lifestyle\Health and Beauty\Health and Fitness.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ On Lifestyle\Health and Beauty\Pharmacy.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ On Lifestyle\Home and Garden\Construction.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ On Lifestyle\Home and Garden\Furniture.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ On Lifestyle\Home and Garden\Home and Garden.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ On Lifestyle\Home and Garden\Real Estate.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ On Lifestyle\Home and Garden\Utilities.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ On Lifestyle\Kids.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ On Lifestyle\Magazines.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ On Lifestyle\Pets.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ On Lifestyle\Self Help.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ On Lifestyle\Wine.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ On Lifestyle\Women.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Shopping and Gifts\Accessories.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Shopping and Gifts\Apparel.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Shopping and Gifts\Cards.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Shopping and Gifts\Electronics.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Shopping and Gifts\Flowers.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Shopping and Gifts\Gifts.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Shopping and Gifts\Jewlery.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Shopping and Gifts\Retail Products.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Shopping and Gifts\Shoes.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Shopping and Gifts\Shopping.url
C:\Dokumente und Einstellungen\Owner\Favoriten\ Shopping and Gifts\Toys.url
C:\DOKUMENTE UND EINSTELLUNGEN\OWNER\FAVORITEN\ COOL STUFF

Registry entries detected
HKEY_LOCAL_MACHINE\Software\Classes\TYPELIB\{C65CAD7F-E382-4B90-95C6-89123D0AEE61}
HKEY_LOCAL_MACHINE\Software\Classes\TYPELIB\{C65CAD7F-E382-4B90-95C6-89123D0AEE61}\1.0
HKEY_LOCAL_MACHINE\Software\Classes\TYPELIB\{C65CAD7F-E382-4B90-95C6-89123D0AEE61}\1.0
HKEY_LOCAL_MACHINE\Software\Classes\TYPELIB\{C65CAD7F-E382-4B90-95C6-89123D0AEE61}\1.0\0
HKEY_LOCAL_MACHINE\Software\Classes\TYPELIB\{C65CAD7F-E382-4B90-95C6-89123D0AEE61}\1.0\0\win32
HKEY_LOCAL_MACHINE\Software\Classes\TYPELIB\{C65CAD7F-E382-4B90-95C6-89123D0AEE61}\1.0\0\win32
HKEY_LOCAL_MACHINE\Software\Classes\TYPELIB\{C65CAD7F-E382-4B90-95C6-89123D0AEE61}\1.0\FLAGS
HKEY_LOCAL_MACHINE\Software\Classes\TYPELIB\{C65CAD7F-E382-4B90-95C6-89123D0AEE61}\1.0\FLAGS
HKEY_LOCAL_MACHINE\Software\Classes\TYPELIB\{C65CAD7F-E382-4B90-95C6-89123D0AEE61}\1.0\HELPDIR
HKEY_LOCAL_MACHINE\Software\Classes\TYPELIB\{C65CAD7F-E382-4B90-95C6-89123D0AEE61}\1.0\HELPDIR
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\TOOLBAR\WEBBROWSER


Mainpean Stardialer Porn Dialer more information...
Details: Mainpean Stardialer is a dialer distributed by slsk.org, a faked SoulSeek domain.
Status: Ignored

Registry entries detected
HKEY_LOCAL_MACHINE\SOFTWARE\MAINPEAN HIGHSPEED
HKEY_LOCAL_MACHINE\SOFTWARE\MAINPEAN HIGHSPEED
HKEY_LOCAL_MACHINE\SOFTWARE\MAINPEAN HIGHSPEED
HKEY_LOCAL_MACHINE\SOFTWARE\MAINPEAN HIGHSPEED
HKEY_LOCAL_MACHINE\SOFTWARE\MAINPEAN HIGHSPEED
HKEY_LOCAL_MACHINE\SOFTWARE\MAINPEAN HIGHSPEED
HKEY_LOCAL_MACHINE\SOFTWARE\MAINPEAN HIGHSPEED
HKEY_LOCAL_MACHINE\SOFTWARE\MAINPEAN HIGHSPEED
HKEY_LOCAL_MACHINE\SOFTWARE\MAINPEAN HIGHSPEED
HKEY_LOCAL_MACHINE\SOFTWARE\MAINPEAN HIGHSPEED


DownloadWare.MediaLoads Browser Plug-in more information...
Details: DownloadWare MediaLoads, a Downloadware variant will connect to its servers, which can direct it to download and install software from advertisers.
Status: Ignored

Files detected
C:\Programme\MediaLoads Enhanced\install.exe


Cookie: Mediaplex.com Cookie (General) more information...
Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs.
Status: Ignored

Cookies detected
c:\dokumente und einstellungen\owner\cookies\owner@mediaplex[1].txt
c:\dokumente und einstellungen\owner\cookies\owner@mediaplex[2].txt
c:\dokumente und einstellungen\owner\cookies\owner@mediaplex[3].txt
c:\dokumente und einstellungen\owner\cookies\owner@mediaplex[4].txt
c:\dokumente und einstellungen\owner\cookies\owner@mediaplex[5].txt


NetworkEssentials.BHO Browser Plug-in more information...
Details: Network Essentials is an IE Browser Helper Object which monitors URLs being viewed in the web browser.
Status: Ignored

Files detected
C:\PROGRAMME\MEDIALOADS ENHANCED\install.exe
C:\PROGRAMME\MEDIALOADS ENHANCED

Registry entries detected
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\HOPPER
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\HOPPER
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\UPDATER
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\UPDATER


NewDotNet Browser Plug-in more information...
Details: New.Net is an Internet Explorer spyware/hijacker plug-in that adds subdomains of 'new.net' to your name resolution system (Windows Host file), resulting in what appear to be extra top-level domains (.shop, and so on) being resolvable.
Status: Ignored

Files detected
C:\PROGRAMME\NEWDOTNET\newnet.log
C:\PROGRAMME\NEWDOTNET\readme.html
C:\PROGRAMME\NEWDOTNET

Registry entries detected
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\APP MANAGEMENT\ARPCACHE\NEW.NET
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\APP MANAGEMENT\ARPCACHE\NEW.NET
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\APP MANAGEMENT\ARPCACHE\NEW.NET
HKEY_LOCAL_MACHINE\SOFTWARE\NEW.NET
HKEY_LOCAL_MACHINE\SOFTWARE\NEW.NET
HKEY_LOCAL_MACHINE\SOFTWARE\NEW.NET
HKEY_LOCAL_MACHINE\SOFTWARE\NEW.NET
HKEY_LOCAL_MACHINE\SOFTWARE\NEW.NET
HKEY_LOCAL_MACHINE\SOFTWARE\NEW.NET
HKEY_LOCAL_MACHINE\SOFTWARE\NEW.NET
HKEY_LOCAL_MACHINE\SOFTWARE\NEW.NET
HKEY_LOCAL_MACHINE\SOFTWARE\NEW.NET
HKEY_LOCAL_MACHINE\SOFTWARE\NEW.NET
HKEY_LOCAL_MACHINE\SOFTWARE\NEW.NET
HKEY_LOCAL_MACHINE\SOFTWARE\NEW.NET
HKEY_LOCAL_MACHINE\SOFTWARE\NEW.NET
HKEY_USERS\.DEFAULT\SOFTWARE\NEW.NET
HKEY_USERS\S-1-5-18\SOFTWARE\NEW.NET
HKEY_USERS\S-1-5-21-874574627-2650805779-3784137826-1005\SOFTWARE\NEW.NET


Cookie: Overture.com Cookie (General) more information...
Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs.
Status: Ignored

Cookies detected
c:\dokumente und einstellungen\owner\cookies\owner@overture[1].txt
c:\dokumente und einstellungen\owner\cookies\owner@overture[2].txt


Cookie: PointRoll.com Cookie (General) more information...
Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs.
Status: Ignored

Cookies detected
c:\dokumente und einstellungen\owner\cookies\owner@ads.pointroll[2].txt
c:\dokumente und einstellungen\owner\cookies\owner@ads.pointroll[3].txt


Cookie: PopupSponsor Cookie (General) more information...
Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs.
Status: Ignored

Cookies detected
c:\dokumente und einstellungen\owner\cookies\owner@popupsponsor[2].txt


Cookie: QuestionMarket.com Cookie (General) more information...
Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs.
Status: Ignored

Cookies detected
c:\dokumente und einstellungen\owner\cookies\owner@questionmarket[1].txt
c:\dokumente und einstellungen\owner\cookies\owner@questionmarket[2].txt
c:\dokumente und einstellungen\owner\cookies\owner@questionmarket[3].txt
c:\dokumente und einstellungen\owner\cookies\owner@questionmarket[4].txt
c:\dokumente und einstellungen\owner\cookies\owner@questionmarket[5].txt


Cookie: RealMedia.com Cookie (General) more information...
Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs.
Status: Ignored

Cookies detected
c:\dokumente und einstellungen\owner\cookies\owner@realmedia[1].txt
c:\dokumente und einstellungen\owner\cookies\owner@realmedia[3].txt


Cookie: Revenue.net Cookie (General) more information...
Details: Cookies are small "data tags" that web sites store on PCs in order to recognize unique visitors. Cookies are used to identify returning visitors who have registered for special services; to measure and analyze visitors' use of web site features; to count unique visitors to web pages; and to allow web surfers to use virtual "shopping carts." Online advertising networks use cookies to track users across web sites and to measure ad impressions and click-throughs.
Status: Ignored

Cookies detected
c:\dokumente und einstellungen\owner\cookies\owner@revenue[1].txt
c:\dokumente und einstellungen\owner\coo
Seitenanfang Seitenende
09.02.2007, 00:47
Ehrenmitglied
Avatar Sabina

Beiträge: 29434
#33 was soll das ? - Status: Ignored - du solltest alles in Quarantaene schicken !!
bei so einem schlecht gepflegten,verseuchten , mit P2P-Software + zugehoeriger Spyware vollgeknalltem PC - sollte man nicht zoegern und alles reinigen lassen.
__________
MfG Sabina

rund um die PC-Sicherheit
Seitenanfang Seitenende
10.02.2007, 14:20
Member

Beiträge: 12
#34 Sorry, das war wohl ein Bedienungsfehler von mir. Hatte eigentlich gedacht ich hätte alle auf "Quarantine gestellt.

Der PC wurde ganz überwiegend von meinen Söhnen genutzt. Daher auch die ganzen Probleme.

Habe heute nochmals zuerst mit counterspy einen scan gemacht und dann mit HijackThis einen log erstellt. Hier nun das Ergebnis (hoffentlich war es diesmal richtig):

Logfile of HijackThis v1.99.1
Scan saved at 14:09:18, on 10.02.2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\Programme\Gemeinsame Dateien\AOL\ACS\AOLAcsd.exe
C:\Programme\AVPersonal\AVWUPSRV.EXE
C:\Programme\VeriSign\NAVI\naviagent.exe
C:\PROGRA~1\NORTON~1\NORTON~1\NPROTECT.EXE
C:\WINDOWS\system32\pctspk.exe
C:\Programme\Sunbelt Software\CounterSpy\SBCSSvc.exe
C:\PROGRA~1\NORTON~1\NORTON~1\SPEEDD~1\NOPDB.EXE
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\NVATray.exe
C:\WINDOWS\mHotkey.exe
C:\Programme\Gemeinsame Dateien\Microsoft Shared\Works Shared\WkUFind.exe
C:\PROGRA~1\TEXTBR~1.0\Bin\INSTAN~1.EXE
C:\Programme\Lexmark X74-X75\lxbbbmgr.exe
C:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe
C:\Programme\Java\jre1.5.0_06\bin\jusched.exe
C:\Programme\Lexmark X74-X75\lxbbbmon.exe
C:\Programme\QuickTime\qttask.exe
C:\Programme\iTunes\iTunesHelper.exe
C:\Programme\Gemeinsame Dateien\AOL\1165598589\ee\AOLSoftware.exe
C:\Programme\Sunbelt Software\CounterSpy\SBCSTray.exe
C:\Programme\Skype\Phone\Skype.exe
C:\Programme\Gemeinsame Dateien\Microsoft Shared\Works Shared\wkcalrem.exe
C:\Programme\Ulead Systems\Ulead PhotoImpact 6\ABMTSR.EXE
C:\Programme\AOL 9.0\aoltray.exe
C:\Programme\ZyAIR G-200\OdHost.exe
C:\Programme\Microsoft Office\Office\OSA.EXE
C:\Programme\Microsoft Office\Office\FINDFAST.EXE
C:\Programme\TextBridge Pro 8.0\Ereg\REMIND32.EXE
C:\Programme\iPod\bin\iPodService.exe
C:\Meine Downloads\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.aol.de/e60/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer bereitgestellt von AOL
R3 - URLSearchHook: i-Nav IDN SearchHook - {CE000994-A58C-4441-8938-744CD72AB27F} - C:\Programme\VeriSign\i-Nav\i-nav_4_2_0.dll
R3 - URLSearchHook: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Programme\ICQToolbar\toolbaru.dll
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Programme\Yahoo!\Companion\Installs\cpn\ycomp5_5_7_0.dll
O2 - BHO: XBTP06568 Class - {311F9DE8-6126-4EEE-B15F-65CBB3B4F9F6} - C:\Programme\AOL Security Toolbar\AOL_security_toolbar.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programme\google\googletoolbar1.dll
O2 - BHO: i-Nav IDN Resolver - {CE000992-A58C-4441-8938-744CD72AB27F} - C:\Programme\VeriSign\i-Nav\i-nav_4_2_0.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programme\google\googletoolbar1.dll
O3 - Toolbar: Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Programme\Yahoo!\Companion\Installs\cpn\ycomp5_5_7_0.dll
O3 - Toolbar: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Programme\ICQToolbar\toolbaru.dll
O3 - Toolbar: AOL Security Toolbar - {3BB63FD4-3C00-44D7-94A9-5DE211900DEF} - C:\Programme\AOL Security Toolbar\AOL_security_toolbar.dll
O4 - HKLM\..\Run: [NVIDIA nForce APU1 Utilities] NVATray.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE NvQTwk,NvCplDaemon initialize
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [CHotkey] mHotkey.exe
O4 - HKLM\..\Run: [Microsoft Works Portfolio] C:\Programme\Microsoft Works\WksSb.exe /AllUsers
O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Programme\Gemeinsame Dateien\Microsoft Shared\Works Shared\WkUFind.exe
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\System32\NeroCheck.exe
O4 - HKLM\..\Run: [InstantAccess] C:\PROGRA~1\TEXTBR~1.0\Bin\INSTAN~1.EXE /h
O4 - HKLM\..\Run: [RegisterDropHandler] C:\PROGRA~1\TEXTBR~1.0\Bin\REGIST~1.EXE
O4 - HKLM\..\Run: [Lexmark X74-X75] "C:\Programme\Lexmark X74-X75\lxbbbmgr.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Programme\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [AOLDialer] C:\Programme\Gemeinsame Dateien\AOL\ACS\AOLDial.exe
O4 - HKLM\..\Run: [ICQ Lite] "C:\Programme\ICQLite\ICQLite.exe" -minimize
O4 - HKLM\..\Run: [QuickTime Task] "C:\Programme\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Programme\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [HostManager] C:\Programme\Gemeinsame Dateien\AOL\1165598589\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [QD FastAndSafe] C:\Programme\Norton SystemWorks\Norton CleanSweep\QDCSFS.exe /startup
O4 - HKLM\..\Run: [SBCSTray] C:\Programme\Sunbelt Software\CounterSpy\SBCSTray.exe
O4 - HKLM\..\RunServices: [RegisterDropHandler] C:\PROGRA~1\TEXTBR~1.0\Bin\REGIST~1.EXE
O4 - HKCU\..\Run: [msnmsgr] "C:\Programme\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Skype] "C:\Programme\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\RunOnce: [ICQ Lite] C:\Programme\ICQLite\ICQLite.exe -trayboot
O4 - Startup: ADILOOK Deutsche Version auf Laufwerk C.LNK = C:\COKTEL\ADDY4\ADILOOK.EXE
O4 - Startup: Office-Start.lnk = C:\Programme\Microsoft Office\Office\OSA.EXE
O4 - Startup: Microsoft-Indexerstellung.lnk = C:\Programme\Microsoft Office\Office\FINDFAST.EXE
O4 - Startup: reminder-ScanSoft Produkt Registrierung.lnk = C:\Programme\TextBridge Pro 8.0\Ereg\REMIND32.EXE
O4 - Startup: ERUNT AutoBackup.lnk = C:\Programme\ERUNT\AUTOBACK.EXE
O4 - Global Startup: Microsoft Office.lnk = C:\Programme\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Erinnerungen in Microsoft Works-Kalender.lnk = ?
O4 - Global Startup: Album Schnellstart.lnk = C:\Programme\Ulead Systems\Ulead PhotoImpact 6\ABMTSR.EXE
O4 - Global Startup: AOL 9.0 Tray-Symbol.lnk = C:\Programme\AOL 9.0\aoltray.exe
O4 - Global Startup: Adobe Reader - Schnellstart.lnk = C:\Programme\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: ZyAIR G-200 Wireless LAN Utility.lnk = C:\Programme\ZyAIR G-200\Startup.exe
O8 - Extra context menu item: &Google Search - res://C:\Programme\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: &ICQ Toolbar Search - res://C:\Programme\ICQToolbar\toolbaru.dll/SEARCH.HTML
O8 - Extra context menu item: Backward &Links - res://C:\Programme\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cac&hed Snapshot of Page - res://C:\Programme\Google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: Si&milar Pages - res://C:\Programme\Google\GoogleToolbar1.dll/cmsimilar.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: ICQ - {6224f700-cba3-4071-b251-47cb894244cd} - C:\Programme\ICQ\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ - {6224f700-cba3-4071-b251-47cb894244cd} - C:\Programme\ICQ\ICQ.exe
O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Programme\PartyGaming\PartyPoker\RunApp.exe
O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Programme\PartyGaming\PartyPoker\RunApp.exe
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Programme\ICQLite\ICQLite.exe
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Programme\ICQLite\ICQLite.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: Hilfe zu i-Nav - {CE000992-A58C-4441-8938-744CD72AB27F} - http://idn.verisign-grs.com/plug-in/support/index.jsp (file missing)
O9 - Extra 'Tools' menuitem: Hilfe zu i-Nav - {CE000992-A58C-4441-8938-744CD72AB27F} - http://idn.verisign-grs.com/plug-in/support/index.jsp (file missing)
O9 - Extra button: (no name) - {CE000996-A58C-4441-8938-744CD72AB27F} - C:\Programme\VeriSign\i-Nav\i-nav_4_2_0.dll
O9 - Extra 'Tools' menuitem: Optionen für i-Nav - {CE000996-A58C-4441-8938-744CD72AB27F} - C:\Programme\VeriSign\i-Nav\i-nav_4_2_0.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://www.aol.de/e60/
O16 - DPF: {018B7EC3-EECA-11D3-8E71-0000E82C6C0D} - http://www.edonkey.com/MP3_Plugin.exe
O16 - DPF: {4A3CF76B-EC7A-405D-A67D-8DC6B52AB35B} (QDiagAOLCCUpdateObj Class) - http://aolcc.aol.de/computercheckup/qdiagcc.cab
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} (RdxIE Class) - http://software-dl.real.com/2277d088ab1134bc4f06/netzip/RdxIE601_de.cab
O16 - DPF: {6B4788E2-BAE8-11D2-A1B4-00400512739B} (PWMediaSendControl Class) - http://216.249.24.140/code/PWActiveXImgCtl.CAB
O16 - DPF: {6D15BD40-CCA6-11D2-A6A0-0060089A0EFF} (RWSO_IHB) - https://banking.rwso.de/KSK_Tuebingen/srwso1601.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/msnmessengersetupdownloader.cab
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: AntiVir Service (AntiVirService) - Unknown owner - C:\PROGRAMME\AVPERSONAL\AVGUARD.EXE (file missing)
O23 - Service: AOL Connectivity Service (AOL ACS) - AOL LLC - C:\Programme\Gemeinsame Dateien\AOL\ACS\AOLAcsd.exe
O23 - Service: AntiVir Update (AVWUpSrv) - H+BEDV Datentechnik GmbH, Germany - C:\Programme\AVPersonal\AVWUPSRV.EXE
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programme\Gemeinsame Dateien\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Programme\iPod\bin\iPodService.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: VeriSign Updater (navi) - VeriSign, Inc. - C:\Programme\VeriSign\NAVI\naviagent.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\PROGRA~1\NORTON~1\NORTON~1\NPROTECT.EXE
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: PCTEL Speaker Phone (Pctspk) - PCtel, Inc. - C:\WINDOWS\system32\pctspk.exe
O23 - Service: Sunbelt CounterSpy Antispyware (SBCSSvc) - Sunbelt Software - C:\Programme\Sunbelt Software\CounterSpy\SBCSSvc.exe
O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~1\NORTON~1\SPEEDD~1\NOPDB.EXE

Tausend Dank für Deine Mühe und Hilfe, Sabina.

Ich wünsche ein schönes Wochenende.
Seitenanfang Seitenende
10.02.2007, 17:36
Ehrenmitglied
Avatar Sabina

Beiträge: 29434
#35 1.
leere die Quarantaene vom Counterspy und scanne solange, bis nichts mehr angezeigt wird.

2.
deinstalliere Counterspy (musst aber vorher den Guard, der aktiviert ist in der Taskleiste deaktivieren)

3.
scanne mit Ewido, poste den report und vergiss nicht, dann auch alles gefundene loeschen zu lassen
http://virus-protect.org/onlinescan.html
__________
MfG Sabina

rund um die PC-Sicherheit
Seitenanfang Seitenende
12.02.2007, 21:19
Member

Beiträge: 12
#36 Hallo Sabina,,

Punkt 1 habe ich erledigt.

Ich hoffe ich habe bei Punkt 2 keinen Fehler gemacht. Unter ewido hat sich der download von AVG geöffnet. Hier der Bericht des scans:

---------------------------------------------------------
AVG Anti-Spyware - Scan-Bericht
---------------------------------------------------------

+ Erstellt um: 21:15:14 12.02.2007

+ Scan-Ergebnis:



C:\System Volume Information\_restore{02742CDF-4DAD-447A-A366-C85AB8E01BA4}\RP303\A0470328.dll -> Adware.Altnet : Keine Aktion durchgeführt.
C:\System Volume Information\_restore{02742CDF-4DAD-447A-A366-C85AB8E01BA4}\RP314\A0474633.dll -> Adware.Altnet : Keine Aktion durchgeführt.
C:\WINDOWS\system32\chktrust.exe -> Adware.BargainBuddy : Keine Aktion durchgeführt.
C:\System Volume Information\_restore{02742CDF-4DAD-447A-A366-C85AB8E01BA4}\RP303\A0470324.dll -> Adware.BrilliantDigital : Keine Aktion durchgeführt.
C:\System Volume Information\_restore{02742CDF-4DAD-447A-A366-C85AB8E01BA4}\RP303\A0470325.dll -> Adware.BrilliantDigital : Keine Aktion durchgeführt.
C:\System Volume Information\_restore{02742CDF-4DAD-447A-A366-C85AB8E01BA4}\RP303\A0470326.exe -> Adware.BrilliantDigital : Keine Aktion durchgeführt.
C:\System Volume Information\_restore{02742CDF-4DAD-447A-A366-C85AB8E01BA4}\RP303\A0470327.dll -> Adware.BrilliantDigital : Keine Aktion durchgeführt.
C:\System Volume Information\_restore{02742CDF-4DAD-447A-A366-C85AB8E01BA4}\RP303\A0470329.exe -> Adware.BrilliantDigital : Keine Aktion durchgeführt.
C:\System Volume Information\_restore{02742CDF-4DAD-447A-A366-C85AB8E01BA4}\RP303\A0470330.exe -> Adware.BrilliantDigital : Keine Aktion durchgeführt.
C:\System Volume Information\_restore{02742CDF-4DAD-447A-A366-C85AB8E01BA4}\RP303\A0470331.dll -> Adware.BrilliantDigital : Keine Aktion durchgeführt.
C:\System Volume Information\_restore{02742CDF-4DAD-447A-A366-C85AB8E01BA4}\RP303\A0470332.dll -> Adware.BrilliantDigital : Keine Aktion durchgeführt.
C:\System Volume Information\_restore{02742CDF-4DAD-447A-A366-C85AB8E01BA4}\RP303\A0470333.exe -> Adware.BrilliantDigital : Keine Aktion durchgeführt.
C:\WINDOWS\BDE -> Adware.BrilliantDigital : Keine Aktion durchgeführt.
C:\WINDOWS\BDE\Cache -> Adware.BrilliantDigital : Keine Aktion durchgeführt.
C:\WINDOWS\BDE\Cache\b3dstats.cab -> Adware.BrilliantDigital : Keine Aktion durchgeführt.
C:\WINDOWS\BDE\Cache\installb3dcodecs.cab -> Adware.BrilliantDigital : Keine Aktion durchgeführt.
C:\WINDOWS\BDE\Cache\installb3drasts.cab -> Adware.BrilliantDigital : Keine Aktion durchgeführt.
C:\WINDOWS\BDE\Cache\installb3dviewer2.cab -> Adware.BrilliantDigital : Keine Aktion durchgeführt.
C:\WINDOWS\BDE\Cache\syscheckb3dplayer.cab -> Adware.BrilliantDigital : Keine Aktion durchgeführt.
C:\WINDOWS\BDE\setup.cab -> Adware.BrilliantDigital : Keine Aktion durchgeführt.
C:\System Volume Information\_restore{02742CDF-4DAD-447A-A366-C85AB8E01BA4}\RP314\A0474639.exe -> Adware.Clipgenie : Keine Aktion durchgeführt.
C:\System Volume Information\_restore{02742CDF-4DAD-447A-A366-C85AB8E01BA4}\RP303\A0470338.exe -> Adware.DownloadWare : Keine Aktion durchgeführt.
C:\System Volume Information\_restore{02742CDF-4DAD-447A-A366-C85AB8E01BA4}\RP303\A0470339.exe -> Adware.DownloadWare : Keine Aktion durchgeführt.
C:\System Volume Information\_restore{02742CDF-4DAD-447A-A366-C85AB8E01BA4}\RP303\A0470334.dll -> Adware.Lop : Keine Aktion durchgeführt.
C:\System Volume Information\_restore{02742CDF-4DAD-447A-A366-C85AB8E01BA4}\RP303\A0470335.exe -> Adware.MediaPops : Keine Aktion durchgeführt.
C:\System Volume Information\_restore{02742CDF-4DAD-447A-A366-C85AB8E01BA4}\RP303\A0470336.exe -> Adware.MediaPops : Keine Aktion durchgeführt.
C:\System Volume Information\_restore{02742CDF-4DAD-447A-A366-C85AB8E01BA4}\RP303\A0470321.exe -> Adware.NewDotNet : Keine Aktion durchgeführt.
C:\System Volume Information\_restore{02742CDF-4DAD-447A-A366-C85AB8E01BA4}\RP303\A0470322.exe -> Adware.NewDotNet : Keine Aktion durchgeführt.
C:\System Volume Information\_restore{02742CDF-4DAD-447A-A366-C85AB8E01BA4}\RP303\A0470323.exe -> Adware.NewDotNet : Keine Aktion durchgeführt.
C:\System Volume Information\_restore{02742CDF-4DAD-447A-A366-C85AB8E01BA4}\RP303\A0470337.exe -> Adware.NewDotNet : Keine Aktion durchgeführt.
HKU\S-1-5-21-874574627-2650805779-3784137826-1005\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4A2AACF3-ADF6-11D5-98A9-00E018981B9E} -> Adware.NewDotNet : Keine Aktion durchgeführt.
C:\Dokumente und Einstellungen\Owner\Startmenü\Programme\WhenU -> Adware.SaveNow : Keine Aktion durchgeführt.
C:\Dokumente und Einstellungen\Owner\Startmenü\Programme\WhenU\Customer Support.lnk -> Adware.SaveNow : Keine Aktion durchgeführt.
C:\Dokumente und Einstellungen\Owner\Startmenü\Programme\WhenU\Learn More About Save!.url -> Adware.SaveNow : Keine Aktion durchgeführt.
C:\Dokumente und Einstellungen\Owner\Startmenü\Programme\WhenU\Learn More About SaveNow.url -> Adware.SaveNow : Keine Aktion durchgeführt.
C:\Dokumente und Einstellungen\Owner\Startmenü\Programme\WhenU\Learn More About WhenU Save.url -> Adware.SaveNow : Keine Aktion durchgeführt.
C:\Dokumente und Einstellungen\Owner\Startmenü\Programme\WhenU\Learn More About WhenU SaveNow.url -> Adware.SaveNow : Keine Aktion durchgeführt.
C:\Dokumente und Einstellungen\Owner\Startmenü\Programme\WhenU\Uninstall Instructions.lnk -> Adware.SaveNow : Keine Aktion durchgeführt.
C:\Dokumente und Einstellungen\Owner\Startmenü\Programme\WhenU\Uninstall.lnk -> Adware.SaveNow : Keine Aktion durchgeführt.
C:\Dokumente und Einstellungen\Owner\Startmenü\Programme\WhenU\WhenU Help Desk.lnk -> Adware.SaveNow : Keine Aktion durchgeführt.
C:\Dokumente und Einstellungen\Owner\Startmenü\Programme\WhenU\WhenU.com Website.url -> Adware.SaveNow : Keine Aktion durchgeführt.
C:\System Volume Information\_restore{02742CDF-4DAD-447A-A366-C85AB8E01BA4}\RP303\A0470340.exe -> Adware.SaveNow : Keine Aktion durchgeführt.
C:\System Volume Information\_restore{02742CDF-4DAD-447A-A366-C85AB8E01BA4}\RP314\A0474641.exe/ACM.dll -> Adware.SaveNow : Keine Aktion durchgeführt.
C:\System Volume Information\_restore{02742CDF-4DAD-447A-A366-C85AB8E01BA4}\RP314\A0474643.exe/ffext.mod/{BEE3E87E-E1C6-4bfe-BE9D-48E84271AB34}\components\whenu_ff.dll -> Adware.SaveNow : Keine Aktion durchgeführt.
C:\System Volume Information\_restore{02742CDF-4DAD-447A-A366-C85AB8E01BA4}\RP314\A0474645.exe -> Adware.SaveNow : Keine Aktion durchgeführt.
HKLM\SOFTWARE\IntexusDial -> Dialer.Generic : Keine Aktion durchgeführt.
C:\WINDOWS\ratgeber-fit-de-11-12-2003.exe -> Dialer.Hacker : Keine Aktion durchgeführt.
C:\System Volume Information\_restore{02742CDF-4DAD-447A-A366-C85AB8E01BA4}\RP315\A0474710.DLL -> Not-A-Virus.Monitor.Win32.Hooker.e : Keine Aktion durchgeführt.
C:\WINDOWS\__delete_on_reboot__H_K_N_T_D_L_L_._d_l_l_ -> Not-A-Virus.Monitor.Win32.Hooker.e : Keine Aktion durchgeführt.
[1968] C:\WINDOWS\HKNTDLL.dll -> Not-A-Virus.Monitor.Win32.Hooker.e : Keine Aktion durchgeführt.
[3676] C:\WINDOWS\HKNTDLL.dll -> Not-A-Virus.Monitor.Win32.Hooker.e : Keine Aktion durchgeführt.
C:\Dokumente und Einstellungen\Owner\Cookies\owner@112.2o7[2].txt -> TrackingCookie.2o7 : Keine Aktion durchgeführt.
C:\Dokumente und Einstellungen\Owner\Cookies\owner@2o7[1].txt -> TrackingCookie.2o7 : Keine Aktion durchgeführt.
C:\Dokumente und Einstellungen\Owner\Cookies\owner@2o7[2].txt -> TrackingCookie.2o7 : Keine Aktion durchgeführt.
C:\Dokumente und Einstellungen\Owner\Cookies\owner@2o7[3].txt -> TrackingCookie.2o7 : Keine Aktion durchgeführt.


::Berichtende

Werde jetzt noch diese Funde löschen.

War das so richtig?

Vielen Dank für die Anleitung.
Seitenanfang Seitenende
13.02.2007, 02:05
Ehrenmitglied
Avatar Sabina

Beiträge: 29434
#37 wenn das alles geloescht ist - sieht es schon viel besser aus ;)

mache einen Onlinescan mit
Trend Micro Anti-Spyware for the Web - und poste den scanreport
http://virus-protect.org/onlinescan.html
__________
MfG Sabina

rund um die PC-Sicherheit
Seitenanfang Seitenende
13.02.2007, 20:08
Member

Beiträge: 12
#38 Hallo Sabina,

habe den scan durchgeführt. Ich konnte das Ergenis jedoch nicht kopieren um es hier zu posten, deshalb habe ich mich entschieden alle angezeigten Funde zu "deleten".

Ich hoffe ich habe damit nichts falsches gemacht, oder?
Seitenanfang Seitenende
13.02.2007, 23:46
Ehrenmitglied
Avatar Sabina

Beiträge: 29434
#39 wars denn viel ?
das Problem ist, dass der P2P-Wurm relativ neu ist und man mit allen moeglichen Scannern drueberbuegeln muss, in der Hoffung, dass einer die Viren erkennt + loescht ;)
Lassen wir es dabei - wenn es noch probleme geben sollte, formatiere oder melde dich wieder.
uebrigens solltest du mit mehr Umsicht im Internet surfen und nicht auf alles klicken, was da blinkt ;) (im P2P)
__________
MfG Sabina

rund um die PC-Sicherheit
Seitenanfang Seitenende
14.02.2007, 18:23
Member

Beiträge: 12
#40 Sabina,

vielen herzlichen Dank für Deine Hilfe und Unterstützung.

Gut zu wissen, dass es Menschen wie Dich gibt.

Werde Deinen Rat an meine Söhne weiterleiten.

Eine Frage zum Schluß: Soll ich den zuletzt heruntergeladenen Scanner wieder löschen?

Viele Grüße
Seitenanfang Seitenende