Programme lassen sich einfach nicht starten !!!

Thema ist geschlossen!
Thema ist geschlossen!
#0
01.08.2006, 00:35
Ehrenmitglied
Avatar Sabina

Beiträge: 29434
#91 versuche mal alle Dateien, die wir inzwischen loeschen wollten/mussten, die aber noch beharrlich vorhanden sind, mit diesem Tool zu loeschen + berichte
http://virus-protect.org/artikel/tools/unlocker.html
__________
MfG Sabina

rund um die PC-Sicherheit
Seitenanfang Seitenende
01.08.2006, 11:39
Member

Themenstarter

Beiträge: 95
#92 Ich habe die "gVDXWWbM.exe" mit dem progi umbenannt und auch in einen eigenen ordner verschoben.

Ich denke löschen würde auch gehen, aber ich würde die datei euch lieber schicken wollen, damit ihr mal schauen könnt was es denn genau ist !!!

Aber wie bekomm ich das denn hin - weil die verschobene und umbenannte datei ist immer noch versteckt, schreibgeschützt und verschlüsselt.

Also, wie kann ich die euch schicken ?
__________
_____________
THX for Helping
Seitenanfang Seitenende
01.08.2006, 13:52
Ehrenmitglied
Avatar Sabina

Beiträge: 29434
#93 zippe den "eigenen ordner" und schicke es an @raman
und loesche auch alles andere, was im laufe des Threads zu beseitigen war und augenscheinlich noch vorhanden ist.

Dann berichte, wie es dem Rechner geht...besser ?
__________
MfG Sabina

rund um die PC-Sicherheit
Seitenanfang Seitenende
01.08.2006, 15:46
Member

Themenstarter

Beiträge: 95
#94 Hab ich ja schon probiert, aber wenn ich es mit winrar versuche zu packen kommt:

Konnte E:\gVDXWWbM.exe\ProgrammeVirus.exe nicht öffnen Zugriff verweigert !

???
__________
_____________
THX for Helping
Seitenanfang Seitenende
01.08.2006, 16:24
Ehrenmitglied
Avatar Sabina

Beiträge: 29434
#95 dann loesche es, die wichtigsten Viren hast du ja schon an raman geschickt ;)
__________
MfG Sabina

rund um die PC-Sicherheit
Seitenanfang Seitenende
01.08.2006, 18:01
Member

Themenstarter

Beiträge: 95
#96 Gibt es denn gar keine möglichkeit, dass ich die "viren-datei" irgendwie packen kann, damit ich sie euch noch schicken kann.

Vielleicht wüssten wir alle dann genau was ich hatte bzw noch habe. ;)

Wäre für mich schon wichtig, damit ich weiß woher ich mir den mist geholt habe.
__________
_____________
THX for Helping
Seitenanfang Seitenende
01.08.2006, 18:42
Ehrenmitglied
Avatar Sabina

Beiträge: 29434
#97 raman wird sich erst mal ansehen, was er schon hat und anscheinend sind dort auch die Dowloader dabei.
deshalbe loesche alles, was bisher angegeben wurde und berichte, wie der Rechner reagiert
__________
MfG Sabina

rund um die PC-Sicherheit
Seitenanfang Seitenende
09.08.2006, 20:57
Member

Beiträge: 15
#98 Hi,

ich habe auch das Ursprungsproblem wie Roentgi, aber bei Euren nachfolgenden Kommentaren durchzusehen, fällt mir echt schwer.
Habe jedoch mal HiJack durchlaufen gelassen.

Logfile of HijackThis v1.99.1
Scan saved at 19:48:40, on 09.08.2006
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programme\Gemeinsame Dateien\Acronis\Schedule2\schedul2.exe
C:\Programme\AntiVir PersonalEdition Classic\sched.exe
C:\Programme\AntiVir PersonalEdition Classic\avguard.exe
C:\Programme\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\WINDOWS\services.exe
C:\WINDOWS\Explorer.exe
C:\Programme\Zone Labs\ZoneAlarm\zlclient.exe
C:\Programme\AntiVir PersonalEdition Classic\avgnt.exe
C:\Programme\Logitech\iTouch\iTouch.exe
C:\Programme\Logitech\MouseWare\system\em_exec.exe
C:\Programme\Acronis\TrueImageHome\TrueImageMonitor.exe
C:\Programme\Gemeinsame Dateien\Acronis\Schedule2\schedhlp.exe
C:\Programme\Acronis\TrueImageHome\TimounterMonitor.exe
C:\WINDOWS\System32\RunDll32.exe
C:\Programme\TuneUp Utilities 2006\MemOptimizer.exe
C:\Programme\MSI\3D!Turbo Experience\3D!Turbo.exe
C:\Programme\Mozilla Firefox\firefox.exe
C:\Programme\Adobe\Acrobat 7.0\Reader\AcroRd32.exe
D:\div. Software\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.cablesurf.de/welcome.html
F2 - REG:system.ini: Shell=Explorer.exe %WINDIR%\services.exe
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Programme\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programme\google\googletoolbar2.dll
O3 - Toolbar: Yahoo! Toolbar mit Pop-Up-Blocker - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programme\google\googletoolbar2.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [Zone Labs Client] "C:\Programme\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Programme\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [zBrowser Launcher] C:\Programme\Logitech\iTouch\iTouch.exe
O4 - HKLM\..\Run: [Logitech Utility] Logi_MwX.Exe
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [LiveMonitor] C:\Programme\MSI\Live Update 3\LMonitor.exe
O4 - HKLM\..\Run: [NVCLOCK] Rundll32 nvclock.dll,fnNvclock
O4 - HKLM\..\Run: [TrueImageMonitor.exe] C:\Programme\Acronis\TrueImageHome\TrueImageMonitor.exe
O4 - HKLM\..\Run: [AcronisTimounterMonitor] C:\Programme\Acronis\TrueImageHome\TimounterMonitor.exe
O4 - HKLM\..\Run: [Acronis Scheduler2 Service] "C:\Programme\Gemeinsame Dateien\Acronis\Schedule2\schedhlp.exe"
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Programme\TuneUp Utilities 2006\MemOptimizer.exe" autostart
O4 - Global Startup: 3D!Turbo Experience.lnk = C:\Programme\MSI\3D!Turbo Experience\3D!Turbo.exe
O8 - Extra context menu item: &Google Search - res://c:\programme\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://c:\programme\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://c:\programme\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\programme\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: Nach Microsoft &Excel exportieren - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Senden an &Bluetooth - C:\Programme\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Similar Pages - res://c:\programme\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\programme\google\GoogleToolbar2.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Recherchieren - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Programme\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Programme\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1154252120796
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1154252110187
O20 - Winlogon Notify: ComPlusSetup - C:\WINDOWS\System32\catsrvut.dll
O23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) - Acronis - C:\Programme\Gemeinsame Dateien\Acronis\Schedule2\schedul2.exe
O23 - Service: AntiVir PersonalEdition Classic Planer (AntiVirScheduler) - Avira GmbH - C:\Programme\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - AVIRA GmbH - C:\Programme\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Bluetooth Service (btwdins) - WIDCOMM, Inc. - C:\Programme\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Terminal Services NT (termserv.exe) - Unknown owner - C:\WINDOWS\services.exe
O23 - Service: TuneUp WinStyler Theme Service (TUWinStylerThemeSvc) - TuneUp Software GmbH - C:\Programme\TuneUp Utilities 2006\WinStylerThemeSvc.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

Könntihr da was erkennen?

cc
__________
Beste Grüße
CC
Seitenanfang Seitenende
09.08.2006, 21:49
Ehrenmitglied
Avatar Sabina

Beiträge: 29434
#99 crankycouple

1.
ServiceFilter.zip
http://virus-protect.org/artikel/tools/ServiceFilter.zip

- entzippen
- doppelklick auf die datei ServiceFilter.vbs
- versions-nummer bestätigen
- scannen
- öffnen von wordpad oder editor erlauben
- POST_THIS.TXT abkopieren

2.
poste dieses Log
http://virus-protect.org/artikel/tools/combofix.html
__________
MfG Sabina

rund um die PC-Sicherheit
Seitenanfang Seitenende
10.08.2006, 10:30
Member

Themenstarter

Beiträge: 95
#100 Hallo sabina, hallo raman.


Ich war bis gestern im urlaub, deshalb melde ich mich erst jetzt wieder. ;)

Ich habe raman eben diesen ordner geschickt: E:\Dokumente und Einstellungen\aXYsoltZVUV

Der lässt sich von der sache her problemlos löschen, nur nach jedem neustart ist er wieder vorhanden, trotz des löschens !!! ;)

Und die eine datei von oben die ich umbenannt und in einen anderen ordner verschoben habe, lässt sich leider mit dem unlocker auch nicht löschen !!! ;)
__________
_____________
THX for Helping
Seitenanfang Seitenende
10.08.2006, 10:36
Ehrenmitglied
Avatar Sabina

Beiträge: 29434
#101 Roentgi

wende RegRun Reanimator an , und poste, was am Ende erkannt wird hier (ichts loeschen, sondern nur posten)
http://virus-protect.org/regrun.html
__________
MfG Sabina

rund um die PC-Sicherheit
Seitenanfang Seitenende
10.08.2006, 11:18
Member

Themenstarter

Beiträge: 95
#102 SpyHolesList Version:1.7
10.08.2006 10:43:54
WinDir=E:\WINDOWS
Startup=E:\Dokumente und Einstellungen\Schäfchen\Startmenü\Programme\Autostart\
Common Startup=E:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\
Microsoft Windows XP Service Pack 1 (5.1.2600)
Internet Explorer 6 Service Pack 1 (Windows XP SP1) 6.0.2800.1106
[Internet Explorer]
[Default Home Page] :HKLM Default_Page_URL=http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
[Current Home Page] :HKCU Start Page=http://www.tu-braunschweig.de/
[Current Home Page] :HKCU HOMEOldSP=""
[Search URL Template] :HKLM 1=www.%s.com
[Search URL Template] :HKLM 2=www.%s.org
[Search URL Template] :HKLM 3=www.%s.net
[Search URL Template] :HKLM 4=www.%s.edu
[All Users Search] :HKLM Default_Search_URL=http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
[All Users Search] :HKLM Search Page=http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
[Current Users Search] :HKCU Search Page=http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
[Current Users Search] :HKCU Search Bar=http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
[IE Local Blank Page] :HKCU Local Page=E:\WINDOWS\System32\blank.htm
[IE Local Blank Page] :HKLM Local Page=%SystemRoot%\system32\blank.htm
[Auto Search URL] :HKCU provider=""
[Auto Search URL] :HKCU "Default Value"=""
[Search Assistant] :HKCU SearchAssistant=""
[Search Assistant] :HKLM SearchAssistant=http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
[Search Assistant] :HKCU CustomizeSearch=""
[Search Assistant] :HKLM CustomizeSearch=http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
[CustomizeSearch] :HKLM CustomizeSearch=""
[URLSearchHook] :HKCU {CFBFAE00-17A6-11D0-99CB-00C04FD64497}=%SystemRoot%\System32\shdocvw.dll
[Default Prefix] :HKLM "Default Value"=http://
[URL Default Prefixes] :HKLM ftp=ftp://
[URL Default Prefixes] :HKLM gopher=gopher://
[URL Default Prefixes] :HKLM home=http://
[URL Default Prefixes] :HKLM mosaic=http://
[URL Default Prefixes] :HKLM www=http://
[Safe Sites] :HKLM ie.search.msn.com=http://ie.search.msn.com/*
[Safe Sites] :HKLM winweb=%windir%\Web\*
[AboutURLs] :HKLM NavigationFailure=res://shdoclc.dll/navcancl.htm
[AboutURLs] :HKLM DesktopItemNavigationFailure=res://shdoclc.dll/navcancl.htm
[AboutURLs] :HKLM NavigationCanceled=res://shdoclc.dll/navcancl.htm
[AboutURLs] :HKLM OfflineInformation=res://shdoclc.dll/offcancl.htm
[AboutURLs] :HKLM Home=270
[AboutURLs] :HKLM blank=res://mshtml.dll/blank.htm
[AboutURLs] :HKLM PostNotCached=res://mshtml.dll/repost.htm
[AboutURLs] :HKLM mozilla=res://mshtml.dll/about.moz
[User Style Sheet] :HKCU User Stylesheet=""
[User Style Sheet] :HKUS User Stylesheet=""
[User Style Sheet] :HKCU Use My Stylesheet=0
[User Style Sheet] :HKUS Use My Stylesheet=0
[Execute unsigned ActiveX in My Computer Zone] :HKCU 1201=1
[Execute unsigned ActiveX in My Computer Zone] :HKLM 1201=1
[Execute unsigned ActiveX in Local Intranet Zone] :HKCU 1201=3
[Execute unsigned ActiveX in Local Intranet Zone] :HKLM 1201=3
[Execute unsigned ActiveX in Internet Zone] :HKCU 1201=3
[Execute unsigned ActiveX in Internet Zone] :HKLM 1201=3
[Links Toolbar] :HKCU LinksFolderName=Links
[Toolbars] :HKLM {8E718888-423F-11D2-876E-00A0C9082467}=E:\WINDOWS\System32\msdxm.ocx
[Explorer Bars] :HKLM {4D5C8C25-D075-11d0-B416-00C04FB90376}=%SystemRoot%\System32\shdocvw.dll
[IE Extensions - All Users] :HKLM {08B0E5C0-4FCB-11CF-AAA5-00401C608501}=%SystemRoot%\System32\shdocvw.dll
[IE Extensions - All Users] :HKLM {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E}=E:\Programme\Kaspersky Anti-Virus

6.0\scieplugin.dll
[IE Extensions - All Users] :HKLM {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1}=E:\Programme\Party

Poker\PartyPoker\RunApp.exe
[IE Extensions - All Users] :HKLM {c95fe080-8f5d-11d2-a20b-00aa003c157a}=%SystemRoot%\web\related.htm
[IE Extensions - All Users] :HKLM {FB5F1910-F110-11d2-BB9E-00C04F795683}=E:\Programme\Messenger\MSMSGS.EXE
[Proxy] :HKCU ProxyServer=""
[Proxy] :HKCU ProxyEnable=0
[Network Settings]
[Hosts File Path] :HKLM DataBasePath=%SystemRoot%\System32\drivers\etc
[Domain Name] :HKLM Domain=""
[Name Server] {B0619245-FEFF-4AAC-84A3-A71D455EBDCB}=192.168.1.1
[WinSock2 Components] :HKLM mswsock.dll=%SystemRoot%\System32\mswsock.dll
[WinSock2 Components] :HKLM winrnr.dll=%SystemRoot%\System32\winrnr.dll
[WinSock2 Components] :HKLM rsvpsp.dll=%SystemRoot%\system32\rsvpsp.dll
[Software Components]
[Internet Components] :HKLM E:\Programme\GameSpy Arcade\Download Manager\FPDC.dll=E:\Programme\GameSpy

Arcade\Download Manager\FPDC.dll
[Internet Components] :HKLM E:\WINDOWS\Downloaded Program Files\FPDC.dll=E:\WINDOWS\Downloaded Program

Files\FPDC.dll
[Windows Shell]
[Display Scrap's Extensions] :HKLM NeverShowExt=""
[ScreenSaver] :HKCU SCRNSAVE.EXE=""
[System.ini] shell=Explorer.exe
[Main File Extensions] :HKLM .exe="%1" %*
[Main File Extensions] :HKLM .com="%1" %*
[Main File Extensions] :HKLM .pif="%1" %*
[Main File Extensions] :HKLM .cmd="%1" %*
[Main File Extensions] :HKLM .scr="%1" /S
[Main File Extensions] :HKLM .jpg=rundll32.exe E:\WINDOWS\System32\shimgvw.dll,ImageView_Fullscreen %1
[Main File Extensions] :HKLM .jpeg=rundll32.exe E:\WINDOWS\System32\shimgvw.dll,ImageView_Fullscreen %1
[UserInit Value] :HKLM UserInit=E:\WINDOWS\system32\userinit.exe,
[Winlogon Notification] :HKLM AtiExtEvent=Ati2evxx.dll
[Winlogon Notification] :HKLM crypt32chain=crypt32.dll
[Winlogon Notification] :HKLM cryptnet=cryptnet.dll
[Winlogon Notification] :HKLM cscdll=cscdll.dll
[Winlogon Notification] :HKLM klogon=E:\WINDOWS\System32\klogon.dll
[Winlogon Notification] :HKLM ScCertProp=wlnotify.dll
[Winlogon Notification] :HKLM Schedule=wlnotify.dll
[Winlogon Notification] :HKLM sclgntfy=sclgntfy.dll
[Winlogon Notification] :HKLM SensLogn=WlNotify.dll
[Winlogon Notification] :HKLM termsrv=wlnotify.dll
[Winlogon Notification] :HKLM wlballoon=wlnotify.dll
[Winlogon Notification] :HKLM WRNotifier=WRLogonNTF.dll
[Shell Services DelayLoad] :HKLM PostBootReminder=%SystemRoot%\system32\SHELL32.dll
[Shell Services DelayLoad] :HKLM CDBurn=%SystemRoot%\system32\SHELL32.dll
[Shell Services DelayLoad] :HKLM WebCheck=%SystemRoot%\System32\webcheck.dll
[Shell Services DelayLoad] :HKLM SysTray=E:\WINDOWS\System32\stobject.dll
[Prevents Display in Control Panel from running.] :HKCU NoDispCpl=0
[Disable Registry Tools] :HKCU DisableRegistryTools =0
[SharedTaskScheduler] :HKLM {438755C2-A8BA-11D1-B96B-00A0C90312E1}=%SystemRoot%\System32\browseui.dll
[SharedTaskScheduler] :HKLM {8C7461EF-2B13-11d2-BE35-3078302C2030}=%SystemRoot%\System32\browseui.dll
[Kernel Auto Boot]
[ActiveSetup] >{22d6f312-b0f6-11d0-94ab-0080c74c7e95}=E:\WINDOWS\inf\unregmp2.exe /ShowWMP
[ActiveSetup] {22d6f312-b0f6-11d0-94ab-0080c74c7e95}=rundll32.exe advpack.dll,LaunchINFSection

E:\WINDOWS\INF\mplayer2.inf,PerUserStub.NT
[Bootexecute] :HKLM BootExecute=autocheck autochk *
[KnownDLLs] :HKLM advapi32=advapi32.dll
[KnownDLLs] :HKLM comdlg32=comdlg32.dll
[KnownDLLs] :HKLM DllDirectory=%SystemRoot%\system32
[KnownDLLs] :HKLM gdi32=gdi32.dll
[KnownDLLs] :HKLM imagehlp=imagehlp.dll
[KnownDLLs] :HKLM kernel32=kernel32.dll
[KnownDLLs] :HKLM lz32=lz32.dll
[KnownDLLs] :HKLM ole32=ole32.dll
[KnownDLLs] :HKLM oleaut32=oleaut32.dll
[KnownDLLs] :HKLM olecli32=olecli32.dll
[KnownDLLs] :HKLM olecnv32=olecnv32.dll
[KnownDLLs] :HKLM olesvr32=olesvr32.dll
[KnownDLLs] :HKLM olethk32=olethk32.dll
[KnownDLLs] :HKLM rpcrt4=rpcrt4.dll
[KnownDLLs] :HKLM shell32=shell32.dll
[KnownDLLs] :HKLM url=url.dll
[KnownDLLs] :HKLM urlmon=urlmon.dll
[KnownDLLs] :HKLM user32=user32.dll
[KnownDLLs] :HKLM version=version.dll
[KnownDLLs] :HKLM wininet=wininet.dll
[KnownDLLs] :HKLM wldap32=wldap32.dll
[Environment - Path] :HKLM Path=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;E:\Programme\ATI

Technologies\ATI Control Panel
[List of Injected DLLs] :HKLM AppInit_DLLs=""
[Auto Services] Ati HotKey Poller
[Auto Services] ATI Smart
[Auto Services] AudioSrv
[Auto Services] AVP
[Auto Services] Browser
[Auto Services] CryptSvc
[Auto Services] cuM
[Auto Services] Dhcp
[Auto Services] dmserver
[Auto Services] Dnscache
[Auto Services] ERSvc
[Auto Services] Eventlog
[Auto Services] helpsvc
[Auto Services] HidServ
[Auto Services] lanmanserver
[Auto Services] lanmanworkstation
[Auto Services] LmHosts
[Auto Services] Messenger
[Auto Services] PlugPlay
[Auto Services] PolicyAgent
[Auto Services] ProtectedStorage
[Auto Services] RemoteRegistry
[Auto Services] RpcSs
[Auto Services] SamSs
[Auto Services] Schedule
[Auto Services] seclogon
[Auto Services] SENS
[Auto Services] ShellHWDetection
[Auto Services] Spooler
[Auto Services] srservice
[Auto Services] StarWindService
[Auto Services] StyleXPService
[Auto Services] Symantec Core LC
[Auto Services] Themes
[Auto Services] TrkWks
[Auto Services] uploadmgr
[Auto Services] UserAccess7
[Auto Services] W32Time
[Auto Services] WebClient
[Auto Services] winmgmt
[Auto Services] WmdmPmSp
[Auto Services] wuauserv
[Auto Services] WZCSVC
[Drivers] ntoskrnl.exe=E:\WINDOWS\SYSTEM32\NTOSKRNL.EXE
[Drivers] hal.dll=E:\WINDOWS\SYSTEM32\HAL.DLL
[Drivers] KDCOM.DLL=E:\WINDOWS\SYSTEM32\KDCOM.DLL
[Drivers] BOOTVID.dll=E:\WINDOWS\SYSTEM32\BOOTVID.DLL
[Drivers] sptd.sys=E:\WINDOWS\System32\DRIVERS\sptd.sys
[Drivers] WMILIB.SYS=E:\WINDOWS\SYSTEM32\DRIVERS\WMILIB.SYS
[Drivers] SPTD5293.SYS=E:\WINDOWS\SYSTEM32\DRIVERS\SPTD5293.SYS
[Drivers] Vax347b.sys=E:\WINDOWS\System32\DRIVERS\Vax347b.sys
[Drivers] ACPI.sys=E:\WINDOWS\System32\DRIVERS\ACPI.sys
[Drivers] pci.sys=E:\WINDOWS\System32\DRIVERS\pci.sys
[Drivers] isapnp.sys=E:\WINDOWS\System32\DRIVERS\isapnp.sys
[Drivers] pciide.sys=E:\WINDOWS\System32\DRIVERS\pciide.sys
[Drivers] PCIIDEX.SYS=E:\WINDOWS\SYSTEM32\DRIVERS\PCIIDEX.SYS
[Drivers] MountMgr.sys=E:\WINDOWS\System32\DRIVERS\MountMgr.sys
[Drivers] ftdisk.sys=E:\WINDOWS\System32\DRIVERS\ftdisk.sys
[Drivers] dmload.sys=E:\WINDOWS\System32\DRIVERS\dmload.sys
[Drivers] dmio.sys=E:\WINDOWS\System32\DRIVERS\dmio.sys
[Drivers] PartMgr.sys=E:\WINDOWS\System32\DRIVERS\PartMgr.sys
[Drivers] sfsync02.sys=E:\WINDOWS\System32\DRIVERS\sfsync02.sys
[Drivers] VolSnap.sys=E:\WINDOWS\System32\DRIVERS\VolSnap.sys
[Drivers] =E:\WINDOWS\System32\DRIVERS\
[Drivers] Vax347s.sys=E:\WINDOWS\System32\DRIVERS\Vax347s.sys
[Drivers] SCSIPORT.SYS=E:\WINDOWS\SYSTEM32\DRIVERS\SCSIPORT.SYS
[Drivers] disk.sys=E:\WINDOWS\System32\DRIVERS\disk.sys
[Drivers] CLASSPNP.SYS=E:\WINDOWS\SYSTEM32\DRIVERS\CLASSPNP.SYS
[Drivers] sr.sys=E:\WINDOWS\System32\DRIVERS\sr.sys
[Drivers] KSecDD.sys=E:\WINDOWS\System32\DRIVERS\KSecDD.sys
[Drivers] Ntfs.sys=E:\WINDOWS\System32\DRIVERS\Ntfs.sys
[Drivers] NDIS.sys=E:\WINDOWS\System32\DRIVERS\NDIS.sys
[Drivers] sfvfs02.sys=E:\WINDOWS\System32\DRIVERS\sfvfs02.sys
[Drivers] sfhlp02.sys=E:\WINDOWS\System32\DRIVERS\sfhlp02.sys
[Drivers] sfhlp01.sys=E:\WINDOWS\System32\DRIVERS\sfhlp01.sys
[Drivers] sfdrv01.sys=E:\WINDOWS\System32\DRIVERS\sfdrv01.sys
[Drivers] prosync1.sys=E:\WINDOWS\System32\DRIVERS\prosync1.sys
[Drivers] prohlp02.sys=E:\WINDOWS\System32\DRIVERS\prohlp02.sys
[Drivers] nv_agp.sys=E:\WINDOWS\System32\DRIVERS\nv_agp.sys
[Drivers] Mup.sys=E:\WINDOWS\System32\DRIVERS\Mup.sys
[Drivers] kl1.sys=E:\WINDOWS\System32\DRIVERS\kl1.sys
[Drivers] TDI.SYS=E:\WINDOWS\SYSTEM32\DRIVERS\TDI.SYS
[Drivers] processr.sys=E:\WINDOWS\SYSTEM32\DRIVERS\PROCESSR.SYS
[Drivers] usbohci.sys=E:\WINDOWS\SYSTEM32\DRIVERS\USBOHCI.SYS
[Drivers] USBPORT.SYS=E:\WINDOWS\SYSTEM32\DRIVERS\USBPORT.SYS
[Drivers] usbehci.sys=E:\WINDOWS\SYSTEM32\DRIVERS\USBEHCI.SYS
[Drivers] nvax.sys=E:\WINDOWS\SYSTEM32\DRIVERS\NVAX.SYS
[Drivers] RTL8139.SYS=E:\WINDOWS\SYSTEM32\DRIVERS\RTL8139.SYS
[Drivers] imapi.sys=E:\WINDOWS\SYSTEM32\DRIVERS\IMAPI.SYS
[Drivers] cdrom.sys=E:\WINDOWS\SYSTEM32\DRIVERS\CDROM.SYS
[Drivers] redbook.sys=E:\WINDOWS\SYSTEM32\DRIVERS\REDBOOK.SYS
[Drivers] ks.sys=E:\WINDOWS\SYSTEM32\DRIVERS\KS.SYS
[Drivers] ati2mtag.sys=E:\WINDOWS\SYSTEM32\DRIVERS\ATI2MTAG.SYS
[Drivers] VIDEOPRT.SYS=E:\WINDOWS\SYSTEM32\DRIVERS\VIDEOPRT.SYS
[Drivers] dtscsi.sys=E:\WINDOWS\SYSTEM32\DRIVERS\DTSCSI.SYS
[Drivers] fdc.sys=E:\WINDOWS\SYSTEM32\DRIVERS\FDC.SYS
[Drivers] Seri*hier nicht!*.sys=E:\WINDOWS\SYSTEM32\DRIVERS\Seri*hier nicht!*.SYS
[Drivers] actser.sys=E:\WINDOWS\SYSTEM32\DRIVERS\ACTSER.SYS
[Drivers] serenum.sys=E:\WINDOWS\SYSTEM32\DRIVERS\SERENUM.SYS
[Drivers] parport.sys=E:\WINDOWS\SYSTEM32\DRIVERS\PARPORT.SYS
[Drivers] audstub.sys=E:\WINDOWS\SYSTEM32\DRIVERS\AUDSTUB.SYS
[Drivers] rasl2tp.sys=E:\WINDOWS\SYSTEM32\DRIVERS\RASL2TP.SYS
[Drivers] ndistapi.sys=E:\WINDOWS\SYSTEM32\DRIVERS\NDISTAPI.SYS
[Drivers] ndiswan.sys=E:\WINDOWS\SYSTEM32\DRIVERS\NDISWAN.SYS
[Drivers] raspppoe.sys=E:\WINDOWS\SYSTEM32\DRIVERS\RASPPPOE.SYS
[Drivers] raspptp.sys=E:\WINDOWS\SYSTEM32\DRIVERS\RASPPTP.SYS
[Drivers] psched.sys=E:\WINDOWS\SYSTEM32\DRIVERS\PSCHED.SYS
[Drivers] msgpc.sys=E:\WINDOWS\SYSTEM32\DRIVERS\MSGPC.SYS
[Drivers] ptilink.sys=E:\WINDOWS\SYSTEM32\DRIVERS\PTILINK.SYS
[Drivers] raspti.sys=E:\WINDOWS\SYSTEM32\DRIVERS\RASPTI.SYS
[Drivers] rdpdr.sys=E:\WINDOWS\SYSTEM32\DRIVERS\RDPDR.SYS
[Drivers] termdd.sys=E:\WINDOWS\SYSTEM32\DRIVERS\TERMDD.SYS
[Drivers] kbdclass.sys=E:\WINDOWS\SYSTEM32\DRIVERS\KBDCLASS.SYS
[Drivers] mouclass.sys=E:\WINDOWS\SYSTEM32\DRIVERS\MOUCLASS.SYS
[Drivers] swenum.sys=E:\WINDOWS\SYSTEM32\DRIVERS\SWENUM.SYS
[Drivers] update.sys=E:\WINDOWS\SYSTEM32\DRIVERS\UPDATE.SYS
[Drivers] vsb.sys=E:\WINDOWS\SYSTEM32\DRIVERS\VSB.SYS
[Drivers] usbhub.sys=E:\WINDOWS\SYSTEM32\DRIVERS\USBHUB.SYS
[Drivers] USBD.SYS=E:\WINDOWS\SYSTEM32\DRIVERS\USBD.SYS
[Drivers] NDProxy.SYS=E:\WINDOWS\SYSTEM32\DRIVERS\NDPROXY.SYS
[Drivers] nvapu.sys=E:\WINDOWS\SYSTEM32\DRIVERS\NVAPU.SYS
[Drivers] portcls.sys=E:\WINDOWS\SYSTEM32\DRIVERS\PORTCLS.SYS
[Drivers] drmk.sys=E:\WINDOWS\SYSTEM32\DRIVERS\DRMK.SYS
[Drivers] nvmcp.sys=E:\WINDOWS\SYSTEM32\DRIVERS\NVMCP.SYS
[Drivers] nvarm.sys=E:\WINDOWS\SYSTEM32\DRIVERS\NVARM.SYS
[Drivers] flpydisk.sys=E:\WINDOWS\SYSTEM32\DRIVERS\FLPYDISK.SYS
[Drivers] Fs_Rec.SYS=E:\WINDOWS\SYSTEM32\DRIVERS\FS_REC.SYS
[Drivers] Null.SYS=E:\WINDOWS\SYSTEM32\DRIVERS\NULL.SYS
[Drivers] Beep.SYS=E:\WINDOWS\SYSTEM32\DRIVERS\BEEP.SYS
[Drivers] HIDPARSE.SYS=E:\WINDOWS\SYSTEM32\DRIVERS\HIDPARSE.SYS
[Drivers] vga.sys=E:\WINDOWS\SYSTEM32\DRIVERS\VGA.SYS
[Drivers] mnmdd.SYS=E:\WINDOWS\SYSTEM32\DRIVERS\MNMDD.SYS
[Drivers] RDPCDD.sys=E:\WINDOWS\SYSTEM32\DRIVERS\RDPCDD.SYS
[Drivers] Msfs.SYS=E:\WINDOWS\SYSTEM32\DRIVERS\MSFS.SYS
[Drivers] Npfs.SYS=E:\WINDOWS\SYSTEM32\DRIVERS\NPFS.SYS
[Drivers] rasacd.sys=E:\WINDOWS\SYSTEM32\DRIVERS\RASACD.SYS
[Drivers] ipsec.sys=E:\WINDOWS\SYSTEM32\DRIVERS\IPSEC.SYS
[Drivers] tcpip.sys=E:\WINDOWS\SYSTEM32\DRIVERS\TCPIP.SYS
[Drivers] netbt.sys=E:\WINDOWS\SYSTEM32\DRIVERS\NETBT.SYS
[Drivers] netbios.sys=E:\WINDOWS\SYSTEM32\DRIVERS\NETBIOS.SYS
[Drivers] StyleXPHelper.exe=E:\PROGRAMME\TGTSOFT\STYLEXP\STYLEXPHELPER.EXE
[Drivers] rdbss.sys=E:\WINDOWS\SYSTEM32\DRIVERS\RDBSS.SYS
[Drivers] prodrv06.sys=E:\WINDOWS\SYSTEM32\DRIVERS\PRODRV06.SYS
[Drivers] mrxsmb.sys=E:\WINDOWS\SYSTEM32\DRIVERS\MRXSMB.SYS
[Drivers] klif.sys=E:\WINDOWS\SYSTEM32\DRIVERS\KLIF.SYS
[Drivers] Fips.SYS=E:\WINDOWS\SYSTEM32\DRIVERS\FIPS.SYS
[Drivers] wanarp.sys=E:\WINDOWS\SYSTEM32\DRIVERS\WANARP.SYS
[Drivers] usbccgp.sys=E:\WINDOWS\SYSTEM32\DRIVERS\USBCCGP.SYS
[Drivers] hidusb.sys=E:\WINDOWS\SYSTEM32\DRIVERS\HIDUSB.SYS
[Drivers] HIDCLASS.SYS=E:\WINDOWS\SYSTEM32\DRIVERS\HIDCLASS.SYS
[Drivers] kbdhid.sys=E:\WINDOWS\SYSTEM32\DRIVERS\KBDHID.SYS
[Drivers] mouhid.sys=E:\WINDOWS\SYSTEM32\DRIVERS\MOUHID.SYS
[Drivers] Fastfat.SYS=E:\WINDOWS\SYSTEM32\DRIVERS\FASTFAT.SYS
[Drivers] atapi.sys=E:\WINDOWS\SYSTEM32\DRIVERS\DUMP_ATAPI.SYS
[Drivers] WMILIB.SYS=E:\WINDOWS\SYSTEM32\DRIVERS\DUMP_WMILIB.SYS
[Drivers] win32k.sys=E:\WINDOWS\SYSTEM32\WIN32K.SYS
[Drivers] watchdog.sys=E:\WINDOWS\SYSTEM32\WATCHDOG.SYS
[Drivers] Dxapi.sys=E:\WINDOWS\SYSTEM32\DRIVERS\DXAPI.SYS
[Drivers] dxg.sys=E:\WINDOWS\SYSTEM32\DRIVERS\DXG.SYS
[Drivers] dxgthk.sys=E:\WINDOWS\SYSTEM32\DRIVERS\DXGTHK.SYS
[Drivers] ati2dvag.dll=E:\WINDOWS\SYSTEM32\ATI2DVAG.DLL
[Drivers] ati2cqag.dll=E:\WINDOWS\SYSTEM32\ATI2CQAG.DLL
[Drivers] ati3duag.dll=E:\WINDOWS\SYSTEM32\ATI3DUAG.DLL
[Drivers] ativvaxx.dll=E:\WINDOWS\SYSTEM32\ATIVVAXX.DLL
[Drivers] afd.sys=E:\WINDOWS\SYSTEM32\DRIVERS\AFD.SYS
[Drivers] ndisuio.sys=E:\WINDOWS\SYSTEM32\DRIVERS\NDISUIO.SYS
[Drivers] Cdfs.SYS=E:\WINDOWS\SYSTEM32\DRIVERS\CDFS.SYS
[Drivers] wdmaud.sys=E:\WINDOWS\SYSTEM32\DRIVERS\WDMAUD.SYS
[Drivers] sysaudio.sys=E:\WINDOWS\SYSTEM32\DRIVERS\SYSAUDIO.SYS
[Drivers] mrxdav.sys=E:\WINDOWS\SYSTEM32\DRIVERS\MRXDAV.SYS
[Drivers] ParVdm.SYS=E:\WINDOWS\SYSTEM32\DRIVERS\PARVDM.SYS
[Drivers] secdrv.sys=E:\WINDOWS\SYSTEM32\DRIVERS\SECDRV.SYS
[Drivers] srv.sys=E:\WINDOWS\SYSTEM32\DRIVERS\SRV.SYS
[Drivers] symlcbrd.sys=E:\WINDOWS\SYSTEM32\DRIVERS\SYMLCBRD.SYS
[Drivers] regguard.sys=E:\WINDOWS\SYSTEM32\DRIVERS\REGGUARD.SYS
[Drivers] ntdll.dll=E:\WINDOWS\SYSTEM32\NTDLL.DLL
[Auto Start Apps]
[Registry Run] :HKCU MSMSGS="E:\Programme\Messenger\msmsgs.exe" /background
[Registry Run] :HKCU MsnMsgr="E:\Programme\MSN Messenger\MsnMsgr.Exe" /background
[Registry Run] :HKCU STYLEXP=E:\Programme\TGTSoft\StyleXP\StyleXP.exe -Hide
[Registry Run] :HKLM NeroFilterCheck=E:\WINDOWS\system32\NeroCheck.exe
[Registry Run] :HKLM RAM_DEFRAG=""
[Registry Run] :HKLM DAEMON Tools="E:\Programme\D-Tools\daemon.exe" -lang 1033
[Registry Run] :HKLM KernelFaultCheck=%systemroot%\system32\dumprep 0 -k
[Registry Run] :HKLM ServiceHost="E:\Programme\Java\jre1.5.0_06\bin\svchost.exe" ""
[Registry Run] :HKLM kav="E:\Programme\Kaspersky Anti-Virus 6.0\avp.exe"
[Registry Run] :HKLM "Default Value"=""
[Registry Run] :HKLM RemoteControl=E:\Programme\PowerDVD\PDVDServ.exe
[Registry Run] :HKLM LanguageShortcut=E:\Programme\PowerDVD\Language\Language.exe
[Registry Run] :HKLM SunJavaUpdateSched=E:\Programme\Java\jre1.5.0_07\bin\jusched.exe
[Registry Run] :HKLM Microsoft Works Update Detection=E:\Programme\Gemeinsame Dateien\Microsoft Shared\Works

Shared\WkUFind.exe
[Win.ini] load=""
[Win.ini] run=""
[Common Startup Folder] Adobe Reader - Schnellstart.lnk=E:\Programme\Adobe\Acrobat 7.0\Reader\reader_sl.exe
[Common Startup Folder] Microsoft Office.lnk=E:\Programme\Microsoft Office\Office10\OSA.EXE
[In memory]
[Running Processes] E:\WINDOWS\SYSTEM32\SMSS.EXE
[Running Processes] E:\WINDOWS\SYSTEM32\WINLOGON.EXE
[Running Processes] E:\WINDOWS\SYSTEM32\SERVICES.EXE
[Running Processes] E:\WINDOWS\SYSTEM32\LSASS.EXE
[Running Processes] E:\WINDOWS\SYSTEM32\ATI2EVXX.EXE
[Running Processes] E:\WINDOWS\SYSTEM32\SVCHOST.EXE
[Running Processes] E:\WINDOWS\SYSTEM32\SVCHOST.EXE
[Running Processes] E:\PROGRAMME\TGTSOFT\STYLEXP\STYLEXPSERVICE.EXE
[Running Processes] E:\WINDOWS\SYSTEM32\ATI2EVXX.EXE
[Running Processes] E:\WINDOWS\EXPLORER.EXE
[Running Processes] E:\PROGRAMME\GEMEINSAME DATEIEN\SYMANTEC SHARED\CCPD-LC\SYMLCSVC.EXE
[Running Processes] E:\PROGRAMME\D-TOOLS\DAEMON.EXE
[Running Processes] E:\PROGRAMME\KASPERSKY ANTI-VIRUS 6.0\AVP.EXE
[Running Processes] E:\PROGRAMME\POWERDVD\PDVDSERV.EXE
[Running Processes] E:\PROGRAMME\JAVA\JRE1.5.0_07\BIN\JUSCHED.EXE
[Running Processes] E:\PROGRAMME\GEMEINSAME DATEIEN\MICROSOFT SHARED\WORKS SHARED\WKUFIND.EXE
[Running Processes] E:\PROGRAMME\MSN MESSENGER\MSNMSGR.EXE
[Running Processes] E:\WINDOWS\SYSTEM32\SPOOLSV.EXE
[Running Processes] E:\PROGRAMME\KASPERSKY ANTI-VIRUS 6.0\AVP.EXE
[Running Processes] E:\PROGRAMME\ALCOHOL SOFT\ALCOHOL 120\STARWIND\STARWINDSERVICE.EXE
[Running Processes] E:\WINDOWS\SYSTEM32\UASERVICE7.EXE
[Running Processes] E:\PROGRAMME\AZUREUS\AZUREUS.EXE
[Running Processes] E:\PROGRAMME\MOZILLA FIREFOX\FIREFOX.EXE
[Running Processes] E:\REANIMATOR\REANIMATOR.EXE
[Loaded DLLs] E:\WINDOWS\System32\mstask.dll
[Loaded DLLs] E:\WINDOWS\System32\RICHED32.DLL
[Loaded DLLs] E:\WINDOWS\system32\OLE32.DLL
[Loaded DLLs] E:\Programme\Mozilla Firefox\plugins\NPSWF32.dll
[Loaded DLLs] E:\WINDOWS\System32\midimap.dll
[Loaded DLLs] E:\Programme\Mozilla Firefox\nssckbi.dll
[Loaded DLLs] E:\WINDOWS\System32\MSCTF.dll
[Loaded DLLs] E:\WINDOWS\System32\msimtf.dll
[Loaded DLLs] E:\Programme\Mozilla Firefox\components\jar50.dll
[Loaded DLLs] E:\Programme\Mozilla Firefox\xpcom_compat.dll
[Loaded DLLs] E:\Programme\Mozilla Firefox\ssl3.dll
[Loaded DLLs] E:\Programme\Mozilla Firefox\softokn3.dll
[Loaded DLLs] E:\Programme\Mozilla Firefox\nss3.dll
[Loaded DLLs] E:\Programme\Mozilla Firefox\smime3.dll
[Loaded DLLs] E:\WINDOWS\system32\ole32.dll
[Loaded DLLs] E:\Programme\Mozilla Firefox\plds4.dll
[Loaded DLLs] E:\Programme\Mozilla Firefox\plc4.dll
[Loaded DLLs] E:\Programme\Mozilla Firefox\xpcom_core.dll
[Loaded DLLs] E:\Programme\Mozilla Firefox\nspr4.dll
[Loaded DLLs] E:\Programme\Mozilla Firefox\js3250.dll
[Loaded DLLs] E:\Programme\Java\jre1.5.0_07\bin\fontmanager.dll
[Loaded DLLs] E:\Programme\Java\jre1.5.0_07\bin\cmm.dll
[Loaded DLLs] E:\Programme\Java\jre1.5.0_07\bin\jpeg.dll
[Loaded DLLs] E:\WINDOWS\System32\D3DIM700.DLL
[Loaded DLLs] E:\WINDOWS\System32\DCIMAN32.dll
[Loaded DLLs] E:\WINDOWS\System32\ddraw.dll
[Loaded DLLs] E:\Programme\Java\jre1.5.0_07\bin\awt.dll
[Loaded DLLs] E:\WINDOWS\System32\oleacc.dll
[Loaded DLLs] E:\WINDOWS\System32\USP10.dll
[Loaded DLLs] E:\WINDOWS\system32\ole32.dll
[Loaded DLLs] E:\Programme\Azureus\swt-win32-3139.dll
[Loaded DLLs] E:\Programme\Java\jre1.5.0_07\bin\nio.dll
[Loaded DLLs] E:\Programme\Java\jre1.5.0_07\bin\management.dll
[Loaded DLLs] E:\Programme\Azureus\aereg.dll
[Loaded DLLs] E:\Programme\Java\jre1.5.0_07\bin\net.dll
[Loaded DLLs] e:\programme\java\jre1.5.0_07\bin\zip.dll
[Loaded DLLs] e:\programme\java\jre1.5.0_07\bin\java.dll
[Loaded DLLs] e:\programme\java\jre1.5.0_07\bin\verify.dll
[Loaded DLLs] e:\programme\java\jre1.5.0_07\bin\hpi.dll
[Loaded DLLs] e:\programme\java\jre1.5.0_07\bin\client\jvm.dll
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\baseinstaller.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\execinstaller.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\updateinstaller.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\updatecategory.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\base64.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\updateobjectinfo.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\ftpsession.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\socket.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\netsession.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\updateinfo.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\base64p.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\diff.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\updater.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\productinfo.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\updater2005.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\btdisk.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\btimages.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\mdmap.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\inflate.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\prseqio.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\msoe.ppl
[Loaded DLLs] E:\WINDOWS\System32\MAPI32.dll
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\mdb.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\lha.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\rar.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\arj.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\cab.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\minizip.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\uniarc.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\tempfile.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\iwgen.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\hccmp.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\hashcont.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\nntpprotocoller.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\imapprotocoller.ppl
[Loaded DLLs] E:\Programme\Kaspersky Anti-Virus 6.0\ckahrule.dll
[Loaded DLLs] E:\Programme\Kaspersky Anti-Virus 6.0\CKAHComm.dll
[Loaded DLLs] E:\Programme\Kaspersky Anti-Virus 6.0\CKAHUM.dll
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\trafficmonitor2.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\pop3protocoller.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\httpanlz.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\smtpprotocoller.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\icheckersa.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\ichk2.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\l_llio.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\avp1.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\prutil.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\sfdb.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\dtreg.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\sc.ppl
[Loaded DLLs] E:\Programme\Kaspersky Anti-Virus 6.0\klaveng.dll
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\httpscan.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\oas.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\mc.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\procmon.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\og.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\pdm.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\avp3info.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\avspm.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\avlib.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\wdiskio.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\avpmgr.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\avs.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\hashmd5.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\report.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\lic60.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\timer.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\schedule.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\crpthlpr.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\ndetect.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\wmihlpr.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\bl.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\tm.ppl
[Loaded DLLs] E:\WINDOWS\system32\icmp.dll
[Loaded DLLs] E:\WINDOWS\system32\inetpp.dll
[Loaded DLLs] E:\WINDOWS\system32\win32spl.dll
[Loaded DLLs] E:\WINDOWS\system32\usbmon.dll
[Loaded DLLs] E:\WINDOWS\system32\tcpmon.dll
[Loaded DLLs] E:\WINDOWS\system32\pjlmon.dll
[Loaded DLLs] E:\WINDOWS\system32\cnbjmon.dll
[Loaded DLLs] E:\WINDOWS\system32\localspl.dll
[Loaded DLLs] E:\WINDOWS\system32\SPOOLSS.DLL
[Loaded DLLs] E:\WINDOWS\System32\devenum.dll
[Loaded DLLs] E:\WINDOWS\System32\dpnhupnp.dll
[Loaded DLLs] E:\WINDOWS\System32\RICHED20.dll
[Loaded DLLs] E:\WINDOWS\System32\msdmo.dll
[Loaded DLLs] E:\Programme\MSN Messenger\MSGSLANG.DLL
[Loaded DLLs] E:\Programme\MSN Messenger\msidcrl.dll
[Loaded DLLs] E:\WINDOWS\System32\DSOUND.dll
[Loaded DLLs] E:\WINDOWS\System32\CRYPTNET.dll
[Loaded DLLs] E:\WINDOWS\system32\SHLWAPI.dll
[Loaded DLLs] E:\WINDOWS\System32\MSVCR70.dll
[Loaded DLLs] E:\Programme\PowerDVD\MSVCR71.dll
[Loaded DLLs] E:\Programme\PowerDVD\CLRCEngine3.dll
[Loaded DLLs] E:\WINDOWS\system32\ole32.dll
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\qb.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\thpimpl.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\fsdrvplgn.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\nfio.ppl
[Loaded DLLs] E:\WINDOWS\System32\OLEPRO32.DLL
[Loaded DLLs] E:\Programme\Kaspersky Anti-Virus 6.0\basegui.dll
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\avpgui.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\winreg.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\params.ppl
[Loaded DLLs] e:\programme\kaspersky anti-virus 6.0\pxstub.ppl
[Loaded DLLs] E:\Programme\Kaspersky Anti-Virus 6.0\prkernel.ppl
[Loaded DLLs] E:\Programme\Kaspersky Anti-Virus 6.0\prloader.dll
[Loaded DLLs] E:\Programme\Kaspersky Anti-Virus 6.0\AVPGS.PPL
[Loaded DLLs] E:\WINDOWS\system32\ole32.dll
[Loaded DLLs] E:\Programme\Kaspersky Anti-Virus 6.0\FSSync.dll
[Loaded DLLs] E:\Programme\Kaspersky Anti-Virus 6.0\pr_remote.dll
[Loaded DLLs] E:\Programme\D-Tools\Plugins\Images\pdimount.dll
[Loaded DLLs] E:\Programme\D-Tools\Plugins\Images\nrgmount.dll
[Loaded DLLs] E:\Programme\D-Tools\Plugins\Images\mdsmount.dll
[Loaded DLLs] E:\Programme\D-Tools\Plugins\Images\ccdmount.dll
[Loaded DLLs] E:\Programme\D-Tools\Plugins\Images\bw5mount.dll
[Loaded DLLs] E:\Programme\D-Tools\PFCTOC.DLL
[Loaded DLLs] E:\Programme\D-Tools\daemon.dll
[Loaded DLLs] E:\WINDOWS\system32\ole32.dll
[Loaded DLLs] E:\Programme\Gemeinsame Dateien\Symantec Shared\CCPD-LC\symlcnet.dll
[Loaded DLLs] E:\WINDOWS\system32\SHLWAPI.dll
[Loaded DLLs] E:\WINDOWS\System32\actxprxy.dll
[Loaded DLLs] E:\Programme\Adobe\Acrobat 7.0\ActiveX\PDFShell.dll
[Loaded DLLs] E:\Programme\Kaspersky Anti-Virus 6.0\shellex.dll
[Loaded DLLs] E:\Programme\Unlocker\UnlockerCOM.dll
[Loaded DLLs] E:\Programme\WinRAR\rarext.dll
[Loaded DLLs] E:\WINDOWS\System32\mydocs.dll
[Loaded DLLs] E:\WINDOWS\System32\mscms.dll
[Loaded DLLs] E:\WINDOWS\System32\shdoclc.dll
[Loaded DLLs] E:\WINDOWS\System32\l3codeca.acm
[Loaded DLLs] E:\WINDOWS\System32\IMM32.dll
[Loaded DLLs] E:\WINDOWS\System32\midimap.dll
[Loaded DLLs] E:\WINDOWS\System32\DUSER.dll
[Loaded DLLs] E:\WINDOWS\System32\MSVCR71.dll
[Loaded DLLs] E:\Programme\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
[Loaded DLLs] E:\WINDOWS\System32\browselc.dll
[Loaded DLLs] E:\WINDOWS\System32\davclnt.dll
[Loaded DLLs] E:\WINDOWS\System32\NETRAP.dll
[Loaded DLLs] E:\WINDOWS\System32\NETUI1.dll
[Loaded DLLs] E:\WINDOWS\System32\NETUI0.dll
[Loaded DLLs] E:\WINDOWS\System32\ntlanman.dll
[Loaded DLLs] E:\WINDOWS\System32\drprov.dll
[Loaded DLLs] E:\WINDOWS\System32\CFGMGR32.dll
[Loaded DLLs] E:\WINDOWS\System32\printui.dll
[Loaded DLLs] E:\WINDOWS\System32\BatMeter.dll
[Loaded DLLs] E:\WINDOWS\System32\stobject.dll
[Loaded DLLs] E:\WINDOWS\System32\webcheck.dll
[Loaded DLLs] E:\WINDOWS\System32\msi.dll
[Loaded DLLs] E:\WINDOWS\System32\MLANG.dll
[Loaded DLLs] E:\WINDOWS\System32\ntshrui.dll
[Loaded DLLs] E:\WINDOWS\System32\LINKINFO.dll
[Loaded DLLs] E:\WINDOWS\System32\MSIMG32.dll
[Loaded DLLs] E:\WINDOWS\System32\themeui.dll
[Loaded DLLs] E:\WINDOWS\system32\appHelp.dll
[Loaded DLLs] E:\WINDOWS\System32\SHDOCVW.dll
[Loaded DLLs] E:\WINDOWS\System32\BROWSEUI.dll
[Loaded DLLs] E:\WINDOWS\system32\ole32.dll
[Loaded DLLs] E:\WINDOWS\system32\Ati2edxx.dll
[Loaded DLLs] E:\WINDOWS\system32\SHLWAPI.dll
[Loaded DLLs] E:\WINDOWS\System32\wbem\wbemcons.dll
[Loaded DLLs] E:\WINDOWS\System32\catsrv.dll
[Loaded DLLs] E:\WINDOWS\System32\MfcSubs.dll
[Loaded DLLs] E:\WINDOWS\System32\catsrvut.dll
[Loaded DLLs] E:\WINDOWS\System32\wbem\ncprov.dll
[Loaded DLLs] E:\WINDOWS\System32\RASDLG.dll
[Loaded DLLs] E:\WINDOWS\System32\ntlsapi.dll
[Loaded DLLs] E:\WINDOWS\System32\rasppp.dll
[Loaded DLLs] E:\WINDOWS\System32\hidphone.tsp
[Loaded DLLs] E:\WINDOWS\System32\h323.tsp
[Loaded DLLs] E:\WINDOWS\System32\ipconf.tsp
[Loaded DLLs] E:\WINDOWS\System32\ndptsp.tsp
[Loaded DLLs] E:\WINDOWS\System32\kmddsp.tsp
[Loaded DLLs] E:\WINDOWS\System32\uniplat.dll
[Loaded DLLs] E:\WINDOWS\System32\unimdm.tsp
[Loaded DLLs] E:\WINDOWS\System32\rastapi.dll
[Loaded DLLs] e:\windows\system32\rasmans.dll
[Loaded DLLs] e:\windows\system32\tapisrv.dll
[Loaded DLLs] E:\WINDOWS\System32\netcfgx.dll
[Loaded DLLs] E:\WINDOWS\system32\urlmon.dll
[Loaded DLLs] E:\WINDOWS\System32\sensapi.dll
[Loaded DLLs] E:\WINDOWS\System32\wbem\wbemess.dll
[Loaded DLLs] E:\WINDOWS\System32\wbem\wmiprvsd.dll
[Loaded DLLs] E:\WINDOWS\System32\wbem\repdrvfs.dll
[Loaded DLLs] E:\WINDOWS\System32\msi.dll
[Loaded DLLs] E:\WINDOWS\System32\wbem\wmiutils.dll
[Loaded DLLs] E:\WINDOWS\System32\SSDPAPI.dll
[Loaded DLLs] E:\WINDOWS\System32\upnp.dll
[Loaded DLLs] E:\WINDOWS\System32\hnetcfg.dll
[Loaded DLLs] E:\WINDOWS\system32\credui.dll
[Loaded DLLs] E:\WINDOWS\system32\NETSHELL.dll
[Loaded DLLs] E:\WINDOWS\System32\Wbem\esscli.dll
[Loaded DLLs] E:\WINDOWS\System32\Wbem\wbemcore.dll
[Loaded DLLs] e:\windows\system32\netman.dll
[Loaded DLLs] e:\windows\system32\mstlsapi.dll
[Loaded DLLs] e:\windows\system32\ICAAPI.dll
[Loaded DLLs] e:\windows\system32\termsrv.dll
[Loaded DLLs] E:\WINDOWS\System32\mtxoci.dll
[Loaded DLLs] E:\WINDOWS\System32\RESUTILS.DLL
[Loaded DLLs] E:\WINDOWS\System32\CLUSAPI.DLL
[Loaded DLLs] E:\WINDOWS\system32\colbact.DLL
[Loaded DLLs] E:\WINDOWS\system32\WSOCK32.dll
[Loaded DLLs] E:\WINDOWS\system32\MTXCLU.DLL
[Loaded DLLs] E:\WINDOWS\system32\comsvcs.dll
[Loaded DLLs] e:\windows\system32\sens.dll
[Loaded DLLs] e:\windows\system32\browser.dll
[Loaded DLLs] E:\WINDOWS\System32\mspatcha.dll
[Loaded DLLs] E:\WINDOWS\System32\Cabinet.dll
[Loaded DLLs] E:\WINDOWS\System32\WINHTTP.dll
[Loaded DLLs] E:\WINDOWS\System32\SHFOLDER.dll
[Loaded DLLs] E:\WINDOWS\System32\ADVPACK.dll
[Loaded DLLs] E:\WINDOWS\System32\wuaueng.dll
[Loaded DLLs] e:\windows\system32\wuauserv.dll
[Loaded DLLs] e:\windows\system32\mspmspsv.dll
[Loaded DLLs] E:\WINDOWS\System32\VSSAPI.DLL
[Loaded DLLs] e:\windows\system32\wbem\wmisvc.dll
[Loaded DLLs] e:\windows\system32\trkwks.dll
[Loaded DLLs] e:\windows\system32\POWRPROF.dll
[Loaded DLLs] e:\windows\system32\srsvc.dll
[Loaded DLLs] e:\windows\system32\seclogon.dll
[Loaded DLLs] e:\windows\system32\msgsvc.dll
[Loaded DLLs] e:\windows\system32\srvsvc.dll
[Loaded DLLs] e:\windows\system32\HID.DLL
[Loaded DLLs] e:\windows\system32\hidserv.dll
[Loaded DLLs] e:\windows\pchealth\helpctr\binaries\pchsvc.dll
[Loaded DLLs] e:\windows\system32\es.dll
[Loaded DLLs] e:\windows\system32\ersvc.dll
[Loaded DLLs] e:\windows\system32\dmserver.dll
[Loaded DLLs] e:\windows\system32\certcli.dll
[Loaded DLLs] e:\windows\system32\cryptsvc.dll
[Loaded DLLs] e:\windows\system32\wkssvc.dll
[Loaded DLLs] e:\windows\system32\audiosrv.dll
[Loaded DLLs] E:\WINDOWS\System32\MSIDLE.DLL
[Loaded DLLs] e:\windows\system32\schedsvc.dll
[Loaded DLLs] E:\WINDOWS\System32\raschap.dll
[Loaded DLLs] E:\WINDOWS\System32\TAPI32.dll
[Loaded DLLs] E:\WINDOWS\System32\rasman.dll
[Loaded DLLs] E:\WINDOWS\System32\RASAPI32.dll
[Loaded DLLs] E:\WINDOWS\System32\adsldpc.dll
[Loaded DLLs] E:\WINDOWS\System32\ACTIVEDS.dll
[Loaded DLLs] E:\WINDOWS\System32\MPRAPI.dll
[Loaded DLLs] E:\WINDOWS\system32\WININET.dll
[Loaded DLLs] E:\WINDOWS\System32\CRYPTUI.dll
[Loaded DLLs] E:\WINDOWS\System32\ATL.DLL
[Loaded DLLs] E:\WINDOWS\System32\rastls.dll
[Loaded DLLs] e:\windows\system32\ESENT.dll
[Loaded DLLs] e:\windows\system32\WMI.dll
[Loaded DLLs] e:\windows\system32\rtutils.dll
[Loaded DLLs] e:\windows\system32\wzcsvc.dll
[Loaded DLLs] e:\windows\system32\dhcpcsvc.dll
[Loaded DLLs] E:\WINDOWS\system32\SHLWAPI.dll
[Loaded DLLs] E:\WINDOWS\system32\rasadhlp.dll
[Loaded DLLs] E:\WINDOWS\System32\winrnr.dll
[Loaded DLLs] e:\windows\system32\rpcss.dll
[Loaded DLLs] E:\WINDOWS\System32\Ati2edxx.dll
[Loaded DLLs] E:\WINDOWS\System32\dssenh.dll
[Loaded DLLs] E:\WINDOWS\system32\psbase.dll
[Loaded DLLs] E:\WINDOWS\system32\pstorsvc.dll
[Loaded DLLs] E:\WINDOWS\System32\wshtcpip.dll
[Loaded DLLs] E:\WINDOWS\system32\mswsock.dll
[Loaded DLLs] E:\WINDOWS\system32\WINIPSEC.DLL
[Loaded DLLs] E:\WINDOWS\system32\oakley.DLL
[Loaded DLLs] E:\WINDOWS\system32\ipsecsvc.dll
[Loaded DLLs] E:\WINDOWS\system32\SHLWAPI.dll
[Loaded DLLs] E:\WINDOWS\system32\OLE32.DLL
[Loaded DLLs] E:\WINDOWS\system32\scecli.dll
[Loaded DLLs] E:\WINDOWS\system32\wdigest.dll
[Loaded DLLs] E:\WINDOWS\system32\schannel.dll
[Loaded DLLs] E:\WINDOWS\system32\iphlpapi.dll
[Loaded DLLs] E:\WINDOWS\system32\MSVCP60.dll
[Loaded DLLs] E:\WINDOWS\system32\w32time.dll
[Loaded DLLs] E:\WINDOWS\system32\netlogon.dll
[Loaded DLLs] E:\WINDOWS\system32\kerberos.dll
[Loaded DLLs] E:\WINDOWS\system32\msprivs.dll
[Loaded DLLs] E:\WINDOWS\system32\NTDSAPI.dll
[Loaded DLLs] E:\WINDOWS\system32\DNSAPI.dll
[Loaded DLLs] E:\WINDOWS\system32\cryptdll.dll
[Loaded DLLs] E:\WINDOWS\system32\SAMSRV.dll
[Loaded DLLs] E:\WINDOWS\system32\LSASRV.dll
[Loaded DLLs] E:\WINDOWS\system32\eventlog.dll
[Loaded DLLs] E:\WINDOWS\system32\NCObjAPI.DLL
[Loaded DLLs] E:\WINDOWS\system32\umpnpmgr.dll
[Loaded DLLs] E:\WINDOWS\system32\SCESRV.dll
[Loaded DLLs] E:\WINDOWS\System32\wbem\fastprox.dll
[Loaded DLLs] E:\WINDOWS\System32\wbem\wbemsvc.dll
[Loaded DLLs] E:\WINDOWS\System32\wbem\wbemcomn.dll
[Loaded DLLs] E:\WINDOWS\System32\wbem\wbemprox.dll
[Loaded DLLs] E:\WINDOWS\System32\CLBCATQ.DLL
[Loaded DLLs] E:\WINDOWS\System32\COMRes.dll
[Loaded DLLs] E:\WINDOWS\System32\midimap.dll
[Loaded DLLs] E:\WINDOWS\System32\MSACM32.dll
[Loaded DLLs] E:\WINDOWS\System32\msacm32.drv
[Loaded DLLs] E:\WINDOWS\System32\wdmaud.drv
[Loaded DLLs] E:\WINDOWS\system32\msv1_0.dll
[Loaded DLLs] E:\WINDOWS\system32\WLDAP32.dll
[Loaded DLLs] E:\WINDOWS\System32\NTMARTA.DLL
[Loaded DLLs] E:\WINDOWS\System32\cscui.dll
[Loaded DLLs] E:\WINDOWS\System32\SAMLIB.dll
[Loaded DLLs] E:\WINDOWS\System32\asycfilt.dll
[Loaded DLLs] E:\WINDOWS\system32\MPR.dll
[Loaded DLLs] E:\WINDOWS\System32\WINSPOOL.DRV
[Loaded DLLs] E:\WINDOWS\system32\WlNotify.dll
[Loaded DLLs] E:\WINDOWS\System32\rsaenh.dll
[Loaded DLLs] E:\WINDOWS\system32\OLEAUT32.dll
[Loaded DLLs] E:\WINDOWS\System32\klogon.dll
[Loaded DLLs] E:\WINDOWS\system32\cscdll.dll
[Loaded DLLs] E:\WINDOWS\system32\Ati2evxx.dll
[Loaded DLLs] E:\WINDOWS\System32\WINMM.dll
[Loaded DLLs] E:\WINDOWS\System32\uxtheme.dll
[Loaded DLLs] E:\WINDOWS\System32\sxs.dll
[Loaded DLLs] E:\WINDOWS\System32\WTSAPI32.dll
[Loaded DLLs] E:\WINDOWS\System32\WINSCARD.DLL
[Loaded DLLs] E:\WINDOWS\system32\IMAGEHLP.dll
[Loaded DLLs] E:\WINDOWS\system32\ole32.dll
[Loaded DLLs] E:\WINDOWS\System32\WINTRUST.dll
[Loaded DLLs] E:\WINDOWS\System32\sfc_os.dll
[Loaded DLLs] E:\WINDOWS\system32\sfc.dll
[Loaded DLLs] E:\WINDOWS\System32\SHSVCS.dll
[Loaded DLLs] E:\WINDOWS\System32\odbcint.dll
[Loaded DLLs]

E:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.10.0_x-ww_f7fb5805\comctl32.dll
[Loaded DLLs] E:\WINDOWS\system32\comdlg32.dll
[Loaded DLLs] E:\WINDOWS\System32\ODBC32.dll
[Loaded DLLs] E:\WINDOWS\system32\COMCTL32.dll
[Loaded DLLs] E:\WINDOWS\system32\SHLWAPI.dll
[Loaded DLLs] E:\WINDOWS\system32\SHELL32.dll
[Loaded DLLs] E:\WINDOWS\System32\MSGINA.dll
[Loaded DLLs] E:\WINDOWS\system32\SETUPAPI.dll
[Loaded DLLs] E:\WINDOWS\system32\VERSION.dll
[Loaded DLLs] E:\WINDOWS\system32\PSAPI.DLL
[Loaded DLLs] E:\WINDOWS\system32\AUTHZ.dll
[Loaded DLLs] E:\WINDOWS\system32\WS2HELP.dll
[Loaded DLLs] E:\WINDOWS\system32\WS2_32.dll
[Loaded DLLs] E:\WINDOWS\system32\REGAPI.dll
[Loaded DLLs] E:\WINDOWS\system32\NETAPI32.dll
[Loaded DLLs] E:\WINDOWS\system32\PROFMAP.dll
[Loaded DLLs] E:\WINDOWS\system32\WINSTA.dll
[Loaded DLLs] E:\WINDOWS\system32\Secur32.dll
[Loaded DLLs] E:\WINDOWS\system32\MSASN1.dll
[Loaded DLLs] E:\WINDOWS\system32\CRYPT32.dll
[Loaded DLLs] E:\WINDOWS\system32\NDdeApi.dll
[Loaded DLLs] E:\WINDOWS\system32\USERENV.dll
[Loaded DLLs] E:\WINDOWS\system32\USER32.dll
[Loaded DLLs] E:\WINDOWS\system32\GDI32.dll
[Loaded DLLs] E:\WINDOWS\system32\RPCRT4.dll
[Loaded DLLs] E:\WINDOWS\system32\ADVAPI32.dll
[Loaded DLLs] E:\WINDOWS\system32\msvcrt.dll
[Loaded DLLs] E:\WINDOWS\system32\kernel32.dll
[Loaded DLLs] E:\WINDOWS\System32\ntdll.dll
[Explorer's DLLs] E:\WINDOWS\System32\actxprxy.dll
[Explorer's DLLs] E:\Programme\Adobe\Acrobat 7.0\ActiveX\PDFShell.dll
[Explorer's DLLs] E:\Programme\Kaspersky Anti-Virus 6.0\shellex.dll
[Explorer's DLLs] E:\Programme\Unlocker\UnlockerCOM.dll
[Explorer's DLLs] E:\Programme\WinRAR\rarext.dll
[Explorer's DLLs] E:\WINDOWS\System32\mydocs.dll
[Explorer's DLLs] E:\WINDOWS\System32\mscms.dll
[Explorer's DLLs] E:\WINDOWS\System32\shdoclc.dll
[Explorer's DLLs] E:\WINDOWS\System32\l3codeca.acm
[Explorer's DLLs] E:\WINDOWS\System32\IMM32.dll
[Explorer's DLLs] E:\WINDOWS\System32\midimap.dll
[Explorer's DLLs] E:\WINDOWS\System32\DUSER.dll
[Explorer's DLLs] E:\WINDOWS\System32\MSVCR71.dll
[Explorer's DLLs] E:\Programme\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
[Explorer's DLLs] E:\WINDOWS\System32\browselc.dll
[Explorer's DLLs] E:\WINDOWS\System32\davclnt.dll
[Explorer's DLLs] E:\WINDOWS\System32\NETRAP.dll
[Explorer's DLLs] E:\WINDOWS\System32\NETUI1.dll
[Explorer's DLLs] E:\WINDOWS\System32\NETUI0.dll
[Explorer's DLLs] E:\WINDOWS\System32\ntlanman.dll
[Explorer's DLLs] E:\WINDOWS\System32\drprov.dll
[Explorer's DLLs] E:\WINDOWS\System32\CFGMGR32.dll
[Explorer's DLLs] E:\WINDOWS\System32\printui.dll
[Explorer's DLLs] E:\WINDOWS\System32\BatMeter.dll
[Explorer's DLLs] E:\WINDOWS\System32\stobject.dll
[Explorer's DLLs] E:\WINDOWS\System32\webcheck.dll
[Explorer's DLLs] E:\WINDOWS\System32\msi.dll
[Explorer's DLLs] E:\WINDOWS\System32\MLANG.dll
[Explorer's DLLs] E:\WINDOWS\System32\ntshrui.dll
[Explorer's DLLs] E:\WINDOWS\System32\LINKINFO.dll
[Explorer's DLLs] E:\WINDOWS\System32\MSIMG32.dll
[Explorer's DLLs] E:\WINDOWS\System32\themeui.dll
[Explorer's DLLs] E:\WINDOWS\system32\appHelp.dll
[Explorer's DLLs] E:\WINDOWS\System32\SHDOCVW.dll
[Explorer's DLLs] E:\WINDOWS\System32\BROWSEUI.dll
[Explorer's DLLs] E:\WINDOWS\system32\ole32.dll
[Explorer's DLLs] E:\WINDOWS\system32\urlmon.dll
[Explorer's DLLs] E:\WINDOWS\system32\credui.dll
[Explorer's DLLs] E:\WINDOWS\system32\NETSHELL.dll
[Explorer's DLLs] e:\windows\system32\POWRPROF.dll
[Explorer's DLLs] E:\WINDOWS\System32\adsldpc.dll
[Explorer's DLLs] E:\WINDOWS\System32\ACTIVEDS.dll
[Explorer's DLLs] E:\WINDOWS\system32\WININET.dll
[Explorer's DLLs] E:\WINDOWS\System32\ATL.DLL
[Explorer's DLLs] E:\WINDOWS\system32\iphlpapi.dll
[Explorer's DLLs] E:\WINDOWS\system32\MSVCP60.dll
[Explorer's DLLs] E:\WINDOWS\System32\CLBCATQ.DLL
[Explorer's DLLs] E:\WINDOWS\System32\COMRes.dll
[Explorer's DLLs] E:\WINDOWS\System32\MSACM32.dll
[Explorer's DLLs] E:\WINDOWS\System32\msacm32.drv
[Explorer's DLLs] E:\WINDOWS\System32\wdmaud.drv
[Explorer's DLLs] E:\WINDOWS\system32\WLDAP32.dll
[Explorer's DLLs] E:\WINDOWS\System32\NTMARTA.DLL
[Explorer's DLLs] E:\WINDOWS\System32\cscui.dll
[Explorer's DLLs] E:\WINDOWS\System32\SAMLIB.dll
[Explorer's DLLs] E:\WINDOWS\system32\MPR.dll
[Explorer's DLLs] E:\WINDOWS\System32\WINSPOOL.DRV
[Explorer's DLLs] E:\WINDOWS\System32\rsaenh.dll
[Explorer's DLLs] E:\WINDOWS\system32\OLEAUT32.dll
[Explorer's DLLs] E:\WINDOWS\system32\cscdll.dll
[Explorer's DLLs] E:\WINDOWS\System32\WINMM.dll
[Explorer's DLLs] E:\WINDOWS\System32\uxtheme.dll
[Explorer's DLLs] E:\WINDOWS\System32\sxs.dll
[Explorer's DLLs] E:\WINDOWS\System32\WTSAPI32.dll
[Explorer's DLLs] E:\WINDOWS\system32\IMAGEHLP.dll
[Explorer's DLLs] E:\WINDOWS\System32\WINTRUST.dll
[Explorer's DLLs] E:\WINDOWS\System32\odbcint.dll
[Explorer's DLLs]

E:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.10.0_x-ww_f7fb5805\comctl32.dll
[Explorer's DLLs] E:\WINDOWS\system32\comdlg32.dll
[Explorer's DLLs] E:\WINDOWS\System32\ODBC32.dll
[Explorer's DLLs] E:\WINDOWS\system32\COMCTL32.dll
[Explorer's DLLs] E:\WINDOWS\system32\SHLWAPI.dll
[Explorer's DLLs] E:\WINDOWS\system32\SHELL32.dll
[Explorer's DLLs] E:\WINDOWS\System32\MSGINA.dll
[Explorer's DLLs] E:\WINDOWS\system32\SETUPAPI.dll
[Explorer's DLLs] E:\WINDOWS\system32\VERSION.dll
[Explorer's DLLs] E:\WINDOWS\system32\WS2HELP.dll
[Explorer's DLLs] E:\WINDOWS\system32\WS2_32.dll
[Explorer's DLLs] E:\WINDOWS\system32\NETAPI32.dll
[Explorer's DLLs] E:\WINDOWS\system32\WINSTA.dll
[Explorer's DLLs] E:\WINDOWS\system32\Secur32.dll
[Explorer's DLLs] E:\WINDOWS\system32\MSASN1.dll
[Explorer's DLLs] E:\WINDOWS\system32\CRYPT32.dll
[Explorer's DLLs] E:\WINDOWS\system32\USERENV.dll
[Explorer's DLLs] E:\WINDOWS\system32\USER32.dll
[Explorer's DLLs] E:\WINDOWS\system32\GDI32.dll
[Explorer's DLLs] E:\WINDOWS\system32\RPCRT4.dll
[Explorer's DLLs] E:\WINDOWS\system32\ADVAPI32.dll
[Explorer's DLLs] E:\WINDOWS\system32\msvcrt.dll
[Explorer's DLLs] E:\WINDOWS\system32\kernel32.dll
[Explorer's DLLs] E:\WINDOWS\System32\ntdll.dll
[Running Services] Ati HotKey Poller
[Running Services] AudioSrv
[Running Services] AVP
[Running Services] Browser
[Running Services] CryptSvc
[Running Services] Dhcp
[Running Services] dmserver
[Running Services] Dnscache
[Running Services] ERSvc
[Running Services] Eventlog
[Running Services] EventSystem
[Running Services] FastUserSwitchingCompatibility
[Running Services] helpsvc
[Running Services] HidServ
[Running Services] lanmanserver
[Running Services] lanmanworkstation
[Running Services] LmHosts
[Running Services] Messenger
[Running Services] Netman
[Running Services] Nla
[Running Services] PlugPlay
[Running Services] PolicyAgent
[Running Services] ProtectedStorage
[Running Services] RasMan
[Running Services] RemoteRegistry
[Running Services] RpcSs
[Running Services] SamSs
[Running Services] Schedule
[Running Services] seclogon
[Running Services] SENS
[Running Services] ShellHWDetection
[Running Services] Spooler
[Running Services] srservice
[Running Services] SSDPSRV
[Running Services] StarWindService
[Running Services] StyleXPService
[Running Services] Symantec Core LC
[Running Services] TapiSrv
[Running Services] TermService
[Running Services] Themes
[Running Services] TrkWks
[Running Services] uploadmgr
[Running Services] UserAccess7
[Running Services] W32Time
[Running Services] WebClient
[Running Services] winmgmt
[Running Services] WmdmPmSp
[Running Services] wuauserv
[Running Services] WZCSVC
[Uninstall]
[Applications] :HKLM EA SPORTS online 2006=E:\Spiele\FIFA 06\EA SPORTS online\EASOUNInstaller.exe
[Applications] :HKLM AddressBook
[Applications] :HKLM ATI - Dienstprogramm zur Deinstallation der Software=E:\Programme\ATI

Technologies\UninstallAll\AtiCimUn.exe
[Applications] :HKLM ATI Display Driver=rundll32

E:\WINDOWS\System32\atiiiexx.dll,_InfEngUnInstallINFFile_RunDLL@16 -force_restart -flags:0x2010001

-inf_class;)ISPLAY -clean
[Applications] :HKLM Branding
[Applications] :HKLM CleanUp!=E:\Programme\CleanUp!\uninstall.exe
[Applications] :HKLM Connection Manager
[Applications] :HKLM DirectAnimation
[Applications] :HKLM DirectDrawEx
[Applications] :HKLM DVD Decrypter (Remove Only)="E:\Programme\DVD Decrypter\uninstall.exe"
[Applications] :HKLM DVD Shrink 3.2="E:\Programme\DVD Shrink\unins000.exe"
[Applications] :HKLM FileZilla (remove only)="E:\Programme\FileZilla\uninstall.exe"
[Applications] :HKLM FileZilla Server (remove only)="E:\Programme\FileZilla Server\uninstall.exe"
[Applications] :HKLM Fontcore
[Applications] :HKLM GameSpy Arcade=E:\PROGRA~1\GAMESP~1\UNWISE.EXE E:\PROGRA~1\GAMESP~1\INSTALL.LOG
[Applications] :HKLM HijackThis 1.99.1=E:\DOKUME~1\SCHFCH~1\LOKALE~1\Temp\Rar$EX00.125\HijackThis.exe /uninstall
[Applications] :HKLM ICW
[Applications] :HKLM IE40
[Applications] :HKLM IE4Data
[Applications] :HKLM IE5BAKEX
[Applications] :HKLM IEData
[Applications] :HKLM IGN Download Manager 2.1.1=E:\Programme\GameSpy Arcade\Download Manager\uninst.exe
[Applications] :HKLM Indeo® Software=E:\WINDOWS\IsUninst.exe -fE:\Programme\Ligos\Indeo\Uninst.isu

-c"E:\Programme\Ligos\Indeo\Indeo System Files\indounin.dll"
[Applications] :HKLM InstallShield Uninstall Information
[Applications] :HKLM Command & Conquer Generals=E:\PROGRA~1\GEMEIN~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe

/M{06F80017-8F98-4C94-B868-52358569FC32}
[Applications] :HKLM Mobile Phone Manager=E:\PROGRA~1\GEMEIN~1\INSTAL~1\Driver\10\INTEL3~1\IDriver.exe

/M{938D9C57-3CF0-4DA8-B04E-EF99501859B5} /l1031
[Applications] :HKLM Age of Empires III=E:\PROGRA~1\GEMEIN~1\INSTAL~1\Driver\11\INTEL3~1\IDriver.exe

/M{A8CF5C37-8EC5-4C33-BB4A-87F468B77D45}
[Applications] :HKLM Kaspersky Anti-Virus 6.0=MsiExec.exe /I{75193929-9A52-4CA4-98DE-8C7296940920}
[Applications] :HKLM Kartenspiele_Volume_4=E:\Spiele\KARTEN~1\UNWISE.EXE E:\Spiele\KARTEN~1\INSTALL.LOG
[Applications] :HKLM KB884016
[Applications] :HKLM KB893803
[Applications] :HKLM Windows Installer 3.1

(KB893803)="E:\WINDOWS\$MSI31Uninstall_KB893803v2$\spuninst\spuninst.exe"
[Applications] :HKLM MegaTrainer XL V1.3.3.0="E:\Programme\MegaTrainer XL\unins000.exe"
[Applications] :HKLM Microsoft NetShow Player 2.0
[Applications] :HKLM Minigolf Meister=E:\Spiele\Minigolf Meister\uninstall.exe
[Applications] :HKLM MobileOptionPack
[Applications] :HKLM MotoGP URT 3="E:\Spiele\MotoGP 3\unins000.exe"
[Applications] :HKLM Mozilla Firefox (1.5.0.6)=E:\Programme\Mozilla Firefox\uninstall\uninstall.exe /ua "1.5.0.6

(de)"
[Applications] :HKLM MPlayer2
[Applications] :HKLM MSI30-Beta1
[Applications] :HKLM MSI30-Beta2
[Applications] :HKLM MSI30-KB884016
[Applications] :HKLM MSI30-RC1
[Applications] :HKLM MSI30-RC2
[Applications] :HKLM MSI30a-KB884016
[Applications] :HKLM MSI31-Beta
[Applications] :HKLM MSI31-RC1
[Applications] :HKLM MsJavaVM
[Applications] :HKLM Nero 6 Ultra Edition=E:\Programme\Nero\nero\uninstall\UNNERO.exe /UNINSTALL
[Applications] :HKLM NetMeeting
[Applications] :HKLM NVIDIA Audio Driver=E:\WINDOWS\System32\nvuAudio.exe Uninstall

E:\WINDOWS\System32\NvAudio.nvu,NVIDIA Audio Driver
[Applications] :HKLM NVIDIA nForce Treiber für Windows 2000/XP=rundll32.exe

E:\WINDOWS\System32\NVNFINST.DLL,NvUninstallCrush
[Applications] :HKLM OutlookExpress
[Applications] :HKLM PartyPoker="E:\Programme\Party Poker\PartyPoker\Uninstall.exe" "E:\Programme\Party

Poker\PartyPoker\install.log"
[Applications] :HKLM PCHealth=rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132

E:\WINDOWS\INF\PCHealth.inf
[Applications] :HKLM SchedulingAgent
[Applications] :HKLM ShockwaveFlash
[Applications] :HKLM Spybot - Search & Destroy 1.4="E:\Programme\Spybot\unins000.exe"
[Applications] :HKLM StyleXP (remove only)="E:\Programme\TGTSoft\StyleXP\StyleXP-uninstall.exe"
[Applications] :HKLM Norton AntiVirus 2006="E:\Programme\Gemeinsame Dateien\Symantec

Shared\SymSetup\Temp{C6F5B6CF-609C-428E-876F-CA83176C021B}.exe" /X
[Applications] :HKLM Synacast Plug-in 1.1.0.7=E:\Programme\Gemeinsame Dateien\Synacast\SynaLive\uninst.exe
[Applications] :HKLM TrackMania Nations ESWC 0.1.7.5="E:\Spiele\TrackMania Nations\unins000.exe"
[Applications] :HKLM TrackMania Sunrise Extreme 1.5.0="E:\Spiele\TrackMania Sunrise\Extreme\unins000.exe"
[Applications] :HKLM Total Video Converter 2.603="E:\Programme\Total Video Converter\unins000.exe"
[Applications] :HKLM TVAnts 1.0=E:\PROGRA~1\TVAnts\UNWISE.EXE E:\PROGRA~1\TVAnts\INSTALL.LOG
[Applications] :HKLM Unlocker 1.8.3=E:\Programme\Unlocker\uninst.exe
[Applications] :HKLM WinRAR Archivierer=E:\Programme\WinRAR\uninstall.exe
[Applications] :HKLM Microsoft Windows Media Video 9 VCM=RunDll32 advpack.dll,LaunchINFSection

E:\WINDOWS\INF\wmv9vcm.inf, Uninstall
[Applications] :HKLM Microsoft Works 2003-Setup-Start=E:\Programme\Microsoft Works Suite 2003\Setup\Launcher.exe

F:\
[Applications] :HKLM Z-defragRAM=E:\WINDOWS\AKDeInstall.exe "/E:\Programme\Z-Defrag\"
[Applications] :HKLM Command & Conquer Generals
[Applications] :HKLM ATI Control Panel=RunDll32

E:\PROGRA~1\GEMEIN~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "E:\Programme\InstallShield Installation

Information\{0BEDBD4E-2D34-47B5-9973-57E62B29307C}\setup.exe"
[Applications] :HKLM MSN Messenger 7.5=MsiExec.exe /I{0D93041A-03EC-11DA-BFBD-00065BBDC0B5}
[Applications] :HKLM Medal of Honor Allied Assault=RunDll32

E:\PROGRA~1\GEMEIN~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "E:\Programme\InstallShield Installation

Information\{0DEA94ED-915A-4834-A87E-388D012C8E02}\Setup.exe" -l0x7
[Applications] :HKLM AutoUpdate
[Applications] :HKLM Medal of Honor Allied Assault(tm) Spearhead Patch 2.15=RunDll32

E:\PROGRA~1\GEMEIN~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "E:\Programme\InstallShield Installation

Information\{18EF2DEE-DCB0-466A-ABA5-4C73E508530A}\Setup.exe" -l0x7
[Applications] :HKLM J2SE Runtime Environment 5.0 Update 7=MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150070}
[Applications] :HKLM WebFldrs XP
[Applications] :HKLM Microsoft Picture It! Foto 7.0=MsiExec.exe /I{369B36BE-3D64-4641-9AEA-808D436FE132}
[Applications] :HKLM Google Earth=RunDll32

E:\PROGRA~1\GEMEIN~1\INSTAL~1\PROFES~1\RunTime\10\01\Intel32\Ctor.dll,LaunchSetup "E:\Programme\InstallShield

Installation Information\{3DE5E7D4-7B88-403C-A3FD-2017A8240C5B}\setup.exe" -l0x9 -removeonly
[Applications] :HKLM PowerDVD=RunDll32 E:\PROGRA~1\GEMEIN~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup

"E:\Programme\InstallShield Installation Information\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}\Setup.exe" -uninstall
[Applications] :HKLM Kaspersky Anti-Virus 6.0
[Applications] :HKLM Medal of Honor Allied Assault(tm) Spearhead=RunDll32

E:\PROGRA~1\GEMEIN~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "E:\Programme\InstallShield Installation

Information\{7914BE1E-F186-4790-B8F4-9F63C52A41C1}\Setup.exe" -l0x7
[Applications] :HKLM DivX=E:\Programme\DivX\DivXCodecUninstall.exe /CODEC
[Applications] :HKLM Microsoft Office XP Professional mit FrontPage=MsiExec.exe

/I{90280407-6000-11D3-8CFE-0050048383C9}
[Applications] :HKLM Mobile Phone Manager
[Applications] :HKLM Age of Empires III
[Applications] :HKLM Adobe Reader 7.0 - Deutsch=MsiExec.exe /I{AC76BA86-7AD7-1031-7B44-A70000000000}
[Applications] :HKLM Medal of Honor Allied Assault(tm) Spearhead=RunDll32

E:\PROGRA~1\GEMEIN~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "E:\Programme\InstallShield Installation

Information\{BE699EDC-9E58-4671-A23E-9CDF7F6F42F2}\Setup.exe" -l0x7
[Applications] :HKLM Works Suite-Betriebssystem-Pack
[Applications] :HKLM Microsoft XML Parser
[Applications] :HKLM TMPGEnc 3.0 XPress=MsiExec.exe /I{D48EAA77-E526-41EB-894C-BD6A17EABD95}
[Applications] :HKLM FUSSBALL MANAGER 06=E:\Spiele\Fussball Manager 06\EAUninstall.exe
[Applications] :HKLM =MsiExec.exe /X{E9F81423-211E-46B6-9AE0-38568BC5CF6F}
[Applications] :HKLM Microsoft Works 7.0 =MsiExec.exe /I{EDDDC607-91D9-4758-9F57-265FDCD8A772}




Prohibited: 0
Suspicious: 8
Warnings: 3


1) E:\WINDOWS\System32\klogon.dll > "Suspicious"

2) rundll32.exe advpack.dll,LaunchINFSection E:\WINDOWS\INF\mplayer2.inf,PerUserStub.NT > "Suspicious"

3) "E:\Programme\Kaspersky Anti-Virus 6.0\avp.exe" -r > "Suspicious"

4) "E:\Programme\Tv.exe" > "Suspicious"

5) "E:\Programme\Messenger\msmsgs.exe" /background > "Suspicious"

6) "E:\Programme\Java\jre1.5.0_06\bin\svchost.exe" "" > "Suspicious"

7) "E:\Programme\Kaspersky Anti-Virus 6.0\avp.exe" > "Suspicious"

8) E:\Programme\PowerDVD\Language\Language.exe > "Suspicious"

9) E:\WINDOWS\SYSTEM32\DRIVERS\SPTD5293.SYS > "Warnings"

10) E:\WINDOWS\System32\DRIVERS\ > "Warnings"

11) E:\WINDOWS\SYSTEM32\DRIVERS\VSB.SYS > "Warnings"


>>> Bei 2), 4), 5), 6) und 10) stand als info immer "couldn`t find file"
__________
_____________
THX for Helping
Seitenanfang Seitenende
10.08.2006, 14:03
Ehrenmitglied
Avatar Sabina

Beiträge: 29434
#103 was zu loeschen ist (versuche es mal mit diesem Tool)
ist:
E:\Programme\Tv.exe
E:\Programme\Java\jre1.5.0_06\bin\svchost.exe

..(das hatten wir doch schon mal ??? )
__________
MfG Sabina

rund um die PC-Sicherheit
Seitenanfang Seitenende
10.08.2006, 14:22
Member

Themenstarter

Beiträge: 95
#104 Die "...tv.exe" und die andere "java...svchost.exe" sind ja garnicht mehr vorhanden !
Ich weiß nicht warum er die angezeigt bzw "gefunden" hat !
__________
_____________
THX for Helping
Seitenanfang Seitenende
10.08.2006, 14:55
Ehrenmitglied
Avatar Sabina

Beiträge: 29434
#105 wenn es gefunden wurde, ist die TV.exe da, nur eben versteckt, da hast du dir was uebles eingefangen, ich denke nicht, das wir das 100% geloescht bekommen, wenn du mal ans Formatieren denkst, so zoegere nicht, trotz aller Reinigungs-Anstrengungen ist dein System kompromitiert..............
__________
MfG Sabina

rund um die PC-Sicherheit
Seitenanfang Seitenende