Malware (www.newsalone.com / www.cheappress.com / etc)

#0
28.08.2006, 20:20
...neu hier

Beiträge: 10
#1 hi zusammen,

hier erst ma logfile^^


Logfile of HijackThis v1.99.1
Scan saved at 20:41:02, on 28.08.2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Programme\Panda Software\Panda Titanium Antivirus 2005\PavProt.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\Programme\AntiVir PersonalEdition Classic\sched.exe
C:\Programme\AntiVir PersonalEdition Classic\avguard.exe
C:\Programme\Gemeinsame Dateien\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\Programme\Panda Software\Panda Titanium Antivirus 2005\Firewall\PavFires.exe
C:\Programme\Panda Software\Panda Titanium Antivirus 2005\PavFnSvr.exe
C:\Programme\Panda Software\Panda Titanium Antivirus 2005\Pavkre.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\Explorer.EXE
C:\Programme\AntiVir PersonalEdition Classic\avgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Programme\ICQLite\ICQLite.exe
C:\WINDOWS\system32\svchost.exe
C:\Programme\Internet Explorer\iexplore.exe
C:\Dokumente und Einstellungen\Domme\Desktop\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.de/
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [avgnt] "C:\Programme\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [WinPatrol] C:\PROGRA~1\WINPAT~1\winpatrol.exe
O4 - HKLM\..\Run: [APVXDWIN] C:\Programme\Panda Software\Panda Titanium Antivirus 2005\APVXDWIN.EXE /s
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Programme\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [Steam] "c:\programme\steam\steam.exe" -silent
O4 - HKCU\..\RunOnce: [ICQ Lite] C:\Programme\ICQLite\ICQLite.exe -trayboot
O4 - Startup: Adobe Gamma.lnk = C:\Programme\Gemeinsame Dateien\Adobe\Calibration\Adobe Gamma Loader.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Programme\ICQLite\ICQLite.exe
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Programme\ICQLite\ICQLite.exe
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: App Paths - C:\WINDOWS\system32\hr0605dse.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Programme\Gemeinsame Dateien\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: AntiVir PersonalEdition Classic Planer (AntiVirScheduler) - Avira GmbH - C:\Programme\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - AVIRA GmbH - C:\Programme\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programme\Gemeinsame Dateien\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Panda Firewall Service (PAVFIRES) - Panda Software - C:\Programme\Panda Software\Panda Titanium Antivirus 2005\Firewall\PavFires.exe
O23 - Service: Panda Function Service (PAVFNSVR) - Panda Software - C:\Programme\Panda Software\Panda Titanium Antivirus 2005\PavFnSvr.exe
O23 - Service: Panda Pavkre (Pavkre) - Panda Software - C:\Programme\Panda Software\Panda Titanium Antivirus 2005\Pavkre.exe
O23 - Service: Panda PavProt (PavProt) - Panda Software - C:\Programme\Panda Software\Panda Titanium Antivirus 2005\PavProt.exe
O23 - Service: Panda anti-virus service (PAVSRV) - Panda Software - C:\Programme\Panda Software\Panda Titanium Antivirus 2005\pavsrv51.exe
O23 - Service: Panda IManager Service (PSIMSVC) - Unknown owner - C:\Programme\Panda Software\Panda Titanium Antivirus 2005\PsImSvc.exe (file missing)
O23 - Service: TuneUp WinStyler Theme Service (TUWinStylerThemeSvc) - TuneUp Software GmbH - C:\Programme\TuneUp Utilities 2006\WinStylerThemeSvc.exe




nur zur info ich bin neu am board^^ also bitte nich böse sein wenn ich was falsch mach bzw was vergess, etc...

also ich hab n riesiges problem.. wenn ich am pc angemeldet bin, egal ob im i-net oder nich, dann öffnet sich jede 1-3 minuten so n Schei... neues fenster... da steht dann immer nur die adresse dran, kommt kein "bild" im fenster, ist also weiss...

auf jeden fall würde ich um hilfe bitten, damit ich diese lästigen pop-ups endlich loswerde...

im vorraus schon mal vielen dank
;)
Dieser Beitrag wurde am 28.08.2006 um 20:45 Uhr von DePunkt editiert.
Seitenanfang Seitenende
28.08.2006, 22:01
Ehrenmitglied
Avatar Sabina

Beiträge: 29434
#2 DePunkt

1.
Look2Me-Destroyer V1.0.5 abarbeiten
http://virus-protect.org/l2mfix.html

2.
poste das log
http://virus-protect.org/artikel/tools/combofix.html

3.
stelle den CleanUp genauso ein, wie hier angegeben:
http://virus-protect.org/cleanup.html

4.
Kopiere diese 4 Textdateien ab . (rechtsklick mit der Maus -> den Text markieren -> kopieren -> einfügen) Sie sind nach Datum geordnet. (kopiere nur die letzten 3 Monate ab)
http://virus-protect.org/datfindbat.html
__________
MfG Sabina

rund um die PC-Sicherheit
Seitenanfang Seitenende
29.08.2006, 13:26
...neu hier

Themenstarter

Beiträge: 10
#3 L2M Log:


Look2Me-Destroyer V1.0.12

Scanning for infected files.....
Scan started at 29.08.2006 12:48:05

Infected! C:\WINDOWS\system32\hr0605dse.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP185\A0214443.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP185\A0214639.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP186\A0216620.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP186\A0217098.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP187\A0218274.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP187\A0218386.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP187\A0218644.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP187\A0218868.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP187\A0218875.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP187\A0218881.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP187\A0218890.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP187\A0218898.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP187\A0219038.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP187\A0219045.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP187\A0219053.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP187\A0219164.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP187\A0220217.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP187\A0220266.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0221299.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0223270.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0223322.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0223384.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0224384.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0225384.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0225427.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0225428.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0228443.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0229443.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0229474.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0229509.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0229510.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0229550.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0229551.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0229600.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0229601.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0229611.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0230614.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0230666.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0231666.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0231734.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0231735.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0231785.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0231786.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0231793.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0231833.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0232848.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0232849.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0232855.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0232856.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0232871.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0232917.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0232926.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0232936.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP192\A0234372.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP192\A0234413.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP192\A0234414.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0235413.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0235417.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236413.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236425.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236426.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236427.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236428.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236429.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236431.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236432.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236433.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236434.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236435.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236436.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236438.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236439.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236440.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236441.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236442.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236443.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236444.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236445.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236446.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236447.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236449.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236450.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236451.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236452.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236453.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236454.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236462.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236466.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236467.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236468.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236469.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236470.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236471.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236472.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236473.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236474.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236475.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236476.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236477.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236478.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236479.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236480.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236481.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236482.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236483.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236484.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236485.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236486.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236487.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236488.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236489.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236490.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236491.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236492.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236493.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236494.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236495.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236496.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236497.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236498.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236499.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236500.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236502.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236503.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236504.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236505.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236506.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236507.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236508.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236509.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236510.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236511.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236512.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236513.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236514.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236515.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236517.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236518.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236519.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236520.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236521.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236522.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236523.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236524.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236525.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236529.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP196\A0236585.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP199\A0236884.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP199\A0236888.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP199\A0236910.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP199\A0237912.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP199\A0237988.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP199\A0237992.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP199\A0238128.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP199\A0238129.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP199\A0238135.dll
Infected! C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP199\A0238139.dll
Infected! C:\WINDOWS\system32\Aidiodev.dll
Infected! C:\WINDOWS\system32\aivpack.dll
Infected! C:\WINDOWS\system32\ajmeter.dll
Infected! C:\WINDOWS\system32\ari2dvaa.dll
Infected! C:\WINDOWS\system32\awctres.dll
Infected! C:\WINDOWS\system32\awivtmxx.dll
Infected! C:\WINDOWS\system32\azaql7751.dll
Infected! C:\WINDOWS\system32\bGtmeter.dll
Infected! C:\WINDOWS\system32\hpl0233mg.dll
Infected! C:\WINDOWS\system32\hr0005dme.dll
Infected! C:\WINDOWS\system32\hr0605dse.dll
Infected! C:\WINDOWS\system32\immp.dll
Infected! C:\WINDOWS\system32\ktdhela3.dll
Infected! C:\WINDOWS\system32\sgcur32.dll
Infected! C:\WINDOWS\system32\spell32.dll
Infected! C:\WINDOWS\system32\tvcfgwmi.dll
Infected! C:\WINDOWS\system32\twddd.dll
Infected! C:\WINDOWS\system32\uelmon.dll
Infected! C:\WINDOWS\system32\vpajet32.dll
Infected! C:\WINDOWS\system32\vwsde.dll
Infected! C:\WINDOWS\system32\wgdtrace.dll
Infected! C:\WINDOWS\system32\wghnetbs.dll
Infected! C:\WINDOWS\system32\wppsrcwp.dll
Infected! C:\WINDOWS\system32\xrob2res.dll

Attempting to delete infected files...

Attempting to delete: C:\WINDOWS\system32\hr0605dse.dll
C:\WINDOWS\system32\hr0605dse.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP185\A0214443.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP185\A0214443.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP185\A0214639.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP185\A0214639.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP186\A0216620.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP186\A0216620.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP186\A0217098.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP186\A0217098.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP187\A0218274.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP187\A0218274.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP187\A0218386.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP187\A0218386.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP187\A0218644.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP187\A0218644.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP187\A0218868.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP187\A0218868.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP187\A0218875.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP187\A0218875.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP187\A0218881.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP187\A0218881.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP187\A0218890.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP187\A0218890.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP187\A0218898.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP187\A0218898.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP187\A0219038.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP187\A0219038.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP187\A0219045.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP187\A0219045.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP187\A0219053.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP187\A0219053.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP187\A0219164.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP187\A0219164.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP187\A0220217.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP187\A0220217.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP187\A0220266.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP187\A0220266.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0221299.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0221299.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0223270.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0223270.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0223322.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0223322.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0223384.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0223384.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0224384.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0224384.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0225384.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0225384.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0225427.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0225427.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0225428.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0225428.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0228443.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0228443.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0229443.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0229443.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0229474.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0229474.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0229509.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0229509.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0229510.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0229510.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0229550.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0229550.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0229551.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP189\A0229551.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0229600.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0229600.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0229601.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0229601.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0229611.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0229611.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0230614.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0230614.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0230666.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0230666.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0231666.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0231666.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0231734.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0231734.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0231735.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0231735.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0231785.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0231785.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0231786.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0231786.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0231793.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0231793.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0231833.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0231833.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0232848.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0232848.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0232849.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0232849.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0232855.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0232855.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0232856.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0232856.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0232871.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0232871.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0232917.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0232917.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0232926.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0232926.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0232936.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP190\A0232936.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP192\A0234372.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP192\A0234372.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP192\A0234413.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP192\A0234413.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP192\A0234414.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP192\A0234414.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0235413.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0235413.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0235417.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0235417.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236413.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236413.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236425.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236425.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236426.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236426.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236427.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236427.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236428.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236428.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236429.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236429.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236431.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236431.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236432.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236432.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236433.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236433.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236434.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236434.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236435.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236435.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236436.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236436.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236438.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236438.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236439.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236439.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236440.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236440.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236441.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236441.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236442.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236442.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236443.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236443.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236444.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236444.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236445.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236445.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236446.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236446.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236447.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236447.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236449.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236449.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236450.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236450.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236451.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236451.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236452.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236452.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236453.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236453.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236454.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236454.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236462.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236462.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236466.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236466.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236467.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236467.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236468.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236468.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236469.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236469.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236470.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236470.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236471.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236471.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236472.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236472.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236473.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236473.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236474.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236474.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236475.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236475.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236476.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236476.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236477.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236477.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236478.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236478.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236479.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236479.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236480.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236480.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236481.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236481.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236482.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236482.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236483.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236483.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236484.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236484.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236485.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236485.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236486.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236486.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236487.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236487.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236488.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236488.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236489.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236489.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236490.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236490.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236491.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236491.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236492.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236492.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236493.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236493.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236494.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236494.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236495.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236495.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236496.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236496.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236497.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236497.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236498.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236498.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236499.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236499.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236500.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236500.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236502.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236502.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236503.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236503.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236504.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236504.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236505.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236505.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236506.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236506.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236507.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236507.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236508.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236508.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236509.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236509.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236510.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236510.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236511.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236511.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236512.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236512.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236513.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236513.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236514.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236514.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236515.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236515.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236517.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236517.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236518.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236518.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236519.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236519.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236520.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236520.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236521.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236521.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236522.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236522.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236523.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236523.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236524.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236524.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236525.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236525.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236529.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP195\A0236529.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP196\A0236585.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP196\A0236585.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP199\A0236884.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP199\A0236884.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP199\A0236888.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP199\A0236888.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP199\A0236910.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP199\A0236910.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP199\A0237912.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP199\A0237912.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP199\A0237988.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP199\A0237988.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP199\A0237992.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP199\A0237992.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP199\A0238128.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP199\A0238128.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP199\A0238129.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP199\A0238129.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP199\A0238135.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP199\A0238135.dll Deleted successfully!

Attempting to delete: C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP199\A0238139.dll
C:\System Volume Information\_restore{0290D161-95B3-41BB-B1D8-7D3551025FEB}\RP199\A0238139.dll Deleted successfully!

Attempting to delete: C:\WINDOWS\system32\Aidiodev.dll
C:\WINDOWS\system32\Aidiodev.dll Deleted successfully!

Attempting to delete: C:\WINDOWS\system32\aivpack.dll
C:\WINDOWS\system32\aivpack.dll Deleted successfully!

Attempting to delete: C:\WINDOWS\system32\ajmeter.dll
C:\WINDOWS\system32\ajmeter.dll Deleted successfully!

Attempting to delete: C:\WINDOWS\system32\ari2dvaa.dll
C:\WINDOWS\system32\ari2dvaa.dll Deleted successfully!

Attempting to delete: C:\WINDOWS\system32\awctres.dll
C:\WINDOWS\system32\awctres.dll Deleted successfully!

Attempting to delete: C:\WINDOWS\system32\awivtmxx.dll
C:\WINDOWS\system32\awivtmxx.dll Deleted successfully!

Attempting to delete: C:\WINDOWS\system32\azaql7751.dll
C:\WINDOWS\system32\azaql7751.dll Deleted successfully!

Attempting to delete: C:\WINDOWS\system32\bGtmeter.dll
C:\WINDOWS\system32\bGtmeter.dll Deleted successfully!

Attempting to delete: C:\WINDOWS\system32\hpl0233mg.dll
C:\WINDOWS\system32\hpl0233mg.dll Deleted successfully!

Attempting to delete: C:\WINDOWS\system32\hr0005dme.dll
C:\WINDOWS\system32\hr0005dme.dll Deleted successfully!

Attempting to delete: C:\WINDOWS\system32\hr0605dse.dll
C:\WINDOWS\system32\hr0605dse.dll Deleted successfully!

Attempting to delete: C:\WINDOWS\system32\immp.dll
C:\WINDOWS\system32\immp.dll Deleted successfully!

Attempting to delete: C:\WINDOWS\system32\ktdhela3.dll
C:\WINDOWS\system32\ktdhela3.dll Deleted successfully!

Attempting to delete: C:\WINDOWS\system32\sgcur32.dll
C:\WINDOWS\system32\sgcur32.dll Deleted successfully!

Attempting to delete: C:\WINDOWS\system32\spell32.dll
C:\WINDOWS\system32\spell32.dll Deleted successfully!

Attempting to delete: C:\WINDOWS\system32\tvcfgwmi.dll
C:\WINDOWS\system32\tvcfgwmi.dll Deleted successfully!

Attempting to delete: C:\WINDOWS\system32\twddd.dll
C:\WINDOWS\system32\twddd.dll Deleted successfully!

Attempting to delete: C:\WINDOWS\system32\uelmon.dll
C:\WINDOWS\system32\uelmon.dll Deleted successfully!

Attempting to delete: C:\WINDOWS\system32\vpajet32.dll
C:\WINDOWS\system32\vpajet32.dll Deleted successfully!

Attempting to delete: C:\WINDOWS\system32\vwsde.dll
C:\WINDOWS\system32\vwsde.dll Deleted successfully!

Attempting to delete: C:\WINDOWS\system32\wgdtrace.dll
C:\WINDOWS\system32\wgdtrace.dll Deleted successfully!

Attempting to delete: C:\WINDOWS\system32\wghnetbs.dll
C:\WINDOWS\system32\wghnetbs.dll Deleted successfully!

Attempting to delete: C:\WINDOWS\system32\wppsrcwp.dll
C:\WINDOWS\system32\wppsrcwp.dll Deleted successfully!

Attempting to delete: C:\WINDOWS\system32\xrob2res.dll
C:\WINDOWS\system32\xrob2res.dll Deleted successfully!

Making registry repairs.

Removing: HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\App Paths

Removing: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved "{9763C599-494C-4EB9-A0D3-D09FE0E7A3D8}"
HKCR\Clsid\{9763C599-494C-4EB9-A0D3-D09FE0E7A3D8}

Removing: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved "{99F838ED-8038-45F9-8DA2-51D38E9B8685}"
HKCR\Clsid\{99F838ED-8038-45F9-8DA2-51D38E9B8685}

Removing: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved "{30513A40-7825-49C7-AA79-682CC0368285}"
HKCR\Clsid\{30513A40-7825-49C7-AA79-682CC0368285}

Removing: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved "{9055E02E-0749-41B2-BCE9-3B0A88F05961}"
HKCR\Clsid\{9055E02E-0749-41B2-BCE9-3B0A88F05961}

Removing: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved "{BB12A4BF-C9C1-4BD1-B2D1-3F604F4167E6}"
HKCR\Clsid\{BB12A4BF-C9C1-4BD1-B2D1-3F604F4167E6}

Removing: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved "{CE1DD7A4-DD6F-4761-B0E1-03A3EEBF5634}"
HKCR\Clsid\{CE1DD7A4-DD6F-4761-B0E1-03A3EEBF5634}

Removing: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved "{5FAD55DE-406E-4CB2-BC9F-074A97A2071A}"
HKCR\Clsid\{5FAD55DE-406E-4CB2-BC9F-074A97A2071A}

Restoring Windows certificates.

Replaced hosts file with default windows hosts file


Restoring SeDebugPrivilege for Administratoren - Succeeded
Dieser Beitrag wurde am 29.08.2006 um 13:34 Uhr von DePunkt editiert.
Seitenanfang Seitenende
29.08.2006, 13:38
Ehrenmitglied
Avatar Sabina

Beiträge: 29434
#4 2.
poste das log
http://virus-protect.org/artikel/tools/combofix.html

3.
stelle den CleanUp genauso ein, wie hier angegeben:
http://virus-protect.org/cleanup.html

4.
Kopiere diese 4 Textdateien ab . (rechtsklick mit der Maus -> den Text markieren -> kopieren -> einfügen) Sie sind nach Datum geordnet. (kopiere nur die letzten 3 Monate ab)
http://virus-protect.org/datfindbat.html
__________
MfG Sabina

rund um die PC-Sicherheit
Seitenanfang Seitenende
29.08.2006, 13:38
...neu hier

Themenstarter

Beiträge: 10
#5 Combo-Fix

Domme - 06-08-29 13:08:11,42
ComboFix 06.08.27BT - Running from: C:\Dokumente und Einstellungen\Domme\Desktop

(((((((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))


C:\WINDOWS\system32\cmd.com
C:\WINDOWS\system32\netstat.com
C:\WINDOWS\system32\ping.com
C:\WINDOWS\system32\regedit.com
C:\WINDOWS\system32\taskkill.com
C:\WINDOWS\system32\tracert.com
C:\Programme\Gemeinsame Dateien\windows
C:\Programme\outlook


((((((((((((((((((((((((((((((( Files Created from 2006-07-29 to 2006-08-29 ))))))))))))))))))))))))))))))))))


2006-08-27 13:06 299,520 --a------ C:\WINDOWS\uninst.exe
2006-08-26 19:02 196,608 --a------ C:\WINDOWS\system32\anfysave.scr
2006-08-26 12:27 848 --ahs---- C:\WINDOWS\system32\KGyGaAvL.sys
2006-08-22 19:40 57,384 --a------ C:\WINDOWS\system32\avsda.dll
2006-08-22 13:32 99,480 --a------ C:\WINDOWS\system32\FwsVpn.dll
2006-08-22 13:32 98,304 --a------ C:\WINDOWS\system32\pavipc.dll
2006-08-22 13:32 245,760 --a------ C:\WINDOWS\system32\TpUtil.dll
2006-08-22 13:32 24,576 --a------ C:\WINDOWS\system32\msxml3a.dll
2006-08-22 13:32 208,896 --a------ C:\WINDOWS\system32\PavSHook.dll
2006-08-22 13:32 102,400 --a------ C:\WINDOWS\system32\SYSTOOLS.DLL
2006-08-13 20:02 37,986 --a------ C:\WINDOWS\system32\vwsde32.dll
2006-08-04 09:36 86,016 --a------ C:\WINDOWS\unvise32qt.exe
2006-08-04 09:35 28,672 --a------ C:\WINDOWS\system32\qttask.exe
2006-07-29 19:32 48,936 --a------ C:\WINDOWS\system32\sirenacm.dll


(((((((((((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))))


2006-08-29 13:09 -------- d-------- C:\Programme\Gemeinsame Dateien
2006-08-29 13:04 -------- d-------- C:\Programme\Steam
2006-08-28 20:56 1664257 --a------ C:\Dokumente und Einstellungen\Domme\Anwendungsdaten\CleanUp!.log
2006-08-28 20:44 -------- d-------- C:\Programme\CleanUp!
2006-08-27 22:19 -------- d-------- C:\Programme\a-squared Anti-Malware
2006-08-27 20:56 -------- d-------- C:\Programme\WinPatrol
2006-08-27 13:07 -------- d-------- C:\Dokumente und Einstellungen\Domme\Anwendungsdaten\WinPatrol
2006-08-27 12:46 -------- d-------- C:\Programme\Gemeinsame Dateien\Panda Software
2006-08-27 00:39 -------- d-------- C:\Programme\BearShare
2006-08-26 19:02 -------- d-------- C:\Programme\AnfyTeam
2006-08-26 12:26 -------- d-------- C:\Dokumente und Einstellungen\Domme\Anwendungsdaten\Corel
2006-08-26 11:48 -------- d---s---- C:\Dokumente und Einstellungen\Domme\Anwendungsdaten\Microsoft
2006-08-26 11:48 -------- d-------- C:\Programme\Gemeinsame Dateien\InstallShield
2006-08-26 11:47 -------- d-------- C:\Programme\Gemeinsame Dateien\Designer
2006-08-26 11:40 -------- d-------- C:\Programme\Gemeinsame Dateien\Corel
2006-08-26 11:40 -------- d-------- C:\Programme\Corel
2006-08-26 07:43 -------- d-------- C:\Programme\Mozilla Firefox
2006-08-26 07:42 -------- d-------- C:\Dokumente und Einstellungen\Domme\Anwendungsdaten\Lavasoft
2006-08-25 15:52 -------- d-------- C:\Dokumente und Einstellungen\Domme\Anwendungsdaten\Camfrog
2006-08-25 15:15 -------- d-------- C:\Programme\MSN Messenger
2006-08-25 15:15 -------- d-------- C:\Programme\Gemeinsame Dateien\Microsoft Shared
2006-08-23 01:13 -------- d-------- C:\Dokumente und Einstellungen\Domme\Anwendungsdaten\Opera
2006-08-22 19:40 -------- d-------- C:\Programme\AntiVir PersonalEdition Classic
2006-08-22 18:59 28672 --a------ C:\WINDOWS\system32\drivers\CO_Mon.sys
2006-08-22 17:08 -------- d-------- C:\Programme\TuneUp Utilities 2006
2006-08-22 13:31 -------- d--h----- C:\Programme\InstallShield Installation Information
2006-08-22 13:31 -------- d-------- C:\Programme\Panda Software
2006-08-21 13:24 -------- d-------- C:\Dokumente und Einstellungen\Domme\Anwendungsdaten\Adobe
2006-08-21 00:13 -------- d-------- C:\Programme\Adobe
2006-08-21 00:10 -------- d-------- C:\Programme\Gemeinsame Dateien\Adobe Systems Shared
2006-08-21 00:10 -------- d-------- C:\Programme\Gemeinsame Dateien\Adobe
2006-08-15 23:06 -------- d-------- C:\Programme\VideoLAN
2006-08-08 21:59 -------- d-------- C:\Programme\WinRAR
2006-08-08 21:59 -------- d-------- C:\Programme\NetMeeting
2006-08-08 21:59 -------- d-------- C:\Programme\LimeWire
2006-08-08 21:59 -------- d-------- C:\Dokumente und Einstellungen\Domme\Anwendungsdaten\teamspeak2
2006-08-04 09:36 -------- d-------- C:\Programme\QuickTime
2006-08-01 19:30 -------- d-------- C:\Dokumente und Einstellungen\Domme\Anwendungsdaten\SlySoft
2006-07-24 19:38 34308 --a------ C:\WINDOWS\system32\BASSMOD.dll
2006-07-24 19:36 -------- d-------- C:\Programme\SlySoft
2006-07-13 16:35 19200 --a------ C:\WINDOWS\system32\drivers\AnyDVD.sys
2006-07-06 20:58 -------- d-------- C:\Programme\ICQLite
2006-07-06 00:10 -------- d-------- C:\Programme\Winamp
2006-06-11 14:41 164352 --a------ C:\WINDOWS\system32\SpoonUninstall.exe
2006-06-07 13:00 41384 --a------ C:\Dokumente und Einstellungen\Domme\Anwendungsdaten\GDIPFONTCACHEV1.DAT


(((((((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))

*Note* empty entries are not shown

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="RUNDLL32.EXE C:\\WINDOWS\\system32\\NvCpl.dll,NvStartup"
"avgnt"="\"C:\\Programme\\AntiVir PersonalEdition Classic\\avgnt.exe\" /min"
"WinPatrol"="C:\\PROGRA~1\\WINPAT~1\\winpatrol.exe"
"APVXDWIN"="C:\\Programme\\Panda Software\\Panda Titanium Antivirus 2005\\APVXDWIN.EXE /s"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\IMAIL]
"Installed"="1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\MAPI]
"Installed"="1"
"NoChange"="1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\MSFS]
"Installed"="1"

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="C:\\WINDOWS\\system32\\ctfmon.exe"
"msnmsgr"="\"C:\\Programme\\MSN Messenger\\msnmsgr.exe\" /background"
"Steam"="\"c:\\programme\\steam\\steam.exe\" -silent"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system]
"dontdisplaylastusername"=dword:00000001
"legalnoticecaption"=""
"legalnoticetext"=""
"shutdownwithoutlogon"=dword:00000001
"undockwithoutlogon"=dword:00000001
"NoInternetOpenWith"=dword:00000001
"verbosestatus"=dword:00000001

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-]
"SpybotSD TeaTimer"="C:\\Programme\\Spybot - Search & Destroy\\TeaTimer.exe"
"LogitechSoftwareUpdate"="C:\\Programme\\Logitech\\Video\\ManifestEngine.exe boot"
"ctfmon.exe"="C:\\WINDOWS\\system32\\ctfmon.exe"
"1&1 SMS-Manager"="C:\\Programme\\1&1\\SMS-Manager\\SMSMngr.exe"
"TuneUp MemOptimizer"="\"C:\\Programme\\TuneUp Utilities 2006\\MemOptimizer.exe\" autostart"

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000080
"MaxRecentDocs"=dword:0000001f
"ClearRecentDocsOnExit"=dword:00000001
"NoDriveAutoRun"=dword:00000000
"NoDrives"=hex:01,00,00,00
"NoSharedDocuments"=hex:01,00,00,00
"NoExpandedNewMenu"=dword:00000001

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\explorer\Run]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Desktop\Components]
"DeskHtmlVersion"=dword:00000110
"DeskHtmlMinorVersion"=dword:00000005
"Settings"=dword:00000001
"GeneralFlags"=dword:00000003

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Desktop\Components\0]
"Source"="About:Home"
"SubscribedURL"="About:Home"
"FriendlyName"="Die derzeitige Homepage"
"Flags"=dword:00000002
"Position"=hex:2c,00,00,00,00,01,00,00,00,00,00,00,00,04,00,00,e4,03,00,00,00,\
00,00,00,01,00,00,00,01,00,00,00,01,00,00,00,00,00,00,00,00,00,00,00
"CurrentState"=hex:04,00,00,40
"OriginalStateInfo"=hex:18,00,00,00,00,01,00,00,00,00,00,00,00,04,00,00,e4,03,\
00,00,04,00,00,40
"RestoredStateInfo"=hex:18,00,00,00,00,01,00,00,00,00,00,00,00,04,00,00,e4,03,\
00,00,01,00,00,00

[HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091

[HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\shellexecutehooks]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSCONFIG\Startupreg]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSCONFIG\Startupreg\AnyDVD]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="AnyDVD"
"hkey"="HKCU"
"command"="C:\\Programme\\SlySoft\\AnyDVD\\AnyDVD.exe"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSCONFIG\Startupreg\KAVPersonal50]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="kav"
"hkey"="HKLM"
"command"="\"C:\\Programme\\Kaspersky Lab\\Kaspersky Anti-Virus Personal\\kav.exe\" /minimize"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSCONFIG\Startupreg\NvCplDaemon]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="NvCpl"
"hkey"="HKLM"
"command"="RUNDLL32.EXE C:\\WINDOWS\\system32\\NvCpl.dll,NvStartup"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSCONFIG\Startupreg\Update Service]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="update"
"hkey"="HKCU"
"command"="\"C:\\Programme\\Gemeinsame Dateien\\Teknum Systems\\update.exe\" /startup"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSCONFIG\services]
"kavsvc"=dword:00000002
"iPodService"=dword:00000003

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-]
"ICQ Lite"="\"C:\\Programme\\ICQLite\\ICQLite.exe\" -minimize"
"NvCplDaemon"="RUNDLL32.EXE C:\\WINDOWS\\system32\\NvCpl.dll,NvStartup"
"CloneCDTray"="\"C:\\Programme\\SlySoft\\CloneCD\\CloneCDTray.exe\" /s"
"Lexmark X1100 Series"="\"C:\\Programme\\Lexmark X1100 Series\\lxbkbmgr.exe\""



Completion time: 29.08.2006 13:09:37.09
ComboFix.txt



system32.txt:

Volume in Laufwerk C: hat keine Bezeichnung.
Volumeseriennummer: FCC1-FBF8

Verzeichnis von C:\WINDOWS\system32

29.08.2006 13:03 4.598 nvapps.xml
27.08.2006 12:56 311.604 perfh009.dat
27.08.2006 12:56 39.992 perfc009.dat
27.08.2006 12:56 316.594 perfh007.dat
27.08.2006 12:56 48.156 perfc007.dat
27.08.2006 12:56 723.808 PerfStringBackup.INI
27.08.2006 12:46 190.592 FNTCACHE.DAT
26.08.2006 23:35 2.422 wpa.dbl
26.08.2006 22:30 1.855 anfysaver.html
26.08.2006 12:27 848 KGyGaAvL.sys
23.08.2006 13:20 28.106 luis_royo_tattoos012.jpg
14.08.2006 02:19 37 oeminfo.ini
14.08.2006 02:19 21.598 oemlogo.bmp
13.08.2006 20:02 37.986 vwsde32.dll
04.08.2006 09:36 2.330 qtplugin.log
04.08.2006 09:35 28.672 qttask.exe
04.08.2006 09:35 361 QuickTime.qtp
29.07.2006 19:32 48.936 sirenacm.dll
24.07.2006 19:38 34.308 BASSMOD.dll
13.06.2006 21:52 1.205 lvcoinst.log
11.06.2006 14:41 164.352 SpoonUninstall.exe
08.06.2006 18:19 5.967.776 MRT.exe
02.06.2006 11:04 57.384 avsda.dll
01.06.2006 20:47 163.840 jgdw400.dll
01.06.2006 20:47 27.648 jgpl400.dll
29.05.2006 17:30 1.494.016 shdocvw.dll
19.05.2006 17:09 3.073.536 mshtml.dll

2210 Datei(en) 434.580.302 Bytes
0 Verzeichnis(se), 16.947.830.784 Bytes frei




temp.txt

Volume in Laufwerk C: hat keine Bezeichnung.
Volumeseriennummer: FCC1-FBF8

Verzeichnis von C:\DOKUME~1\Domme\LOKALE~1\Temp




windows.txt:


Volume in Laufwerk C: hat keine Bezeichnung.
Volumeseriennummer: FCC1-FBF8

Verzeichnis von C:\WINDOWS

29.08.2006 13:03 0 0.log
29.08.2006 13:03 1.097.665 WindowsUpdate.log
29.08.2006 13:03 157 wiadebug.log
29.08.2006 13:03 50 wiaservc.log
29.08.2006 13:02 2.048 bootstat.dat
28.08.2006 14:17 106.388 ntbtlog.txt
28.08.2006 14:09 2.810 SchedLgU.Txt
27.08.2006 18:41 24.971 FontData.fdb
27.08.2006 17:52 116 NeroDigital.ini
27.08.2006 14:03 267.472.896 MEMORY.DMP
26.08.2006 07:44 92.303 iis6.log
26.08.2006 07:44 101.397 ntdtcsetup.log
26.08.2006 07:44 22.531 ocmsn.log
26.08.2006 07:44 249.729 tsoc.log
26.08.2006 07:44 32.199 msgsocm.log
26.08.2006 07:44 610.444 FaxSetup.log
26.08.2006 07:43 189 wininit.ini
23.08.2006 21:43 54.156 QTFont.qfn
23.08.2006 01:13 770 win.ini
20.08.2006 14:16 1.409 QTFont.for
18.08.2006 12:48 227 system.ini
14.08.2006 00:50 4.696 imsins.BAK
13.08.2006 23:03 0 setupact.log
03.07.2006 20:07 169 RtlRack.ini
22.06.2006 23:06 66 Ahead DVD Ripper.INI
20.06.2006 04:19 151 PhotoSnapViewer.INI
18.06.2006 21:09 32.128 spupdsvc.log
18.06.2006 21:03 15.594 KB917734.log
18.06.2006 21:01 18.431 KB918439.log
18.06.2006 21:01 19.111 KB917344.log
18.06.2006 21:01 37.626 updspapi.log
18.06.2006 21:01 18.070 KB917953.log
18.06.2006 21:01 21.555 KB916281.log
18.06.2006 21:00 13.308 KB914389.log
11.06.2006 14:42 349 ECMS.INI
18.05.2006 19:13 1.390 mariner.ini
18.05.2006 19:13 2.655 mariner.his
18.05.2006 19:11 606 hpbvnstp.ini
18.05.2006 19:11 1.993 hpbvnstp.his

182 Datei(en) 293.005.127 Bytes
0 Verzeichnis(se), 16.946.774.016 Bytes frei





c.txt

Volume in Laufwerk C: hat keine Bezeichnung.
Volumeseriennummer: FCC1-FBF8

Verzeichnis von C:\

29.08.2006 13:20 0 sys.txt
29.08.2006 13:19 9.394 system.txt
29.08.2006 13:18 133 systemtemp.txt
29.08.2006 13:17 107.973 system32.txt
29.08.2006 13:09 10.365 ComboFix.txt
29.08.2006 13:02 402.653.184 pagefile.sys
27.08.2006 14:13 173 _arm_errors.log
22.08.2006 15:08 87.901 PANDA.RPT
18.08.2006 12:48 378 boot.ini
15.04.2006 17:31 21.254.280 AdbeRdr707_en_US.exe

22 Datei(en) 550.854.446 Bytes
0 Verzeichnis(se), 16.947.818.496 Bytes frei
Dieser Beitrag wurde am 29.08.2006 um 13:52 Uhr von DePunkt editiert.
Seitenanfang Seitenende
29.08.2006, 13:52
Ehrenmitglied
Avatar Sabina

Beiträge: 29434
#6 virustotal
Oben auf der Seite --> auf Durchsuchen klicken --> Datei mit korrektem Pfad einkopieren) --> Doppelklick auf die zu prüfende Datei --> klick auf Submit... jetzt abwarten
http://www.virustotal.com/flash/index_en.html

C:\WINDOWS\system32\vwsde32.dll
C:\WINDOWS\uninst.exe
C:\WINDOWS\system32\drivers\CO_Mon.sys
C:\WINDOWS\system32\FwsVpn.dll
C:\WINDOWS\system32\pavipc.dll
C:\WINDOWS\system32\TpUtil.dll
C:\WINDOWS\system32\msxml3a.dll
C:\WINDOWS\system32\PavSHook.dll
C:\WINDOWS\system32\SYSTOOLS.DLL
C:\WINDOWS\unvise32qt.exe
C:\WINDOWS\system32\qttask.exe

poste die berichte
__________
MfG Sabina

rund um die PC-Sicherheit
Seitenanfang Seitenende
29.08.2006, 13:56
...neu hier

Themenstarter

Beiträge: 10
#7

Zitat

Sabina postete
virustotal
Oben auf der Seite --> auf Durchsuchen klicken --> Datei mit korrektem Pfad einkopieren) --> Doppelklick auf die zu prüfende Datei --> klick auf Submit... jetzt abwarten
http://www.virustotal.com/flash/index_en.html

C:\WINDOWS\system32\vwsde32.dll
C:\WINDOWS\uninst.exe
C:\WINDOWS\system32\drivers\CO_Mon.sys
C:\WINDOWS\system32\FwsVpn.dll
C:\WINDOWS\system32\pavipc.dll
C:\WINDOWS\system32\TpUtil.dll
C:\WINDOWS\system32\msxml3a.dll
C:\WINDOWS\system32\PavSHook.dll
C:\WINDOWS\system32\SYSTOOLS.DLL
C:\WINDOWS\unvise32qt.exe
C:\WINDOWS\system32\qttask.exe

poste die berichte
meine logs oder die dateien die du angeschreiben hast?
Seitenanfang Seitenende
29.08.2006, 14:04
Ehrenmitglied
Avatar Sabina

Beiträge: 29434
#8 ich habe dir doch die Dateien alle aufgelistet
__________
MfG Sabina

rund um die PC-Sicherheit
Seitenanfang Seitenende
29.08.2006, 14:04
...neu hier

Themenstarter

Beiträge: 10
#9

Zitat

Sabina postete
virustotal
Oben auf der Seite --> auf Durchsuchen klicken --> Datei mit korrektem Pfad einkopieren) --> Doppelklick auf die zu prüfende Datei --> klick auf Submit... jetzt abwarten
http://www.virustotal.com/flash/index_en.html

C:\WINDOWS\system32\vwsde32.dll
C:\WINDOWS\uninst.exe
C:\WINDOWS\system32\drivers\CO_Mon.sys
C:\WINDOWS\system32\FwsVpn.dll
C:\WINDOWS\system32\pavipc.dll
C:\WINDOWS\system32\TpUtil.dll
C:\WINDOWS\system32\msxml3a.dll
C:\WINDOWS\system32\PavSHook.dll
C:\WINDOWS\system32\SYSTOOLS.DLL
C:\WINDOWS\unvise32qt.exe
C:\WINDOWS\system32\qttask.exe

poste die berichte
STATUS: FINISHEDComplete scanning result of "vwsde32.dll", received in VirusTotal at 08.29.2006, 13:59:29 (CET).

Antivirus Version Update Result
AntiVir 6.35.1.3 08.29.2006 ADSPY/Stud.A.1
Authentium 4.93.8 08.29.2006 no virus found
Avast 4.7.844.0 08.28.2006 Win32:Trojano-3384
AVG 386 08.29.2006 Adware Generic.LRH
BitDefender 7.2 08.29.2006 Trojan.Downloader.Agent.RG
CAT-QuickHeal 8.00 08.29.2006 no virus found
ClamAV devel-20060426 08.29.2006 no virus found
DrWeb 4.33 08.29.2006 Trojan.DownLoader.6588
eTrust-InoculateIT 23.72.109 08.29.2006 no virus found
eTrust-Vet 30.3.3047 08.29.2006 no virus found
Ewido 4.0 08.25.2006 Downloader.Small.cgu
Fortinet 2.77.0.0 08.29.2006 W32/Small.CGU!tr
F-Prot 3.16f 08.25.2006 no virus found
F-Prot4 4.2.1.29 08.26.2006 no virus found
Ikarus 0.2.65.0 08.29.2006 AdWare.Stud.A
Kaspersky 4.0.2.24 08.29.2006 not-a-virus:AdWare.Win32.Stud.a
McAfee 4839 08.28.2006 potentially unwanted program Adware-KeenValue
Microsoft 1.1560 08.29.2006 no virus found
NOD32v2 1.1729 08.28.2006 Win32/Adware.BHO.AA
Norman 5.90.23 08.29.2006 W32/Stud.B
Panda 9.0.0.4 08.28.2006 Adware/KeenValue
Sophos 4.08.0 08.29.2006 no virus found
Symantec 8.0 08.29.2006 no virus found
TheHacker 5.9.8.201 08.28.2006 Adware/Stud.a
UNA 1.83 08.29.2006 Adware.Stud.326A
VBA32 3.11.1 08.28.2006 suspected of Trojan-Downloader.Agent.49
VirusBuster 4.3.7:9 08.28.2006 no virus found


Aditional Information
File size: 37986 bytes
MD5: c4993a540199a331e36156080c0a5bcb
SHA1: ba38168758752f8ebc1e66abfa40039f32189155
packers: UPX







STATUS: FINISHEDComplete scanning result of "uninst.exe", received in VirusTotal at 08.29.2006, 14:05:38 (CET).

Antivirus Version Update Result
AntiVir 6.35.1.3 08.29.2006 no virus found
Authentium 4.93.8 08.29.2006 no virus found
Avast 4.7.844.0 08.28.2006 no virus found
AVG 386 08.29.2006 no virus found
BitDefender 7.2 08.29.2006 no virus found
CAT-QuickHeal 8.00 08.29.2006 no virus found
ClamAV devel-20060426 08.29.2006 no virus found
DrWeb 4.33 08.29.2006 no virus found
eTrust-InoculateIT 23.72.109 08.29.2006 no virus found
eTrust-Vet 30.3.3047 08.29.2006 no virus found
Ewido 4.0 08.25.2006 no virus found
Fortinet 2.77.0.0 08.29.2006 no virus found
F-Prot 3.16f 08.25.2006 no virus found
F-Prot4 4.2.1.29 08.26.2006 no virus found
Ikarus 0.2.65.0 08.29.2006 no virus found
Kaspersky 4.0.2.24 08.29.2006 no virus found
McAfee 4839 08.28.2006 no virus found
Microsoft 1.1560 08.29.2006 no virus found
NOD32v2 1.1729 08.28.2006 no virus found
Norman 5.90.23 08.29.2006 no virus found
Panda 9.0.0.4 08.28.2006 no virus found
Sophos 4.08.0 08.29.2006 no virus found
Symantec 8.0 08.29.2006 no virus found
TheHacker 5.9.8.201 08.28.2006 no virus found
UNA 1.83 08.29.2006 no virus found
VBA32 3.11.1 08.28.2006 no virus found
VirusBuster 4.3.7:9 08.28.2006 no virus found


Aditional Information
File size: 299520 bytes
MD5: 72827d5d38d38a46231cb38e1f3fc5e3
SHA1: cd0f7ac1dd06a7b4bf7925f1d236d45ca99cb45f

VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity
Seitenanfang Seitenende
29.08.2006, 14:05
Ehrenmitglied
Avatar Sabina

Beiträge: 29434
#10 nun poste noch alle andern..........das erste war schon mal ein Trojaner...
__________
MfG Sabina

rund um die PC-Sicherheit
Seitenanfang Seitenende
29.08.2006, 14:21
...neu hier

Themenstarter

Beiträge: 10
#11

Zitat

Sabina postete
nun poste noch alle andern..........das erste war schon mal ein Trojaner...
STATUS: FINISHEDComplete scanning result of "CO_Mon.sys", received in VirusTotal at 08.29.2006, 14:08:24 (CET).

Antivirus Version Update Result
AntiVir 6.35.1.3 08.29.2006 no virus found
Authentium 4.93.8 08.29.2006 no virus found
Avast 4.7.844.0 08.28.2006 no virus found
AVG 386 08.29.2006 no virus found
BitDefender 7.2 08.29.2006 no virus found
CAT-QuickHeal 8.00 08.29.2006 no virus found
ClamAV devel-20060426 08.29.2006 no virus found
DrWeb 4.33 08.29.2006 no virus found
eTrust-InoculateIT 23.72.109 08.29.2006 no virus found
eTrust-Vet 30.3.3047 08.29.2006 no virus found
Ewido 4.0 08.25.2006 no virus found
Fortinet 2.77.0.0 08.29.2006 no virus found
F-Prot 3.16f 08.25.2006 no virus found
F-Prot4 4.2.1.29 08.26.2006 no virus found
Ikarus 0.2.65.0 08.29.2006 no virus found
Kaspersky 4.0.2.24 08.29.2006 no virus found
McAfee 4839 08.28.2006 no virus found
Microsoft 1.1560 08.29.2006 no virus found
NOD32v2 1.1729 08.28.2006 no virus found
Norman 5.90.23 08.29.2006 no virus found
Panda 9.0.0.4 08.28.2006 no virus found
Sophos 4.08.0 08.29.2006 no virus found
Symantec 8.0 08.29.2006 no virus found
TheHacker 5.9.8.201 08.28.2006 no virus found
UNA 1.83 08.29.2006 no virus found
VBA32 3.11.1 08.28.2006 no virus found
VirusBuster 4.3.7:9 08.28.2006 no virus found


Aditional Information
File size: 28672 bytes
MD5: 6be1d6403727bdd8a2b2568dbe6bfb8b
SHA1: 5b348974c6cfedcd99bfbdfb8e91cc0018a1fa60

STATUS: FINISHEDComplete scanning result of "pavipc.dll", received in VirusTotal at 08.29.2006, 14:14:22 (CET).

Antivirus Version Update Result
AntiVir 6.35.1.3 08.29.2006 no virus found
Authentium 4.93.8 08.29.2006 no virus found
Avast 4.7.844.0 08.28.2006 no virus found
AVG 386 08.29.2006 no virus found
BitDefender 7.2 08.29.2006 no virus found
CAT-QuickHeal 8.00 08.29.2006 no virus found
ClamAV devel-20060426 08.29.2006 no virus found
DrWeb 4.33 08.29.2006 no virus found
eTrust-InoculateIT 23.72.109 08.29.2006 no virus found
eTrust-Vet 30.3.3047 08.29.2006 no virus found
Ewido 4.0 08.25.2006 no virus found
Fortinet 2.77.0.0 08.29.2006 no virus found
F-Prot 3.16f 08.25.2006 no virus found
F-Prot4 4.2.1.29 08.26.2006 no virus found
Ikarus 0.2.65.0 08.29.2006 no virus found
Kaspersky 4.0.2.24 08.29.2006 no virus found
McAfee 4839 08.28.2006 no virus found
Microsoft 1.1560 08.29.2006 no virus found
NOD32v2 1.1729 08.28.2006 no virus found
Norman 5.90.23 08.29.2006 no virus found
Panda 9.0.0.4 08.28.2006 no virus found
Sophos 4.08.0 08.29.2006 no virus found
Symantec 8.0 08.29.2006 no virus found
TheHacker 5.9.8.201 08.28.2006 no virus found
UNA 1.83 08.29.2006 no virus found
VBA32 3.11.1 08.28.2006 no virus found
VirusBuster 4.3.7:9 08.28.2006 no virus found


Aditional Information
File size: 98304 bytes
MD5: 33f94db3545df33ad38e85e993fd3332
SHA1: a719dcb77dfbc889e3903bb771de2f701bfca96c





STATUS: FINISHEDComplete scanning result of "TpUtil.dll", received in VirusTotal at 08.29.2006, 14:20:32 (CET).

Antivirus Version Update Result
AntiVir 6.35.1.3 08.29.2006 no virus found
Authentium 4.93.8 08.29.2006 no virus found
Avast 4.7.844.0 08.28.2006 no virus found
AVG 386 08.29.2006 no virus found
BitDefender 7.2 08.29.2006 no virus found
CAT-QuickHeal 8.00 08.29.2006 no virus found
ClamAV devel-20060426 08.29.2006 no virus found
DrWeb 4.33 08.29.2006 no virus found
eTrust-InoculateIT 23.72.109 08.29.2006 no virus found
eTrust-Vet 30.3.3047 08.29.2006 no virus found
Ewido 4.0 08.25.2006 no virus found
Fortinet 2.77.0.0 08.29.2006 suspicious
F-Prot 3.16f 08.25.2006 no virus found
F-Prot4 4.2.1.29 08.26.2006 no virus found
Ikarus 0.2.65.0 08.29.2006 no virus found
Kaspersky 4.0.2.24 08.29.2006 no virus found
McAfee 4839 08.28.2006 no virus found
Microsoft 1.1560 08.29.2006 no virus found
NOD32v2 1.1729 08.28.2006 no virus found
Norman 5.90.23 08.29.2006 no virus found
Panda 9.0.0.4 08.28.2006 no virus found
Sophos 4.08.0 08.29.2006 no virus found
Symantec 8.0 08.29.2006 no virus found
TheHacker 5.9.8.201 08.28.2006 no virus found
UNA 1.83 08.29.2006 no virus found
VBA32 3.11.1 08.28.2006 no virus found
VirusBuster 4.3.7:9 08.28.2006 no virus found


Aditional Information
File size: 245760 bytes
MD5: 836894929ca157e4fcd38b554e804887
SHA1: 958e1ca554b029dea86d889f803d74577c5d030f




STATUS: FINISHEDComplete scanning result of "msxml3a.dll", received in VirusTotal at 08.29.2006, 14:23:15 (CET).

Antivirus Version Update Result
AntiVir 6.35.1.3 08.29.2006 no virus found
Authentium 4.93.8 08.29.2006 no virus found
Avast 4.7.844.0 08.28.2006 no virus found
AVG 386 08.29.2006 no virus found
BitDefender 7.2 08.29.2006 no virus found
CAT-QuickHeal 8.00 08.29.2006 no virus found
ClamAV devel-20060426 08.29.2006 no virus found
DrWeb 4.33 08.29.2006 no virus found
eTrust-InoculateIT 23.72.109 08.29.2006 no virus found
eTrust-Vet 30.3.3047 08.29.2006 no virus found
Ewido 4.0 08.25.2006 no virus found
Fortinet 2.77.0.0 08.29.2006 no virus found
F-Prot 3.16f 08.25.2006 no virus found
F-Prot4 4.2.1.29 08.26.2006 no virus found
Ikarus 0.2.65.0 08.29.2006 no virus found
Kaspersky 4.0.2.24 08.29.2006 no virus found
McAfee 4839 08.28.2006 no virus found
Microsoft 1.1560 08.29.2006 no virus found
NOD32v2 1.1729 08.28.2006 no virus found
Norman 5.90.23 08.29.2006 no virus found
Panda 9.0.0.4 08.28.2006 no virus found
Sophos 4.08.0 08.29.2006 no virus found
Symantec 8.0 08.29.2006 no virus found
TheHacker 5.9.8.201 08.28.2006 no virus found
UNA 1.83 08.29.2006 no virus found
VBA32 3.11.1 08.28.2006 no virus found
VirusBuster 4.3.7:9 08.28.2006 no virus found


Aditional Information
File size: 24576 bytes
MD5: 5fefd614bbd3ffa3712b172f70b1fde2
SHA1: 0aaac51dd0fee84e4dce999cddfb61d8e5cc977d
packers: embedded




STATUS: FINISHEDComplete scanning result of "PavSHook.dll", received in VirusTotal at 08.29.2006, 14:28:37 (CET).

Antivirus Version Update Result
AntiVir 6.35.1.3 08.29.2006 no virus found
Authentium 4.93.8 08.29.2006 no virus found
Avast 4.7.844.0 08.28.2006 no virus found
AVG 386 08.29.2006 no virus found
BitDefender 7.2 08.29.2006 no virus found
CAT-QuickHeal 8.00 08.29.2006 no virus found
ClamAV devel-20060426 08.29.2006 no virus found
DrWeb 4.33 08.29.2006 no virus found
eTrust-InoculateIT 23.72.109 08.29.2006 no virus found
eTrust-Vet 30.3.3047 08.29.2006 no virus found
Ewido 4.0 08.25.2006 no virus found
Fortinet 2.77.0.0 08.29.2006 no virus found
F-Prot 3.16f 08.25.2006 no virus found
F-Prot4 4.2.1.29 08.26.2006 no virus found
Ikarus 0.2.65.0 08.29.2006 no virus found
Kaspersky 4.0.2.24 08.29.2006 no virus found
McAfee 4839 08.28.2006 no virus found
Microsoft 1.1560 08.29.2006 no virus found
NOD32v2 1.1729 08.28.2006 no virus found
Norman 5.90.23 08.29.2006 no virus found
Panda 9.0.0.4 08.28.2006 no virus found
Sophos 4.08.0 08.29.2006 no virus found
Symantec 8.0 08.29.2006 no virus found
TheHacker 5.9.8.201 08.28.2006 no virus found
UNA 1.83 08.29.2006 no virus found
VBA32 3.11.1 08.28.2006 no virus found
VirusBuster 4.3.7:9 08.28.2006 no virus found


Aditional Information
File size: 208896 bytes
MD5: 8588aa4f9f914f77f86e0829744ca05e
SHA1: a2bbe1570d712f9f70c67bb85b21dca2db0364c7




STATUS: FINISHEDComplete scanning result of "SYSTOOLS.DLL", received in VirusTotal at 08.29.2006, 14:31:52 (CET).

Antivirus Version Update Result
AntiVir 6.35.1.3 08.29.2006 no virus found
Authentium 4.93.8 08.29.2006 no virus found
Avast 4.7.844.0 08.28.2006 no virus found
AVG 386 08.29.2006 no virus found
BitDefender 7.2 08.29.2006 no virus found
CAT-QuickHeal 8.00 08.29.2006 no virus found
ClamAV devel-20060426 08.29.2006 no virus found
DrWeb 4.33 08.29.2006 no virus found
eTrust-InoculateIT 23.72.109 08.29.2006 no virus found
eTrust-Vet 30.3.3047 08.29.2006 no virus found
Ewido 4.0 08.25.2006 no virus found
Fortinet 2.77.0.0 08.29.2006 no virus found
F-Prot 3.16f 08.25.2006 no virus found
F-Prot4 4.2.1.29 08.26.2006 no virus found
Ikarus 0.2.65.0 08.29.2006 no virus found
Kaspersky 4.0.2.24 08.29.2006 no virus found
McAfee 4839 08.28.2006 no virus found
Microsoft 1.1560 08.29.2006 no virus found
NOD32v2 1.1729 08.28.2006 no virus found
Norman 5.90.23 08.29.2006 no virus found
Panda 9.0.0.4 08.28.2006 no virus found
Sophos 4.08.0 08.29.2006 no virus found
Symantec 8.0 08.29.2006 no virus found
TheHacker 5.9.8.201 08.28.2006 no virus found
UNA 1.83 08.29.2006 no virus found
VBA32 3.11.1 08.28.2006 no virus found
VirusBuster 4.3.7:9 08.28.2006 no virus found


Aditional Information
File size: 102400 bytes
MD5: 701a3a492cb8795541b54c6789dfbc3d
SHA1: 074408b033956aeeee722a87a2191ba507c24035



STATUS: FINISHEDComplete scanning result of "unvise32qt.exe", received in VirusTotal at 08.29.2006, 14:35:08 (CET).

Antivirus Version Update Result
AntiVir 6.35.1.3 08.29.2006 no virus found
Authentium 4.93.8 08.29.2006 no virus found
Avast 4.7.844.0 08.28.2006 no virus found
AVG 386 08.29.2006 no virus found
BitDefender 7.2 08.29.2006 no virus found
CAT-QuickHeal 8.00 08.29.2006 no virus found
ClamAV devel-20060426 08.29.2006 no virus found
DrWeb 4.33 08.29.2006 no virus found
eTrust-InoculateIT 23.72.109 08.29.2006 no virus found
eTrust-Vet 30.3.3047 08.29.2006 no virus found
Ewido 4.0 08.25.2006 no virus found
Fortinet 2.77.0.0 08.29.2006 no virus found
F-Prot 3.16f 08.25.2006 no virus found
F-Prot4 4.2.1.29 08.26.2006 no virus found
Ikarus 0.2.65.0 08.29.2006 no virus found
Kaspersky 4.0.2.24 08.29.2006 no virus found
McAfee 4839 08.28.2006 no virus found
Microsoft 1.1560 08.29.2006 no virus found
NOD32v2 1.1729 08.28.2006 no virus found
Norman 5.90.23 08.29.2006 no virus found
Panda 9.0.0.4 08.28.2006 no virus found
Sophos 4.08.0 08.29.2006 no virus found
Symantec 8.0 08.29.2006 no virus found
TheHacker 5.9.8.201 08.28.2006 no virus found
UNA 1.83 08.29.2006 no virus found
VBA32 3.11.1 08.28.2006 no virus found
VirusBuster 4.3.7:9 08.28.2006 no virus found


Aditional Information
File size: 86016 bytes
MD5: 23a458e8eb269a71a29ada0cb3e22e65
SHA1: ed89dac3cc37f2d47f2df0824965a1bac8f4638f



STATUS: FINISHEDComplete scanning result of "qttask.exe", received in VirusTotal at 08.29.2006, 14:39:01 (CET).

Antivirus Version Update Result
AntiVir 6.35.1.3 08.29.2006 no virus found
Authentium 4.93.8 08.29.2006 no virus found
Avast 4.7.844.0 08.28.2006 no virus found
AVG 386 08.29.2006 no virus found
BitDefender 7.2 08.29.2006 no virus found
CAT-QuickHeal 8.00 08.29.2006 no virus found
ClamAV devel-20060426 08.29.2006 no virus found
DrWeb 4.33 08.29.2006 no virus found
eTrust-InoculateIT 23.72.109 08.29.2006 no virus found
eTrust-Vet 30.3.3047 08.29.2006 no virus found
Ewido 4.0 08.25.2006 no virus found
Fortinet 2.77.0.0 08.29.2006 no virus found
F-Prot 3.16f 08.25.2006 no virus found
F-Prot4 4.2.1.29 08.26.2006 no virus found
Ikarus 0.2.65.0 08.29.2006 no virus found
Kaspersky 4.0.2.24 08.29.2006 no virus found
McAfee 4839 08.28.2006 no virus found
Microsoft 1.1560 08.29.2006 no virus found
NOD32v2 1.1729 08.28.2006 no virus found
Norman 5.90.23 08.29.2006 no virus found
Panda 9.0.0.4 08.28.2006 no virus found
Sophos 4.08.0 08.29.2006 no virus found
Symantec 8.0 08.29.2006 no virus found
TheHacker 5.9.8.201 08.28.2006 no virus found
UNA 1.83 08.29.2006 no virus found
VBA32 3.11.1 08.28.2006 no virus found
VirusBuster 4.3.7:9 08.28.2006 no virus found


Aditional Information
File size: 28672 bytes
MD5: 4961601fdc07cf7b4f86986a715662bd
SHA1: d93681764bc831237a3538413f2ec6fba96c5df2
Dieser Beitrag wurde am 29.08.2006 um 14:41 Uhr von DePunkt editiert.
Seitenanfang Seitenende
29.08.2006, 14:23
Ehrenmitglied
Avatar Sabina

Beiträge: 29434
#12 1.
scanne also alle durch,

2.
dann Avenger

Zitat

Files to delete:
C:\WINDOWS\system32\vwsde32.dll
3.
Arbeitsplatz-->Rechtsklick, dann auf Eigenschaften--->Reiter Systemwiederherstellung--->Häkchen setzen bei Systemwiederherstellung auf allen Laufwerken deaktivieren. (dann wieder aktivieren)

4.
dann: scanne mit dr.web und poste den scanreport
http://virus-protect.org/cureit.html
__________
MfG Sabina

rund um die PC-Sicherheit
Seitenanfang Seitenende
29.08.2006, 14:42
...neu hier

Themenstarter

Beiträge: 10
#13 was is mit Avenger gemeint???
Seitenanfang Seitenende
29.08.2006, 14:45
Ehrenmitglied
Avatar Sabina

Beiträge: 29434
#14 dann Avenger
http://virus-protect.org/artikel/tools/avenger.html
kopiere ein

Zitat

Files to delete:
C:\WINDOWS\system32\vwsde32.dll
Klicke die gruene Ampel
das Script wird nun ausgeführt, dann wird der PC automatisch neustarten
__________
MfG Sabina

rund um die PC-Sicherheit
Seitenanfang Seitenende
29.08.2006, 14:50
...neu hier

Themenstarter

Beiträge: 10
#15 sry aber ich kapiers grad nich... welches log soll da rein????
Seitenanfang Seitenende