Virus - total ! |
||
---|---|---|
#0
| ||
01.12.2007, 17:13
Ehrenmitglied
Beiträge: 6028 |
||
|
||
01.12.2007, 17:22
Member
Themenstarter Beiträge: 262 |
#62
Nein leider nicht zu finden
|
|
|
||
01.12.2007, 17:37
Member
Themenstarter Beiträge: 262 |
#63
ich habe sie gerade über virus total versucht zu finden, vergeblich
|
|
|
||
01.12.2007, 17:44
Member
Themenstarter Beiträge: 262 |
#64
Arnold bist Du noch da oder wollen wir morgen weitermachen.
|
|
|
||
01.12.2007, 17:47
Ehrenmitglied
Beiträge: 6028 |
#65
Du musst glücklich sein dass die nicht zu finden sind
Zitat Nein leider nicht zu findenPoste nochmal ein log von Hijack This Systemwiederherstellung Arbeitsplatz>>Rechtsklick, dann auf Eigenschaften>>Reiter Systemwiederherstellung>> Häkchen setzen bei Systemwiederherstellung auf allen Laufwerken deaktivieren. Neu Starten Dann wieder aktivieren (Häkchen entfernen) Entferne DrWeb und installiere neu http://board.protecus.de/t29350.htm und scanne __________ MfG Argus |
|
|
||
07.12.2007, 12:18
Member
Themenstarter Beiträge: 262 |
#66
Hallo
Hier ist ein log Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 12:17:04, on 07.12.2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\ZoneLabs\vsmon.exe C:\WINDOWS\system32\spoolsv.exe C:\Programme\Avira\AntiVir PersonalEdition Classic\avguard.exe C:\Programme\Avira\AntiVir PersonalEdition Classic\sched.exe C:\Programme\avmwlanstick\WlanNetService.exe C:\WINDOWS\system32\pctspk.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\wuauclt.exe C:\WINDOWS\Explorer.EXE C:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe C:\Programme\Avira\AntiVir PersonalEdition Classic\avgnt.exe C:\Programme\Zone Labs\ZoneAlarm\zlclient.exe C:\Programme\QuickTime\qttask.exe C:\WINDOWS\system32\ctfmon.exe C:\Programme\Skype\Phone\Skype.exe C:\Programme\internet explorer\iexplore.exe C:\Programme\Gemeinsame Dateien\Microsoft Shared\Windows Live\WLLoginProxy.exe C:\Programme\Windows Live Toolbar\msn_sl.exe C:\Programme\Trend Micro\HijackThis\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.lycos.de/ R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = fritz.box O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Programme\Windows Live Toolbar\msntb.dll O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Programme\Windows Live Toolbar\msntb.dll O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [TkBellExe] "C:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [avgnt] "C:\Programme\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Programme\Zone Labs\ZoneAlarm\zlclient.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Programme\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [IntelAudioStudio] "C:\Programme\Intel Audio Studio\IntelAudioStudio.exe" BOOT O4 - HKCU\..\Run: [msnmsgr] "C:\Programme\MSN Messenger\MsnMsgr.Exe" /background O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [Skype] "C:\Programme\Skype\Phone\Skype.exe" /nosplash /minimized O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOKALER DIENST') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETZWERKDIENST') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O8 - Extra context menu item: &Search - http://kp.bar.need2find.com/KP/menusearch.html?p=KP O8 - Extra context menu item: &Windows Live Search - res://C:\Programme\Windows Live Toolbar\msntb.dll/search.htm O8 - Extra context menu item: In neuer Registerkarte im Hintergrund öffnen - res://C:\Programme\Windows Live Toolbar\Components\de-de\msntabres.dll.mui/229?8a2b2848eaca4216b2237966fce29887 O8 - Extra context menu item: In neuer Registerkarte im Vordergrund öffnen - res://C:\Programme\Windows Live Toolbar\Components\de-de\msntabres.dll.mui/230?8a2b2848eaca4216b2237966fce29887 O18 - Protocol: haufereader - (no CLSID) - (no file) O23 - Service: AntiVir PersonalEdition Classic Planer (AntiVirScheduler) - Avira GmbH - C:\Programme\Avira\AntiVir PersonalEdition Classic\sched.exe O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Programme\Avira\AntiVir PersonalEdition Classic\avguard.exe O23 - Service: AVM WLAN Connection Service - AVM Berlin - C:\Programme\avmwlanstick\WlanNetService.exe O23 - Service: Haufe iDesk-Service in C:\Programme\Haufe\iDesk\iDeskService\Zope (HRService) - Unknown owner - C:\Programme\Haufe\iDesk\iDeskService\iDeskService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programme\Gemeinsame Dateien\InstallShield\Driver\1050\Intel 32\IDriverT.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: PCTEL Speaker Phone (Pctspk) - PCtel, Inc. - C:\WINDOWS\system32\pctspk.exe O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe -- End of file - 4921 bytes |
|
|
||
07.12.2007, 12:43
Member
Themenstarter Beiträge: 262 |
||
|
||
10.12.2007, 20:21
Member
Themenstarter Beiträge: 262 |
#68
Der Computer ist nicht in ordnung, Internet Sites öffnen sich sehr langsam.
Webcam ist zwar angeschlossen und alles ist vorbereitet aber sie wird nicht erkannt. Gruss Suzi |
|
|
||
06.01.2008, 14:19
Member
Themenstarter Beiträge: 262 |
#69
Ich kann nicht mehr!
Hier nochmal die letzten Logfiles, Sigma Audio ist gelöscht, Outlook Express ist gelöscht , es hatte seit monaten keine Mails empfangen und versendet. Hier ist der Wurm drin, der Rechner ist super langsam. Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 14:14:50, on 06.01.2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\ZoneLabs\vsmon.exe C:\WINDOWS\system32\spoolsv.exe C:\Programme\Avira\AntiVir PersonalEdition Classic\avguard.exe C:\Programme\Avira\AntiVir PersonalEdition Classic\sched.exe C:\Programme\avmwlanstick\WlanNetService.exe C:\WINDOWS\system32\nvsvc32.exe C:\WINDOWS\system32\pctspk.exe C:\WINDOWS\system32\HPZipm12.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\PixArt\PAC207\Monitor.exe C:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe C:\Programme\Gemeinsame Dateien\Lexware\Update Manager\LxUpdateManager.exe C:\Programme\QuickTime\qttask.exe C:\Programme\Windows Live\Messenger\msnmsgr.exe C:\Programme\Gemeinsame Dateien\Lexware\LxWebAccess\LxWebAccess.exe C:\Programme\internet explorer\iexplore.exe C:\WINDOWS\system32\wuauclt.exe C:\Programme\Windows Live\Messenger\usnsvc.exe C:\Programme\Gemeinsame Dateien\Microsoft Shared\Windows Live\WLLoginProxy.exe C:\Programme\Trend Micro\HijackThis\HijackThis.exe C:\Programme\Windows Live Toolbar\msn_sl.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.lycos.de/ R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = fritz.box O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Programme\Windows Live Toolbar\msntb.dll O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Programme\Windows Live Toolbar\msntb.dll O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [Monitor] C:\WINDOWS\PixArt\PAC207\Monitor.exe O4 - HKLM\..\Run: [TkBellExe] "C:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [LexwareInfoService] C:\Programme\Gemeinsame Dateien\Lexware\Update Manager\LxUpdateManager.exe /autostart O4 - HKLM\..\Run: [QuickTime Task] "C:\Programme\QuickTime\qttask.exe" -atboottime O4 - HKCU\..\Run: [msnmsgr] "C:\Programme\Windows Live\Messenger\msnmsgr.exe" /background O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOKALER DIENST') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETZWERKDIENST') O4 - HKUS\S-1-5-21-1612816764-2923948185-4025840653-1005\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'ROBERT SHALABI') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O8 - Extra context menu item: &Search - http://kp.bar.need2find.com/KP/menusearch.html?p=KP O8 - Extra context menu item: &Windows Live Search - res://C:\Programme\Windows Live Toolbar\msntb.dll/search.htm O8 - Extra context menu item: In neuer Registerkarte im Hintergrund öffnen - res://C:\Programme\Windows Live Toolbar\Components\de-de\msntabres.dll.mui/229?8a2b2848eaca4216b2237966fce29887 O8 - Extra context menu item: In neuer Registerkarte im Vordergrund öffnen - res://C:\Programme\Windows Live Toolbar\Components\de-de\msntabres.dll.mui/230?8a2b2848eaca4216b2237966fce29887 O18 - Protocol: haufereader - (no CLSID) - (no file) O23 - Service: AntiVir PersonalEdition Classic Planer (AntiVirScheduler) - Avira GmbH - C:\Programme\Avira\AntiVir PersonalEdition Classic\sched.exe O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Programme\Avira\AntiVir PersonalEdition Classic\avguard.exe O23 - Service: AVM WLAN Connection Service - AVM Berlin - C:\Programme\avmwlanstick\WlanNetService.exe O23 - Service: Haufe iDesk-Service in C:\Programme\Haufe\iDesk\iDeskService\Zope (HRService) - Unknown owner - C:\Programme\Haufe\iDesk\iDeskService\iDeskService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programme\Gemeinsame Dateien\InstallShield\Driver\1050\Intel 32\IDriverT.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: PCTEL Speaker Phone (Pctspk) - PCtel, Inc. - C:\WINDOWS\system32\pctspk.exe O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe -- End of file - 5106 bytes Gruss Susan |
|
|
||
06.01.2008, 15:16
Ehrenmitglied
Beiträge: 1441 |
#70
Hallo r123s
ich häng mich mal mit rein: beginne bitte mit dem Log von Combofix http://www.virus-protect.org/artikel/tools/combofix.html Gruss (Sabina) __________ Gruss Pinguin bin dabei, meine Seite + Proggies zu aktualisieren: http://www.virus-protect.org/ |
|
|
||
07.01.2008, 17:22
Member
Themenstarter Beiträge: 262 |
#71
ComboFix 08-01-07.5 - SUZAN SHALABI 2008-01-07 17:16:16.7 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1031.18.622 [GMT 1:00] ausgeführt von:: C:\Dokumente und Einstellungen\SUZAN SHALABI\Eigene Dateien\download\ComboFix.exe * Neuer Wiederherstellungspunkt wurde erstellt . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . C:\WINDOWS\Fonts\acrsecB.fon C:\WINDOWS\system32\twptptbg.ini . ((((((((((((((((((((((( Dateien erstellt von 2007-12-07 bis 2008-01-07 )))))))))))))))))))))))))))))) . 2008-01-07 17:12 . 2008-01-07 17:12 54,156 --ah----- C:\WINDOWS\QTFont.qfn 2008-01-07 17:12 . 2008-01-07 17:12 1,409 --a------ C:\WINDOWS\QTFont.for 2008-01-06 13:47 . 2008-01-06 13:47 <DIR> d-------- C:\2bd2932915fca7b132838576 2007-12-30 18:02 . 2008-01-06 13:10 <DIR> d-------- C:\Programme\Bingo RM to MP3 Wave Converter 2007-12-30 17:58 . 2008-01-06 13:12 <DIR> d-------- C:\Programme\RM to MP3 Converter 2007-12-29 13:14 . 2008-01-06 13:10 <DIR> d-------- C:\Programme\Blacky3 2007-12-28 21:11 . 2007-12-28 21:11 <DIR> d-------- C:\Programme\MediaSupplyCodec 2007-12-28 21:08 . 2008-01-06 13:10 <DIR> d-------- C:\Programme\Bingo RM MP3 to Audio CD Maker 2007-12-28 21:01 . 2008-01-06 13:14 <DIR> d-------- C:\Programme\Speedy RM to MP3 Converter 2007-12-28 20:49 . 2007-12-28 21:04 <DIR> d-------- C:\Programme\Real Alternative 2007-12-28 20:36 . 2007-12-28 20:37 <DIR> d-------- C:\Programme\Acoustica MP3 CD Burner 2007-12-28 20:36 . 2007-12-28 20:36 <DIR> d-------- C:\Dokumente und Einstellungen\SUZAN SHALABI\Anwendungsdaten\Acoustica 2007-12-28 20:36 . 2002-11-05 15:16 57,344 --a------ C:\WINDOWS\system32\Wnaspint.dll 2007-12-26 11:28 . 2007-12-26 11:28 <DIR> d-------- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\NCH Swift Sound 2007-12-26 11:22 . 2007-12-26 11:22 <DIR> d-------- C:\Dokumente und Einstellungen\SUZAN SHALABI\Anwendungsdaten\NCH Swift Sound 2007-12-26 11:14 . 2008-01-06 13:14 <DIR> d-------- C:\Programme\NCH Swift Sound 2007-12-24 10:22 . 2008-01-07 13:56 230,432 --a------ C:\PA207.DAT 2007-12-21 08:46 . 2007-12-21 08:46 <DIR> d-------- C:\WINDOWS\PixArt 2007-12-21 08:46 . 2007-12-21 08:46 <DIR> d-------- C:\Programme\Gemeinsame Dateien\PAC207 2007-12-21 08:46 . 2006-11-03 10:59 48,128 --a------ C:\WINDOWS\system32\Remove.exe 2007-12-21 08:46 . 2007-01-04 01:20 314 --a------ C:\WINDOWS\system32\Remover.ini 2007-12-21 08:44 . 2007-12-21 08:46 <DIR> d-------- C:\Programme\Trust 2007-12-21 08:43 . 2007-12-21 08:46 <DIR> d-------- C:\WINDOWS\Downloaded Installations 2007-12-19 13:11 . 1998-10-29 16:45 306,688 --a------ C:\WINDOWS\IsUninst.exe 2007-12-19 13:07 . 2007-12-19 13:08 <DIR> d-------- C:\WINDOWS\system32\NtmsData 2007-12-19 13:03 . 2007-12-19 13:25 113,952 --a------ C:\WINDOWS\hpoins07.dat 2007-12-19 13:03 . 2005-05-24 07:50 21,124 --------- C:\WINDOWS\hpomdl07.dat 2007-12-07 12:33 . 2007-12-07 12:33 <DIR> d-------- C:\Dokumente und Einstellungen\SUZAN SHALABI\DoctorWeb . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2008-01-06 17:20 --------- d-----w C:\Programme\microsoft frontpage 2008-01-04 14:55 --------- d-----w C:\Dokumente und Einstellungen\SUZAN SHALABI\Anwendungsdaten\AdobeUM 2007-12-30 09:27 --------- d-----w C:\Programme\TuneUp Utilities 2007 2007-12-23 08:31 --------- d-----w C:\Programme\Gemeinsame Dateien\Lexware 2007-12-23 08:24 --------- d--h--w C:\Programme\InstallShield Installation Information 2007-12-19 12:15 --------- d-----w C:\Programme\Hewlett-Packard 2007-12-19 12:00 --------- d-----w C:\Dokumente und Einstellungen\SUZAN SHALABI\Anwendungsdaten\Skype 2007-11-29 13:46 --------- d-----w C:\Programme\goop 2007-11-29 13:46 --------- d-----w C:\Programme\eMule 2007-11-22 17:26 --------- d-----w C:\Programme\Windows Live Toolbar 2007-11-21 16:50 --------- d-----w C:\Programme\Avira 2007-11-21 16:50 --------- d-----w C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Avira 2007-11-20 17:10 --------- dcsh--w C:\Programme\Gemeinsame Dateien\WindowsLiveInstaller 2007-11-20 17:10 --------- d-----w C:\Programme\Windows Live 2007-11-20 17:05 --------- d-----w C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\WLInstaller 2007-11-13 22:39 344,064 ----a-w C:\WINDOWS\system32\BH_DATA110VC8.dll 2007-11-13 12:42 81,920 ----a-w C:\WINDOWS\system32\LxUISettings10VC8.dll 2007-11-13 12:42 81,920 ----a-w C:\WINDOWS\system32\LxCI12.dll 2007-11-13 12:42 716,800 ----a-w C:\WINDOWS\system32\lxter20VC8.dll 2007-11-13 12:42 69,632 ----a-w C:\WINDOWS\system32\PXTTool65VC8.dll 2007-11-13 12:42 61,440 ----a-w C:\WINDOWS\system32\LXCurr12VC8.dll 2007-11-13 12:42 552,960 ----a-w C:\WINDOWS\system32\zvkonline65VC8.dll 2007-11-13 12:42 5,701,632 ----a-w C:\WINDOWS\system32\LxXtreme50VC8.dll 2007-11-13 12:42 319,488 ----a-w C:\WINDOWS\system32\LxImport65VC8.dll 2007-11-13 12:42 27,648 ----a-w C:\WINDOWS\system32\LXTPSW20VC8.dll 2007-11-13 12:42 241,664 ----a-w C:\WINDOWS\system32\LXBtr65VC8.dll 2007-11-13 12:42 188,416 ----a-w C:\WINDOWS\system32\LXDasi65VC8.dll 2007-11-13 12:42 180,224 ----a-w C:\WINDOWS\system32\LxBasics65VC8.dll 2007-11-13 12:42 131,072 ----a-w C:\WINDOWS\system32\LxMail30VC8.dll 2007-11-13 12:42 1,556,480 ----a-w C:\WINDOWS\system32\LxXtreme40VC8.dll 2007-11-13 12:42 1,191,936 ----a-w C:\WINDOWS\system32\LXtool65VC8.dll 2007-11-13 11:38 1,409,024 ----a-w C:\WINDOWS\system32\FormAssi50.dll 2007-11-13 10:25 20,480 ----a-w C:\WINDOWS\system32\drivers\secdrv.sys 2007-11-13 08:39 57,344 ----a-w C:\WINDOWS\system32\FKStampPainter20.dll 2007-11-12 15:32 --------- d-----w C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\MailFrontier 2007-11-12 15:13 --------- d-----w C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Prevx 2007-11-09 14:18 208,896 ----a-w C:\WINDOWS\system32\LXPrnUtil10.dll 2007-11-09 14:15 303,104 ----a-w C:\WINDOWS\system32\dnt27VC8.dll 2007-11-09 14:12 90,112 ----a-w C:\WINDOWS\system32\dntvmc27VC8.dll 2007-11-09 14:12 86,016 ----a-w C:\WINDOWS\system32\dntvm27VC8.dll 2007-11-09 13:22 --------- d-----w C:\Programme\Trend Micro 2007-10-29 22:42 1,293,312 ----a-w C:\WINDOWS\system32\quartz.dll 2007-10-25 08:28 222,720 ----a-w C:\WINDOWS\system32\wmasf.dll 2007-10-22 12:20 134,144 ----a-w C:\WINDOWS\system32\LexEBankCommon10VC8.dll 2007-10-22 11:43 90,112 ----a-w C:\WINDOWS\system32\lxdao11VC8.dll 2007-10-22 11:43 184,320 ----a-w C:\WINDOWS\system32\LxDBAL11VC8.dll 2007-10-22 11:43 118,784 ----a-w C:\WINDOWS\system32\LxOdbc11VC8.dll 2007-10-18 10:31 51,224 ----a-w C:\WINDOWS\system32\sirenacm.dll 2006-06-30 10:26 774,144 ----a-w C:\Programme\RngInterstitial.dll . ((((((((((((((((((((((((((((( snapshot@2007-12-01_15.03.03.45 ))))))))))))))))))))))))))))))))))))))))) . - 2007-12-01 10:28:04 1,257,472 ----a-w C:\WINDOWS\assembly\GAC\System.Web\1.0.5000.0__b03f5f7f11d50a3a\System.Web.dll + 2007-12-02 11:03:45 1,265,664 ----a-w C:\WINDOWS\assembly\GAC\System.Web\1.0.5000.0__b03f5f7f11d50a3a\System.Web.dll - 2007-12-01 10:28:06 1,224,704 ----a-w C:\WINDOWS\assembly\GAC\System\1.0.5000.0__b77a5c561934e089\System.dll + 2007-12-02 11:03:46 1,232,896 ----a-w C:\WINDOWS\assembly\GAC\System\1.0.5000.0__b77a5c561934e089\System.dll + 2007-12-05 07:49:25 61,440 ----a-w C:\WINDOWS\assembly\NativeImages1_v1.1.4322\CustomMarshalers\1.0.5000.0__b03f5f7f11d50a3a_cd0a419a\CustomMarshalers.dll + 2007-12-05 07:50:29 3,391,488 ----a-w C:\WINDOWS\assembly\NativeImages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_8924ca82\mscorlib.dll + 2007-12-05 07:50:18 1,466,368 ----a-w C:\WINDOWS\assembly\NativeImages1_v1.1.4322\System.Design\1.0.5000.0__b03f5f7f11d50a3a_b1c39f6d\System.Design.dll + 2007-12-05 07:49:37 90,112 ----a-w C:\WINDOWS\assembly\NativeImages1_v1.1.4322\System.Drawing.Design\1.0.5000.0__b03f5f7f11d50a3a_d79e584a\System.Drawing.Design.dll + 2007-12-05 07:50:23 835,584 ----a-w C:\WINDOWS\assembly\NativeImages1_v1.1.4322\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a_783326cc\System.Drawing.dll + 2007-12-05 07:49:58 3,018,752 ----a-w C:\WINDOWS\assembly\NativeImages1_v1.1.4322\System.Windows.Forms\1.0.5000.0__b77a5c561934e089_c9935af7\System.Windows.Forms.dll + 2007-12-05 07:50:09 2,088,960 ----a-w C:\WINDOWS\assembly\NativeImages1_v1.1.4322\System.Xml\1.0.5000.0__b77a5c561934e089_f0cbbb15\System.Xml.dll + 2007-12-02 11:03:56 1,966,080 ----a-w C:\WINDOWS\assembly\NativeImages1_v1.1.4322\System\1.0.5000.0__b77a5c561934e089_4789feb5\System.dll + 2007-12-21 07:46:15 10,134 ----a-r C:\WINDOWS\Installer\{30837A37-8F9F-4817-8B52-C501B67DC3BE}\ARPPRODUCTICON.exe + 2007-12-23 08:41:01 10,134 ----a-r C:\WINDOWS\Installer\{539B0A82-CF4A-42CC-A46C-F417099FB0D7}\ARPPRODUCTICON.exe + 2007-12-23 08:41:01 40,960 ----a-r C:\WINDOWS\Installer\{539B0A82-CF4A-42CC-A46C-F417099FB0D7}\DTABEG_1.EXE + 2007-12-23 08:40:16 10,134 ----a-r C:\WINDOWS\Installer\{8B50F367-2686-4256-BA05-708B299961DF}\ARPPRODUCTICON.exe + 2007-12-23 08:23:50 86,016 ----a-r C:\WINDOWS\Installer\{9353F6E9-13B7-43B4-8FA5-CB46CA22671B}\ARPPRODUCTICON.exe + 2007-12-23 08:23:50 86,016 ----a-r C:\WINDOWS\Installer\{9353F6E9-13B7-43B4-8FA5-CB46CA22671B}\Formular.exe_135E619C03034DADABDAF8B9FECAF1F4.exe + 2007-12-23 08:23:50 86,016 ----a-r C:\WINDOWS\Installer\{9353F6E9-13B7-43B4-8FA5-CB46CA22671B}\Formular.exe1_135E619C03034DADABDAF8B9FECAF1F4.exe + 2007-12-23 08:35:30 10,134 ----a-r C:\WINDOWS\Installer\{BEDFB0D0-CA1E-4CBA-9664-B25A74019D0C}\ARPPRODUCTICON.exe + 2007-12-23 08:35:30 73,728 ----a-r C:\WINDOWS\Installer\{BEDFB0D0-CA1E-4CBA-9664-B25A74019D0C}\NewShortcut1.E478996E_1F9C_4900_988E_F8A470FEA557.exe - 2004-07-15 00:49:16 258,048 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_isapi.dll + 2007-04-13 20:30:52 258,048 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_isapi.dll - 2004-07-15 00:49:22 32,768 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_wp.exe + 2007-04-13 20:30:52 32,768 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_wp.exe - 2004-07-14 23:32:22 81,920 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\CORPerfMonExt.dll + 2007-04-13 19:57:52 81,920 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\CORPerfMonExt.dll - 2003-02-20 18:09:14 86,016 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorie.dll + 2007-04-13 19:57:58 86,016 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorie.dll - 2004-07-14 23:25:06 315,392 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorjit.dll + 2007-04-13 19:56:30 315,392 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorjit.dll - 2004-07-14 23:33:04 102,400 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorld.dll + 2007-04-13 19:58:00 102,400 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorld.dll - 2004-07-15 13:29:02 2,138,112 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorlib.dll + 2007-04-13 19:50:46 2,142,208 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorlib.dll - 2003-02-20 18:09:18 77,824 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorsn.dll + 2007-04-13 19:58:02 77,824 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorsn.dll - 2004-07-14 23:26:52 2,510,848 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorsvr.dll + 2007-04-13 19:57:00 2,523,136 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorsvr.dll - 2004-07-14 23:28:34 2,502,656 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorwks.dll + 2007-04-13 19:57:28 2,514,944 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorwks.dll - 2004-08-10 15:20:00 106,496 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\netfxupdate.exe + 2007-01-15 15:11:26 73,728 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\netfxupdate.exe + 2004-07-15 00:49:16 258,048 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\SHADOW4060\_aspnet_isapi.dll + 2004-07-14 23:32:22 81,920 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\SHADOW4060\_CORPerfMonExt.dll + 2004-07-14 23:24:30 282,624 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\SHADOW4060\_fusion.dll + 2004-07-14 23:25:06 315,392 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\SHADOW4060\_mscorjit.dll + 2004-07-15 13:29:02 2,138,112 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\SHADOW4060\_mscorlib.dll + 2003-02-20 18:09:18 77,824 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\SHADOW4060\_mscorsn.dll + 2004-07-14 23:26:52 2,510,848 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\SHADOW4060\_mscorsvr.dll + 2004-07-14 23:28:34 2,502,656 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\SHADOW4060\_mscorwks.dll + 2003-02-21 03:42:22 348,160 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\SHADOW4060\_msvcr71.dll + 2004-07-14 23:34:50 94,208 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\SHADOW4060\_PerfCounter.dll - 2004-07-15 13:31:16 1,224,704 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.dll + 2007-04-13 20:35:38 1,232,896 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.dll - 2004-07-15 13:29:00 1,257,472 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Web.dll + 2007-04-13 20:35:46 1,265,664 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Web.dll - 2007-06-16 23:11:58 51,200 ----a-w C:\WINDOWS\NirCmd.exe + 2000-08-31 07:00:00 51,200 ----a-w C:\WINDOWS\NirCmd.exe + 2006-11-03 10:01:16 319,488 ----a-w C:\WINDOWS\PixArt\PAC207\Monitor.exe + 2006-10-12 17:09:56 413,696 ----a-w C:\WINDOWS\PixArt\PAC207\PASnap.exe - 2007-08-22 13:13:00 1,022,976 ----a-w C:\WINDOWS\system32\browseui.dll + 2007-10-11 06:12:41 1,023,488 ----a-w C:\WINDOWS\system32\browseui.dll - 2007-08-22 13:13:00 152,064 ----a-w C:\WINDOWS\system32\cdfview.dll + 2007-10-11 06:12:41 152,064 ----a-w C:\WINDOWS\system32\cdfview.dll + 2006-11-20 08:04:24 6,656 ----a-w C:\WINDOWS\system32\CoInst_070511.dll - 2007-08-22 13:13:00 1,056,256 ----a-w C:\WINDOWS\system32\danim.dll + 2007-10-11 06:12:41 1,056,256 ----a-w C:\WINDOWS\system32\danim.dll - 2007-08-22 13:13:00 1,022,976 -c--a-w C:\WINDOWS\system32\dllcache\browseui.dll + 2007-10-11 06:12:41 1,023,488 -c--a-w C:\WINDOWS\system32\dllcache\browseui.dll - 2007-08-22 13:13:00 152,064 -c--a-w C:\WINDOWS\system32\dllcache\cdfview.dll + 2007-10-11 06:12:41 152,064 -c--a-w C:\WINDOWS\system32\dllcache\cdfview.dll - 2007-08-22 13:13:00 1,056,256 -c--a-w C:\WINDOWS\system32\dllcache\danim.dll + 2007-10-11 06:12:41 1,056,256 -c--a-w C:\WINDOWS\system32\dllcache\danim.dll - 2007-08-22 13:13:00 357,888 -c--a-w C:\WINDOWS\system32\dllcache\dxtmsft.dll + 2007-10-11 06:12:41 357,888 -c--a-w C:\WINDOWS\system32\dllcache\dxtmsft.dll - 2007-08-22 13:13:01 205,312 -c--a-w C:\WINDOWS\system32\dllcache\dxtrans.dll + 2007-10-11 06:12:41 205,312 -c--a-w C:\WINDOWS\system32\dllcache\dxtrans.dll - 2007-08-22 13:13:01 55,808 -c--a-w C:\WINDOWS\system32\dllcache\extmgr.dll + 2007-10-11 06:12:41 55,808 -c--a-w C:\WINDOWS\system32\dllcache\extmgr.dll - 2007-08-21 10:30:45 18,432 -c--a-w C:\WINDOWS\system32\dllcache\iedw.exe + 2007-10-10 11:16:27 18,432 -c--a-w C:\WINDOWS\system32\dllcache\iedw.exe - 2007-08-22 13:13:01 251,392 -c--a-w C:\WINDOWS\system32\dllcache\iepeers.dll + 2007-10-11 06:12:42 251,392 -c--a-w C:\WINDOWS\system32\dllcache\iepeers.dll - 2007-08-22 13:13:01 96,768 -c--a-w C:\WINDOWS\system32\dllcache\inseng.dll + 2007-10-11 06:12:42 96,768 -c--a-w C:\WINDOWS\system32\dllcache\inseng.dll - 2006-05-18 05:36:05 450,560 -c--a-w C:\WINDOWS\system32\dllcache\jscript.dll + 2007-11-14 07:26:55 450,560 -c--a-w C:\WINDOWS\system32\dllcache\jscript.dll - 2007-08-22 13:13:01 16,384 -c--a-w C:\WINDOWS\system32\dllcache\jsproxy.dll + 2007-10-11 06:12:42 16,384 -c--a-w C:\WINDOWS\system32\dllcache\jsproxy.dll - 2007-08-22 13:13:02 3,079,168 -c--a-w C:\WINDOWS\system32\dllcache\mshtml.dll + 2007-10-30 10:15:39 3,079,680 -c--a-w C:\WINDOWS\system32\dllcache\mshtml.dll - 2007-08-22 13:13:02 449,024 -c--a-w C:\WINDOWS\system32\dllcache\mshtmled.dll + 2007-10-11 06:12:44 449,024 -c--a-w C:\WINDOWS\system32\dllcache\mshtmled.dll - 2007-08-22 13:13:02 146,432 -c--a-w C:\WINDOWS\system32\dllcache\msrating.dll + 2007-10-11 06:12:44 146,432 -c--a-w C:\WINDOWS\system32\dllcache\msrating.dll - 2007-08-22 13:13:02 532,480 -c--a-w C:\WINDOWS\system32\dllcache\mstime.dll + 2007-10-11 06:12:44 532,480 -c--a-w C:\WINDOWS\system32\dllcache\mstime.dll - 2007-08-22 13:13:02 39,424 -c--a-w C:\WINDOWS\system32\dllcache\pngfilt.dll + 2007-10-11 06:12:44 39,424 -c--a-w C:\WINDOWS\system32\dllcache\pngfilt.dll + 2004-03-16 10:58:20 136,960 -c--a-w C:\WINDOWS\system32\dllcache\portcls.sys - 2005-08-30 03:55:35 1,292,800 -c--a-w C:\WINDOWS\system32\dllcache\quartz.dll + 2007-10-29 22:42:30 1,293,312 -c--a-w C:\WINDOWS\system32\dllcache\quartz.dll - 2007-08-22 13:13:03 1,494,528 -c--a-w C:\WINDOWS\system32\dllcache\shdocvw.dll + 2007-10-11 06:12:45 1,494,528 -c--a-w C:\WINDOWS\system32\dllcache\shdocvw.dll - 2007-08-22 13:13:03 474,624 -c--a-w C:\WINDOWS\system32\dllcache\shlwapi.dll + 2007-10-11 06:12:45 474,624 -c--a-w C:\WINDOWS\system32\dllcache\shlwapi.dll - 2007-08-22 13:13:03 617,472 -c--a-w C:\WINDOWS\system32\dllcache\urlmon.dll + 2007-10-11 06:12:45 617,472 -c--a-w C:\WINDOWS\system32\dllcache\urlmon.dll - 2007-08-22 13:13:04 664,576 -c--a-w C:\WINDOWS\system32\dllcache\wininet.dll + 2007-10-11 06:12:45 665,088 -c--a-w C:\WINDOWS\system32\dllcache\wininet.dll - 2006-10-18 20:47:18 222,208 -c--a-w C:\WINDOWS\system32\dllcache\WMASF.dll + 2007-10-25 08:28:30 222,720 -c--a-w C:\WINDOWS\system32\dllcache\wmasf.dll - 2003-03-09 20:31:00 51,024 ----a-r C:\WINDOWS\system32\drivers\hpzid412.sys + 2005-03-08 04:43:25 51,120 ----a-r C:\WINDOWS\system32\drivers\HPZid412.sys - 2003-03-09 20:31:02 16,080 ----a-r C:\WINDOWS\system32\drivers\HPZipr12.sys + 2005-03-08 04:43:26 16,496 ----a-r C:\WINDOWS\system32\drivers\HPZipr12.sys - 2003-03-09 20:31:02 21,456 ----a-r C:\WINDOWS\system32\drivers\HPZius12.sys + 2005-03-08 04:43:27 21,744 ----a-r C:\WINDOWS\system32\drivers\HPZius12.sys + 2007-05-14 09:26:10 508,288 ----a-w C:\WINDOWS\system32\drivers\PFC027.SYS |
|
|
||
07.01.2008, 17:46
Ehrenmitglied
Beiträge: 1441 |
#72
r123s
poste bitte noch mal alles komplett - falls der Platz nicht ausreicht, über Anhang (siehe unten) « wenn das erledigt ist: scanne mit diesem Kasperski-Tool, speichere den Report und poste ihn http://www.virus-protect.org/artikel/tools/kaspersky.html __________ Gruss Pinguin bin dabei, meine Seite + Proggies zu aktualisieren: http://www.virus-protect.org/ |
|
|
||
07.01.2008, 20:38
Member
Themenstarter Beiträge: 262 |
#73
ComboFix 08-01-07.5 - SUZAN SHALABI 2008-01-07 20:33:06.8 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.2.1252.49.1031.18.627 [GMT 1:00] ausgeführt von:: C:\Dokumente und Einstellungen\SUZAN SHALABI\Lokale Einstellungen\Temporary Internet Files\Content.IE5\CX2VKPYZ\ComboFix[1].exe . ((((((((((((((((((((((( Dateien erstellt von 2007-12-07 bis 2008-01-07 )))))))))))))))))))))))))))))) . 2008-01-07 17:12 . 2008-01-07 20:30 54,156 --ah----- C:\WINDOWS\QTFont.qfn 2008-01-07 17:12 . 2008-01-07 17:12 1,409 --a------ C:\WINDOWS\QTFont.for 2008-01-06 13:47 . 2008-01-06 13:47 <DIR> d-------- C:\2bd2932915fca7b132838576 2007-12-30 18:02 . 2008-01-06 13:10 <DIR> d-------- C:\Programme\Bingo RM to MP3 Wave Converter 2007-12-30 17:58 . 2008-01-06 13:12 <DIR> d-------- C:\Programme\RM to MP3 Converter 2007-12-29 13:14 . 2008-01-06 13:10 <DIR> d-------- C:\Programme\Blacky3 2007-12-28 21:11 . 2007-12-28 21:11 <DIR> d-------- C:\Programme\MediaSupplyCodec 2007-12-28 21:08 . 2008-01-06 13:10 <DIR> d-------- C:\Programme\Bingo RM MP3 to Audio CD Maker 2007-12-28 21:01 . 2008-01-06 13:14 <DIR> d-------- C:\Programme\Speedy RM to MP3 Converter 2007-12-28 20:49 . 2007-12-28 21:04 <DIR> d-------- C:\Programme\Real Alternative 2007-12-28 20:36 . 2007-12-28 20:37 <DIR> d-------- C:\Programme\Acoustica MP3 CD Burner 2007-12-28 20:36 . 2007-12-28 20:36 <DIR> d-------- C:\Dokumente und Einstellungen\SUZAN SHALABI\Anwendungsdaten\Acoustica 2007-12-28 20:36 . 2002-11-05 15:16 57,344 --a------ C:\WINDOWS\system32\Wnaspint.dll 2007-12-26 11:28 . 2007-12-26 11:28 <DIR> d-------- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\NCH Swift Sound 2007-12-26 11:22 . 2007-12-26 11:22 <DIR> d-------- C:\Dokumente und Einstellungen\SUZAN SHALABI\Anwendungsdaten\NCH Swift Sound 2007-12-26 11:14 . 2008-01-06 13:14 <DIR> d-------- C:\Programme\NCH Swift Sound 2007-12-24 10:22 . 2008-01-07 13:56 230,432 --a------ C:\PA207.DAT 2007-12-21 08:46 . 2007-12-21 08:46 <DIR> d-------- C:\WINDOWS\PixArt 2007-12-21 08:46 . 2007-12-21 08:46 <DIR> d-------- C:\Programme\Gemeinsame Dateien\PAC207 2007-12-21 08:46 . 2006-11-03 10:59 48,128 --a------ C:\WINDOWS\system32\Remove.exe 2007-12-21 08:46 . 2007-01-04 01:20 314 --a------ C:\WINDOWS\system32\Remover.ini 2007-12-21 08:44 . 2007-12-21 08:46 <DIR> d-------- C:\Programme\Trust 2007-12-21 08:43 . 2007-12-21 08:46 <DIR> d-------- C:\WINDOWS\Downloaded Installations 2007-12-19 13:11 . 1998-10-29 16:45 306,688 --a------ C:\WINDOWS\IsUninst.exe 2007-12-19 13:07 . 2007-12-19 13:08 <DIR> d-------- C:\WINDOWS\system32\NtmsData 2007-12-19 13:03 . 2007-12-19 13:25 113,952 --a------ C:\WINDOWS\hpoins07.dat 2007-12-19 13:03 . 2005-05-24 07:50 21,124 --------- C:\WINDOWS\hpomdl07.dat 2007-12-07 12:33 . 2007-12-07 12:33 <DIR> d-------- C:\Dokumente und Einstellungen\SUZAN SHALABI\DoctorWeb . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2008-01-06 17:20 --------- d-----w C:\Programme\microsoft frontpage 2008-01-04 14:55 --------- d-----w C:\Dokumente und Einstellungen\SUZAN SHALABI\Anwendungsdaten\AdobeUM 2007-12-30 09:27 --------- d-----w C:\Programme\TuneUp Utilities 2007 2007-12-23 08:31 --------- d-----w C:\Programme\Gemeinsame Dateien\Lexware 2007-12-23 08:24 --------- d--h--w C:\Programme\InstallShield Installation Information 2007-12-19 12:15 --------- d-----w C:\Programme\Hewlett-Packard 2007-12-19 12:00 --------- d-----w C:\Dokumente und Einstellungen\SUZAN SHALABI\Anwendungsdaten\Skype 2007-11-29 13:46 --------- d-----w C:\Programme\goop 2007-11-29 13:46 --------- d-----w C:\Programme\eMule 2007-11-22 17:26 --------- d-----w C:\Programme\Windows Live Toolbar 2007-11-21 16:50 --------- d-----w C:\Programme\Avira 2007-11-21 16:50 --------- d-----w C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Avira 2007-11-20 17:10 --------- dcsh--w C:\Programme\Gemeinsame Dateien\WindowsLiveInstaller 2007-11-20 17:10 --------- d-----w C:\Programme\Windows Live 2007-11-20 17:05 --------- d-----w C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\WLInstaller 2007-11-13 22:39 344,064 ----a-w C:\WINDOWS\system32\BH_DATA110VC8.dll 2007-11-13 12:42 81,920 ----a-w C:\WINDOWS\system32\LxUISettings10VC8.dll 2007-11-13 12:42 81,920 ----a-w C:\WINDOWS\system32\LxCI12.dll 2007-11-13 12:42 716,800 ----a-w C:\WINDOWS\system32\lxter20VC8.dll 2007-11-13 12:42 69,632 ----a-w C:\WINDOWS\system32\PXTTool65VC8.dll 2007-11-13 12:42 61,440 ----a-w C:\WINDOWS\system32\LXCurr12VC8.dll 2007-11-13 12:42 552,960 ----a-w C:\WINDOWS\system32\zvkonline65VC8.dll 2007-11-13 12:42 5,701,632 ----a-w C:\WINDOWS\system32\LxXtreme50VC8.dll 2007-11-13 12:42 319,488 ----a-w C:\WINDOWS\system32\LxImport65VC8.dll 2007-11-13 12:42 27,648 ----a-w C:\WINDOWS\system32\LXTPSW20VC8.dll 2007-11-13 12:42 241,664 ----a-w C:\WINDOWS\system32\LXBtr65VC8.dll 2007-11-13 12:42 188,416 ----a-w C:\WINDOWS\system32\LXDasi65VC8.dll 2007-11-13 12:42 180,224 ----a-w C:\WINDOWS\system32\LxBasics65VC8.dll 2007-11-13 12:42 131,072 ----a-w C:\WINDOWS\system32\LxMail30VC8.dll 2007-11-13 12:42 1,556,480 ----a-w C:\WINDOWS\system32\LxXtreme40VC8.dll 2007-11-13 12:42 1,191,936 ----a-w C:\WINDOWS\system32\LXtool65VC8.dll 2007-11-13 11:38 1,409,024 ----a-w C:\WINDOWS\system32\FormAssi50.dll 2007-11-13 10:25 20,480 ----a-w C:\WINDOWS\system32\drivers\secdrv.sys 2007-11-13 08:39 57,344 ----a-w C:\WINDOWS\system32\FKStampPainter20.dll 2007-11-12 15:32 --------- d-----w C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\MailFrontier 2007-11-12 15:13 --------- d-----w C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Prevx 2007-11-09 14:18 208,896 ----a-w C:\WINDOWS\system32\LXPrnUtil10.dll 2007-11-09 14:15 303,104 ----a-w C:\WINDOWS\system32\dnt27VC8.dll 2007-11-09 14:12 90,112 ----a-w C:\WINDOWS\system32\dntvmc27VC8.dll 2007-11-09 14:12 86,016 ----a-w C:\WINDOWS\system32\dntvm27VC8.dll 2007-11-09 13:22 --------- d-----w C:\Programme\Trend Micro 2007-10-29 22:42 1,293,312 ----a-w C:\WINDOWS\system32\quartz.dll 2007-10-25 08:28 222,720 ----a-w C:\WINDOWS\system32\wmasf.dll 2007-10-22 12:20 134,144 ----a-w C:\WINDOWS\system32\LexEBankCommon10VC8.dll 2007-10-22 11:43 90,112 ----a-w C:\WINDOWS\system32\lxdao11VC8.dll 2007-10-22 11:43 184,320 ----a-w C:\WINDOWS\system32\LxDBAL11VC8.dll 2007-10-22 11:43 118,784 ----a-w C:\WINDOWS\system32\LxOdbc11VC8.dll 2007-10-18 10:31 51,224 ----a-w C:\WINDOWS\system32\sirenacm.dll 2006-06-30 10:26 774,144 ----a-w C:\Programme\RngInterstitial.dll . (((((((((((((((((((((((((((( Autostart Punkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . REGEDIT4 *Hinweis* leere Eintrage & legitime Standardeintrage werden nicht angezeigt. [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "msnmsgr"="C:\Programme\Windows Live\Messenger\msnmsgr.exe" [2007-10-18 11:34 5724184] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2005-12-10 03:06 7311360] "Monitor"="C:\WINDOWS\PixArt\PAC207\Monitor.exe" [2006-11-03 11:01 319488] "TkBellExe"="C:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe" [2006-12-28 21:24 185896] "LexwareInfoService"="C:\Programme\Gemeinsame Dateien\Lexware\Update Manager\LxUpdateManager.exe" [2007-09-25 13:59 532776] "QuickTime Task"="C:\Programme\QuickTime\qttask.exe" [2007-09-10 11:52 77824] [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2004-08-04 13:00 15360] [HKLM\~\startupfolder\C:^Dokumente und Einstellungen^All Users^Startmenü^Programme^Autostart^HP Digital Imaging Monitor.lnk] path=C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\HP Digital Imaging Monitor.lnk backup=C:\WINDOWS\pss\HP Digital Imaging Monitor.lnkCommon Startup [HKLM\~\startupfolder\C:^Dokumente und Einstellungen^All Users^Startmenü^Programme^Autostart^Lexware Info Service.lnk] path=C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\Lexware Info Service.lnk backup=C:\WINDOWS\pss\Lexware Info Service.lnkCommon Startup [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AltnetPointsManager] --a------ 2006-07-19 16:01 336896 C:\Program Files\Altnet\Points Manager\Points Manager.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\avgnt] --a------ 2007-11-30 11:07 249896 C:\Programme\Avira\AntiVir PersonalEdition Classic\avgnt.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AVMWlanClient] -ra------ 2006-02-23 00:04 1499136 C:\Programme\avmwlanstick\wlangui.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTFMON.EXE] --a------ 2004-08-04 13:00 15360 C:\WINDOWS\system32\ctfmon.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\FLMOFFICE4DMOUSE] --a------ 2006-03-28 11:23 958464 C:\Programme\Labtec\Desktop\V5.1\moffice.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Desktop Search] C:\Programme\Google\Google Desktop Search\GoogleDesktop.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update] --a------ 2005-05-11 22:12 49152 C:\Programme\Hewlett-Packard\HP Software Update\HPWuSchd2.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IMJPMIG8.1] --a------ 2004-08-04 13:00 208952 C:\WINDOWS\IME\imjp8_1\IMJPMIG.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IntelAudioStudio] --a------ 2005-04-08 19:37 7081984 C:\Programme\Intel Audio Studio\IntelAudioStudio.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KAZAA] C:\Programme\Kazaa\kazaa.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\msnmsgr] --a------ 2007-10-18 11:34 5724184 C:\Programme\Windows Live\Messenger\msnmsgr.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSPY2002] --a------ 2004-08-04 13:00 59392 C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe |
|
|
||
07.01.2008, 20:39
Member
Themenstarter Beiträge: 262 |
#74
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
--a------ 2001-07-09 09:50 155648 C:\WINDOWS\system32\NeroCheck.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon] --a------ 2005-12-10 03:06 7311360 C:\WINDOWS\system32\NvCpl.dll [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter] --a------ 2005-12-10 03:06 86016 C:\WINDOWS\system32\NvMcTray.dll [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz] --a------ 2005-12-10 03:06 1519616 C:\WINDOWS\system32\nwiz.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OFFICEKB] --a------ 2006-03-28 11:23 387584 C:\Programme\Labtec\Desktop\V5.1\kbdap32a.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\P2P Networking] C:\WINDOWS\system32\P2P Networking\P2P Networking.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PHIME2002A] --a------ 2004-08-04 13:00 455168 C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PHIME2002ASync] --a------ 2004-08-04 13:00 455168 C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task] --a------ 2007-09-10 11:52 77824 C:\Programme\QuickTime\qttask.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SemanticInsight] C:\Programme\RXToolBar\Semantic Insight\SemanticInsight.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype] C:\Programme\Skype\Phone\Skype.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched] --a------ 2005-06-03 03:52 36975 C:\Programme\Java\jre1.5.0_04\bin\jusched.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\tbon] --a------ 2006-07-01 21:00 83456 C:\Programme\TBONBin\tbon.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe] --a------ 2006-12-28 21:24 185896 C:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ZoneAlarm Client] C:\Programme\Zone Labs\ZoneAlarm\zlclient.exe R2 Pctspk;PCTEL Speaker Phone;C:\WINDOWS\system32\pctspk.exe [2001-08-18 03:55] R2 UxTuneUp;TuneUp Designerweiterung;C:\WINDOWS\System32\svchost.exe [2004-08-04 13:00] R3 PAC207;Trust WB-1400T Webcam;C:\WINDOWS\system32\DRIVERS\PFC027.SYS [2007-05-14 10:26] R3 Ptserlp;PCTEL Serial Device Driver for PCI;C:\WINDOWS\system32\DRIVERS\ptserlp.sys [2001-08-17 12:28] S0 sexjdqpf;sexjdqpf;C:\WINDOWS\system32\drivers\xaurrfew.sys [] S0 tfgaqmyf;tfgaqmyf;C:\WINDOWS\system32\drivers\gjebhpfr.sys [] S3 AVMUNET;AVM FRITZ!Box;C:\WINDOWS\system32\DRIVERS\avmunet.sys [2005-04-18 15:15] S3 FWLANUSB;AVM FRITZ!WLAN;C:\WINDOWS\system32\DRIVERS\fwlanusb.sys [2006-02-23 00:04] S3 HRService;Haufe iDesk-Service in C:\Programme\Haufe\iDesk\iDeskService\Zope;"C:\Programme\Haufe\iDesk\iDeskService\iDeskService.exe" [2007-09-07 03:17] S3 phil2vid;Philips VGA-Kamera (USB);C:\WINDOWS\system32\DRIVERS\philcam2.sys [2001-08-17 13:04] HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs UxTuneUp [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{2a3c3cb4-03af-11db-bfa3-00132061f2e3}] \Shell\AutoRun\command - F:\pushinst.exe [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{429b9829-02eb-11db-bf9f-00132061f2e3}] \Shell\AutoRun\command - F:\preinst.exe . Inhalt des "geplante Tasks" Ordners "2007-10-29 14:38:32 C:\WINDOWS\Tasks\1-Klick-Wartung.job" - C:\Programme\TuneUp Utilities 2007\SystemOptimizer.exe "2008-01-07 15:40:01 C:\WINDOWS\Tasks\Auf Updates für Windows Live Toolbar prüfen.job" - C:\Programme\Windows Live Toolbar\MSNTBUP.EXE . ************************************************************************** catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2008-01-07 20:35:24 Windows 5.1.2600 Service Pack 2 NTFS Scanne versteckte Prozesse... Scanne versteckte Autostart Einträge... Scanne versteckte Dateien... Scan erfolgreich abgeschlossen versteckte Dateien: 0 ************************************************************************** . Zeit der Fertigstellung: 2008-01-07 20:36:07 ComboFix-quarantined-files.txt 2008-01-07 19:35:58 ComboFix2.txt 2008-01-07 16:19:31 ComboFix3.txt 2007-12-01 15:31:42 ComboFix4.txt 2007-12-01 15:05:45 ComboFix5.txt 2007-12-01 14:40:33 . 2008-01-06 17:14:57 --- E O F --- |
|
|
||
07.01.2008, 21:00
Member
Themenstarter Beiträge: 262 |
#75
99% - Scan
---------- Scanned: 4861 Detected: 1 Untreated: 1 Start time: 07.01.2008 20:55:33 Duration: 00:03:10 Finish time: Unknown Detected -------- Status Object ------ ------ detected: adware not-a-virus:AdWare.Win32.Mostofate.j File: C:\Dokumente und Einstellungen\SUZAN SHALABI\Eigene Dateien\BearShareV6de.exe//WiseSFXDropper//WISE0104.BIN//stream//data0005 Events ------ Time Name Status Reason ---- ---- ------ ------ 07.01.2008 20:55:36 Running module: C:\Dokumente und Einstellungen\All Users\Desktop\Kaspersky Lab Tool\setup_7.0.0.180_07.01.2008_21-47[1].exe ok scanned 07.01.2008 20:55:36 File: C:\Dokumente und Einstellungen\All Users\Desktop\Kaspersky Lab Tool\setup_7.0.0.180_07.01.2008_21-47[1].exe ok scanned 07.01.2008 20:55:36 Running module: C:\WINDOWS\system32\ntdll.dll ok scanned 07.01.2008 20:55:36 File: C:\WINDOWS\system32\ntdll.dll ok scanned 07.01.2008 20:55:36 Running module: C:\WINDOWS\system32\kernel32.dll ok scanned 07.01.2008 20:55:36 File: C:\WINDOWS\system32\kernel32.dll ok scanned 07.01.2008 20:55:36 Running module: C:\Dokumente und Einstellungen\All Users\Desktop\Kaspersky Lab Tool\prremote.dll ok scanned 07.01.2008 20:55:36 File: C:\Dokumente und Einstellungen\All Users\Desktop\Kaspersky Lab Tool\prremote.dll ok scanned 07.01.2008 20:55:36 Running module: C:\WINDOWS\system32\RPCRT4.dll ok scanned 07.01.2008 20:55:36 File: C:\WINDOWS\system32\RPCRT4.dll ok scanned 07.01.2008 20:55:36 Running module: C:\WINDOWS\system32\ADVAPI32.dll ok scanned 07.01.2008 20:55:36 File: C:\WINDOWS\system32\ADVAPI32.dll ok scanned 07.01.2008 20:55:36 Running module: C:\WINDOWS\system32\Secur32.dll ok scanned 07.01.2008 20:55:36 File: C:\WINDOWS\system32\Secur32.dll ok scanned 07.01.2008 20:55:36 Running module: C:\WINDOWS\system32\USER32.dll ok scanned 07.01.2008 20:55:36 File: C:\WINDOWS\system32\USER32.dll ok scanned 07.01.2008 20:55:36 Running module: C:\WINDOWS\system32\GDI32.dll ok scanned 07.01.2008 20:55:36 File: C:\WINDOWS\system32\GDI32.dll ok scanned 07.01.2008 20:55:36 Running module: C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6b128700\MSVCP80.dll ok scanned 07.01.2008 20:55:36 File: C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6b128700\MSVCP80.dll ok scanned 07.01.2008 20:55:36 Running module: C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6b128700\MSVCR80.dll ok scanned 07.01.2008 20:55:37 File: C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6b128700\MSVCR80.dll ok scanned 07.01.2008 20:55:37 Running module: C:\WINDOWS\system32\msvcrt.dll ok scanned 07.01.2008 20:55:37 File: C:\WINDOWS\system32\msvcrt.dll ok scanned 07.01.2008 20:55:37 Running module: C:\Dokumente und Einstellungen\All Users\Desktop\Kaspersky Lab Tool\FSSync.dll ok scanned 07.01.2008 20:55:37 File: C:\Dokumente und Einstellungen\All Users\Desktop\Kaspersky Lab Tool\FSSync.dll ok scanned 07.01.2008 20:55:37 Running module: C:\WINDOWS\system32\SHELL32.dll ok scanned 07.01.2008 20:55:37 File: C:\WINDOWS\system32\SHELL32.dll ok scanned 07.01.2008 20:55:37 Running module: C:\WINDOWS\system32\SHLWAPI.dll ok scanned 07.01.2008 20:55:37 File: C:\WINDOWS\system32\SHLWAPI.dll ok scanned 07.01.2008 20:55:37 Running module: C:\WINDOWS\system32\ole32.dll ok scanned 07.01.2008 20:55:37 File: C:\WINDOWS\system32\ole32.dll ok scanned 07.01.2008 20:55:37 Running module: C:\WINDOWS\system32\IMM32.DLL ok scanned 07.01.2008 20:55:37 File: C:\WINDOWS\system32\IMM32.DLL ok scanned 07.01.2008 20:55:37 Running module: C:\WINDOWS\system32\LPK.DLL ok scanned 07.01.2008 20:55:37 File: C:\WINDOWS\system32\LPK.DLL ok scanned 07.01.2008 20:55:37 Running module: C:\WINDOWS\system32\USP10.dll ok scanned 07.01.2008 20:55:37 File: C:\WINDOWS\system32\USP10.dll ok scanned 07.01.2008 20:55:37 Running module: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll ok scanned 07.01.2008 20:55:37 File: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll ok scanned 07.01.2008 20:55:37 Running module: C:\WINDOWS\system32\uxtheme.dll ok scanned 07.01.2008 20:55:37 File: C:\WINDOWS\system32\uxtheme.dll ok scanned 07.01.2008 20:55:37 Running module: C:\WINDOWS\system32\msctfime.ime ok scanned 07.01.2008 20:55:37 File: C:\WINDOWS\system32\msctfime.ime ok scanned 07.01.2008 20:55:37 Running module: C:\Dokumente und Einstellungen\All Users\Desktop\Kaspersky Lab Tool\AVPGS.PPL ok scanned 07.01.2008 20:55:37 File: C:\Dokumente und Einstellungen\All Users\Desktop\Kaspersky Lab Tool\AVPGS.PPL ok scanned 07.01.2008 20:55:37 Running module: C:\Dokumente und Einstellungen\All Users\Desktop\Kaspersky Lab Tool\prloader.dll ok scanned 07.01.2008 20:55:37 File: C:\Dokumente und Einstellungen\All Users\Desktop\Kaspersky Lab Tool\prloader.dll ok scanned 07.01.2008 20:55:37 Running module: C:\Dokumente und Einstellungen\All Users\Desktop\Kaspersky Lab Tool\prkernel.ppl ok scanned 07.01.2008 20:55:38 File: C:\Dokumente und Einstellungen\All Users\Desktop\Kaspersky Lab Tool\prkernel.ppl ok scanned 07.01.2008 20:55:38 Running module: C:\WINDOWS\system32\userenv.dll ok scanned 07.01.2008 20:55:38 File: C:\WINDOWS\system32\userenv.dll ok scanned 07.01.2008 20:55:38 Running module: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\pxstub.ppl ok scanned 07.01.2008 20:55:38 File: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\pxstub.ppl ok scanned 07.01.2008 20:55:38 Running module: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\params.ppl ok scanned 07.01.2008 20:55:38 File: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\params.ppl ok scanned 07.01.2008 20:55:38 Running module: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\dtreg.ppl ok scanned 07.01.2008 20:55:38 File: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\dtreg.ppl ok scanned 07.01.2008 20:55:38 Running module: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\nfio.ppl ok scanned 07.01.2008 20:55:38 File: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\nfio.ppl ok scanned 07.01.2008 20:55:38 Running module: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\fsdrvplg.ppl ok scanned 07.01.2008 20:55:38 File: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\fsdrvplg.ppl ok scanned 07.01.2008 20:55:38 Running module: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\mkavio.ppl ok scanned 07.01.2008 20:55:38 File: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\mkavio.ppl ok scanned 07.01.2008 20:55:38 Running module: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\tempfile.ppl ok scanned 07.01.2008 20:55:38 File: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\tempfile.ppl ok scanned 07.01.2008 20:55:38 Running module: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\avpgui.ppl ok scanned 07.01.2008 20:55:38 File: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\avpgui.ppl ok scanned 07.01.2008 20:55:38 Running module: C:\WINDOWS\system32\WININET.dll ok scanned 07.01.2008 20:55:38 File: C:\WINDOWS\system32\WININET.dll ok scanned 07.01.2008 20:55:38 Running module: C:\WINDOWS\system32\CRYPT32.dll ok scanned 07.01.2008 20:55:38 File: C:\WINDOWS\system32\CRYPT32.dll ok scanned 07.01.2008 20:55:38 Running module: C:\WINDOWS\system32\MSASN1.dll ok scanned 07.01.2008 20:55:38 File: C:\WINDOWS\system32\MSASN1.dll ok scanned 07.01.2008 20:55:38 Running module: C:\WINDOWS\system32\OLEAUT32.dll ok scanned 07.01.2008 20:55:38 File: C:\WINDOWS\system32\OLEAUT32.dll ok scanned 07.01.2008 20:55:38 Running module: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\basegui.ppl ok scanned 07.01.2008 20:55:38 File: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\basegui.ppl ok scanned 07.01.2008 20:55:38 Running module: C:\WINDOWS\system32\VERSION.dll ok scanned 07.01.2008 20:55:38 File: C:\WINDOWS\system32\VERSION.dll ok scanned 07.01.2008 20:55:38 Running module: C:\WINDOWS\system32\WS2_32.dll ok scanned 07.01.2008 20:55:38 File: C:\WINDOWS\system32\WS2_32.dll ok scanned 07.01.2008 20:55:38 Running module: C:\WINDOWS\system32\WS2HELP.dll ok scanned 07.01.2008 20:55:38 File: C:\WINDOWS\system32\WS2HELP.dll ok scanned 07.01.2008 20:55:38 Running module: C:\WINDOWS\system32\CLBCATQ.DLL ok scanned 07.01.2008 20:55:38 File: C:\WINDOWS\system32\CLBCATQ.DLL ok scanned 07.01.2008 20:55:38 Running module: C:\WINDOWS\system32\COMRes.dll ok scanned 07.01.2008 20:55:38 File: C:\WINDOWS\system32\COMRes.dll ok scanned 07.01.2008 20:55:38 Running module: C:\WINDOWS\system32\xpsp2res.dll ok scanned 07.01.2008 20:55:38 File: C:\WINDOWS\system32\xpsp2res.dll archive EmbeddedHTML 07.01.2008 20:55:38 File: C:\WINDOWS\system32\xpsp2res.dll//data0001.html ok scanned 07.01.2008 20:55:38 File: C:\WINDOWS\system32\xpsp2res.dll//data0002.html ok scanned 07.01.2008 20:55:38 File: C:\WINDOWS\system32\xpsp2res.dll//data0003.html ok scanned 07.01.2008 20:55:38 File: C:\WINDOWS\system32\xpsp2res.dll//data0004.html ok scanned 07.01.2008 20:55:38 File: C:\WINDOWS\system32\xpsp2res.dll//data0005.html ok scanned 07.01.2008 20:55:38 File: C:\WINDOWS\system32\xpsp2res.dll//data0006.html ok scanned 07.01.2008 20:55:38 File: C:\WINDOWS\system32\xpsp2res.dll//data0007.html ok scanned 07.01.2008 20:55:38 File: C:\WINDOWS\system32\xpsp2res.dll//data0008.html ok scanned 07.01.2008 20:55:38 File: C:\WINDOWS\system32\xpsp2res.dll//data0009.html ok scanned 07.01.2008 20:55:38 File: C:\WINDOWS\system32\xpsp2res.dll//data0010.html ok scanned 07.01.2008 20:55:38 File: C:\WINDOWS\system32\xpsp2res.dll//data0011.html ok scanned 07.01.2008 20:55:38 File: C:\WINDOWS\system32\xpsp2res.dll//data0012.html ok scanned 07.01.2008 20:55:38 File: C:\WINDOWS\system32\xpsp2res.dll ok scanned 07.01.2008 20:55:38 Running module: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\thpimpl.ppl ok scanned 07.01.2008 20:55:38 File: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\thpimpl.ppl ok scanned 07.01.2008 20:55:38 Running module: C:\WINDOWS\system32\fltlib.dll ok scanned 07.01.2008 20:55:38 File: C:\WINDOWS\system32\fltlib.dll ok scanned 07.01.2008 20:55:38 Running module: C:\WINDOWS\system32\wtsapi32.dll ok scanned 07.01.2008 20:55:38 File: C:\WINDOWS\system32\wtsapi32.dll ok scanned 07.01.2008 20:55:38 Running module: C:\WINDOWS\system32\WINSTA.dll ok scanned 07.01.2008 20:55:38 File: C:\WINDOWS\system32\WINSTA.dll ok scanned 07.01.2008 20:55:38 Running module: C:\WINDOWS\system32\NETAPI32.dll ok scanned 07.01.2008 20:55:38 File: C:\WINDOWS\system32\NETAPI32.dll ok scanned 07.01.2008 20:55:38 Running module: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\qb.ppl ok scanned 07.01.2008 20:55:38 File: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\qb.ppl ok scanned 07.01.2008 20:55:38 Running module: C:\WINDOWS\system32\appHelp.dll ok scanned 07.01.2008 20:55:38 File: C:\WINDOWS\system32\appHelp.dll ok scanned 07.01.2008 20:55:38 Running module: C:\WINDOWS\system32\SETUPAPI.dll ok scanned 07.01.2008 20:55:38 File: C:\WINDOWS\system32\SETUPAPI.dll ok scanned 07.01.2008 20:55:38 Running module: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\report.ppl ok scanned 07.01.2008 20:55:38 File: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\report.ppl ok scanned 07.01.2008 20:55:38 Running module: C:\WINDOWS\system32\Comdlg32.dll ok scanned 07.01.2008 20:55:38 File: C:\WINDOWS\system32\Comdlg32.dll ok scanned 07.01.2008 20:55:38 Running module: C:\WINDOWS\system32\browseui.dll ok scanned 07.01.2008 20:55:38 File: C:\WINDOWS\system32\browseui.dll ok scanned 07.01.2008 20:55:38 Running module: C:\WINDOWS\system32\ntshrui.dll ok scanned 07.01.2008 20:55:38 File: C:\WINDOWS\system32\ntshrui.dll ok scanned 07.01.2008 20:55:39 Running module: C:\WINDOWS\system32\ATL.DLL ok scanned 07.01.2008 20:55:39 File: C:\WINDOWS\system32\ATL.DLL ok scanned 07.01.2008 20:55:39 Running module: C:\WINDOWS\system32\shdocvw.dll ok scanned 07.01.2008 20:55:39 File: C:\WINDOWS\system32\shdocvw.dll ok scanned 07.01.2008 20:55:39 Running module: C:\WINDOWS\system32\CRYPTUI.dll ok scanned 07.01.2008 20:55:39 File: C:\WINDOWS\system32\CRYPTUI.dll ok scanned 07.01.2008 20:55:39 Running module: C:\WINDOWS\system32\WINTRUST.dll ok scanned 07.01.2008 20:55:39 File: C:\WINDOWS\system32\WINTRUST.dll ok scanned 07.01.2008 20:55:39 Running module: C:\WINDOWS\system32\IMAGEHLP.dll ok scanned 07.01.2008 20:55:39 File: C:\WINDOWS\system32\IMAGEHLP.dll ok scanned 07.01.2008 20:55:39 Running module: C:\WINDOWS\system32\WLDAP32.dll ok scanned 07.01.2008 20:55:39 File: C:\WINDOWS\system32\WLDAP32.dll ok scanned 07.01.2008 20:55:39 Running module: C:\WINDOWS\system32\LINKINFO.dll ok scanned 07.01.2008 20:55:39 File: C:\WINDOWS\system32\LINKINFO.dll ok scanned 07.01.2008 20:55:39 Running module: C:\Programme\Windows Live\Messenger\fsshext.8.5.1302.1018.dll ok scanned 07.01.2008 20:55:39 File: C:\Programme\Windows Live\Messenger\fsshext.8.5.1302.1018.dll ok scanned 07.01.2008 20:55:39 Running module: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.2600.2180_x-ww_522f9f82\gdiplus.dll ok scanned 07.01.2008 20:55:39 File: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.2600.2180_x-ww_522f9f82\gdiplus.dll ok scanned 07.01.2008 20:55:39 Running module: C:\WINDOWS\system32\MPR.dll ok scanned 07.01.2008 20:55:39 File: C:\WINDOWS\system32\MPR.dll ok scanned 07.01.2008 20:55:39 Running module: C:\WINDOWS\System32\drprov.dll ok scanned 07.01.2008 20:55:39 File: C:\WINDOWS\System32\drprov.dll ok scanned 07.01.2008 20:55:39 Running module: C:\WINDOWS\System32\ntlanman.dll ok scanned 07.01.2008 20:55:39 File: C:\WINDOWS\System32\ntlanman.dll ok scanned 07.01.2008 20:55:39 Running module: C:\WINDOWS\System32\NETUI0.dll ok scanned 07.01.2008 20:55:39 File: C:\WINDOWS\System32\NETUI0.dll ok scanned 07.01.2008 20:55:39 Running module: C:\WINDOWS\System32\NETUI1.dll ok scanned 07.01.2008 20:55:39 File: C:\WINDOWS\System32\NETUI1.dll ok scanned 07.01.2008 20:55:39 Running module: C:\WINDOWS\System32\NETRAP.dll ok scanned 07.01.2008 20:55:39 File: C:\WINDOWS\System32\NETRAP.dll ok scanned 07.01.2008 20:55:39 Running module: C:\WINDOWS\System32\SAMLIB.dll ok scanned 07.01.2008 20:55:39 File: C:\WINDOWS\System32\SAMLIB.dll ok scanned 07.01.2008 20:55:39 Running module: C:\WINDOWS\System32\davclnt.dll ok scanned 07.01.2008 20:55:39 File: C:\WINDOWS\System32\davclnt.dll ok scanned 07.01.2008 20:55:39 Running module: C:\WINDOWS\system32\PortableDeviceApi.dll ok scanned 07.01.2008 20:55:39 File: C:\WINDOWS\system32\PortableDeviceApi.dll ok scanned 07.01.2008 20:55:39 Running module: C:\WINDOWS\system32\MSGINA.dll ok scanned 07.01.2008 20:55:39 File: C:\WINDOWS\system32\MSGINA.dll ok scanned 07.01.2008 20:55:39 Running module: C:\WINDOWS\system32\ODBC32.dll ok scanned 07.01.2008 20:55:39 File: C:\WINDOWS\system32\ODBC32.dll ok scanned 07.01.2008 20:55:39 Running module: C:\WINDOWS\system32\odbcint.dll ok scanned 07.01.2008 20:55:39 File: C:\WINDOWS\system32\odbcint.dll ok scanned 07.01.2008 20:55:39 Running module: C:\WINDOWS\system32\sti.dll ok scanned 07.01.2008 20:55:39 File: C:\WINDOWS\system32\sti.dll ok scanned 07.01.2008 20:55:39 Running module: C:\WINDOWS\system32\CFGMGR32.dll ok scanned 07.01.2008 20:55:39 File: C:\WINDOWS\system32\CFGMGR32.dll ok scanned 07.01.2008 20:55:39 File: c:\windows\system32\mmdrv.dll ok scanned 07.01.2008 20:55:39 File: c:\windows\system\timer.drv ok scanned 07.01.2008 20:55:39 File: c:\windows\system32\pvmjpg21.dll ok scanned 07.01.2008 20:55:39 File: c:\windows\system32\mshta.exe ok scanned 07.01.2008 20:55:39 File: C:\WINDOWS\system32\notepad.exe ok scanned 07.01.2008 20:55:40 File: c:\windows\regedit.exe ok scanned 07.01.2008 20:55:40 File: c:\programme\adobe\acrobat 6.0\reader\acrord32.exe ok scanned 07.01.2008 20:55:40 File: C:\WINDOWS\system32\accwiz.exe ok scanned 07.01.2008 20:55:40 File: c:\programme\windows media player\wmplayer.exe ok scanned 07.01.2008 20:55:40 File: c:\programme\internet explorer\iexplore.exe ok scanned 07.01.2008 20:55:40 File: c:\windows\system32\rundll32.exe ok scanned 07.01.2008 20:55:40 File: c:\windows\system32\cryptext.dll ok scanned 07.01.2008 20:55:40 File: c:\programme\outlook express\wab.exe ok scanned 07.01.2008 20:55:40 File: c:\windows\explorer.exe ok scanned 07.01.2008 20:55:40 File: C:\WINDOWS\system32\cdfview.dll ok scanned 07.01.2008 20:55:40 File: c:\windows\hh.exe ok scanned 07.01.2008 20:55:41 File: c:\windows\system32\clipbrd.exe ok scanned 07.01.2008 20:55:41 File: C:\WINDOWS\system32\rundll32.exe ok scanned 07.01.2008 20:55:41 File: c:\windows\system32\netshell.dll ok scanned 07.01.2008 20:55:41 File: c:\windows\system32\shimgvw.dll ok scanned 07.01.2008 20:55:42 File: C:\WINDOWS\explorer.exe ok scanned 07.01.2008 20:55:42 File: C:\WINDOWS\system32\fontview.exe ok scanned 07.01.2008 20:55:42 File: c:\windows\system32\msconf.dll ok scanned 07.01.2008 20:55:42 File: c:\windows\winhlp32.exe ok scanned 07.01.2008 20:55:42 File: C:\WINDOWS\system32\winhlp32.exe ok scanned 07.01.2008 20:55:42 File: c:\programme\windows nt\hypertrm.exe ok scanned 07.01.2008 20:55:42 File: c:\programme\java\jre1.5.0_04\bin\javaw.exe ok scanned 07.01.2008 20:55:42 File: c:\programme\java\jre1.5.0_04\bin\javaws.exe ok scanned 07.01.2008 20:55:42 File: C:\WINDOWS\system32\wscript.exe ok scanned 07.01.2008 20:55:42 File: c:\programme\microsoft works\wksproj.exe ok scanned 07.01.2008 20:55:43 File: C:\WINDOWS\system32\mmc.exe ok scanned 07.01.2008 20:55:43 File: C:\WINDOWS\system32\shell32.dll ok scanned 07.01.2008 20:55:43 File: C:\WINDOWS\system32\desk.cpl ok scanned 07.01.2008 20:55:43 File: c:\programme\mv2player\mv2playerplus.exe packed file UPX 07.01.2008 20:55:43 File: c:\programme\mv2player\mv2playerplus.exe//UPX ok scanned 07.01.2008 20:55:45 File: c:\programme\mv2player\mv2playerplus.exe ok scanned 07.01.2008 20:55:45 File: c:\windows\system32\nview.dll ok scanned 07.01.2008 20:55:45 File: c:\windows\system\shell.dll ok scanned 07.01.2008 20:55:45 File: C:\WINDOWS\system32\rasphone.exe ok scanned 07.01.2008 20:55:45 File: C:\WINDOWS\system32\perfmon.exe ok scanned 07.01.2008 20:55:45 File: c:\programme\cyberlink\powerdvd\powerdvd.exe ok scanned 07.01.2008 20:55:45 File: c:\programme\gemeinsame dateien\microsoft shared\shoebox\piolch.exe ok scanned 07.01.2008 20:55:45 File: c:\windows\system32\msrating.dll ok scanned 07.01.2008 20:55:45 File: c:\programme\windows nt\zubehör\wordpad.exe ok scanned 07.01.2008 20:55:46 File: c:\windows\notepad.exe ok scanned 07.01.2008 20:55:46 File: c:\programme\cyberlink\common\updateipr.exe ok scanned 07.01.2008 20:55:46 File: C:\WINDOWS\system32\wpnpinst.exe ok scanned 07.01.2008 20:55:46 File: c:\windows\system32\shell32.dll ok scanned 07.01.2008 20:55:47 File: c:\windows\system32\drwtsn32.exe ok scanned 07.01.2008 20:55:48 File: c:\windows\system32\userinit.exe ok scanned 07.01.2008 20:55:48 File: c:\windows\system32\crypt32.dll ok scanned 07.01.2008 20:55:48 File: c:\windows\system32\cryptnet.dll ok scanned 07.01.2008 20:55:48 File: c:\windows\system32\cscdll.dll ok scanned 07.01.2008 20:55:48 File: c:\windows\system32\wlnotify.dll ok scanned 07.01.2008 20:55:48 File: c:\windows\system32\sclgntfy.dll ok scanned 07.01.2008 20:55:48 File: c:\windows\system32\wgalogon.dll ok scanned 07.01.2008 20:55:48 File: c:\windows\system32\nvcpl.dll ok scanned 07.01.2008 20:55:48 File: c:\windows\pixart\pac207\monitor.exe ok scanned 07.01.2008 20:55:48 File: c:\programme\gemeinsame dateien\real\update_ob\realsched.exe//# ok scanned 07.01.2008 20:55:48 File: c:\programme\gemeinsame dateien\real\update_ob\realsched.exe//# ok scanned 07.01.2008 20:55:49 File: c:\programme\gemeinsame dateien\real\update_ob\realsched.exe ok scanned 07.01.2008 20:55:49 File: c:\programme\gemeinsame dateien\lexware\update manager\lxupdatemanager.exe ok scanned 07.01.2008 20:55:49 File: c:\programme\quicktime\qttask.exe ok scanned 07.01.2008 20:55:49 File: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\setup_7.0.0.180_07.01.2008_21-47[1].exe ok scanned 07.01.2008 20:55:49 File: c:\windows\system32\ctfmon.exe ok scanned 07.01.2008 20:55:49 File: c:\programme\windows live\messenger\msnmsgr.exe ok scanned 07.01.2008 20:55:49 File: C:\WINDOWS\system32\alrsvc.dll ok scanned 07.01.2008 20:55:49 File: C:\WINDOWS\system32\audiosrv.dll ok scanned 07.01.2008 20:55:49 File: c:\windows\system32\qmgr.dll ok scanned 07.01.2008 20:55:49 File: C:\WINDOWS\system32\browser.dll ok scanned 07.01.2008 20:55:49 File: C:\WINDOWS\system32\cryptsvc.dll ok scanned 07.01.2008 20:55:49 File: C:\WINDOWS\system32\rpcss.dll ok scanned 07.01.2008 20:55:49 File: C:\WINDOWS\system32\dhcpcsvc.dll ok scanned 07.01.2008 20:55:49 File: C:\WINDOWS\system32\dmserver.dll ok scanned 07.01.2008 20:55:49 File: C:\WINDOWS\system32\dnsrslvr.dll ok scanned 07.01.2008 20:55:49 File: C:\WINDOWS\system32\ersvc.dll ok scanned 07.01.2008 20:55:49 File: c:\windows\system32\es.dll ok scanned 07.01.2008 20:55:49 File: C:\WINDOWS\system32\shsvcs.dll ok scanned 07.01.2008 20:55:49 File: C:\WINDOWS\pchealth\helpctr\binaries\pchsvc.dll ok scanned 07.01.2008 20:55:49 File: C:\WINDOWS\system32\hidserv.dll ok scanned 07.01.2008 20:55:49 File: C:\WINDOWS\system32\w3ssl.dll ok scanned 07.01.2008 20:55:49 File: C:\WINDOWS\system32\srvsvc.dll ok scanned 07.01.2008 20:55:49 File: C:\WINDOWS\system32\wkssvc.dll ok scanned 07.01.2008 20:55:49 File: C:\WINDOWS\system32\lmhsvc.dll ok scanned 07.01.2008 20:55:49 File: C:\WINDOWS\system32\msgsvc.dll ok scanned 07.01.2008 20:55:49 File: C:\WINDOWS\system32\netman.dll ok scanned 07.01.2008 20:55:49 File: C:\WINDOWS\system32\mswsock.dll ok scanned 07.01.2008 20:55:49 File: C:\WINDOWS\system32\ntmssvc.dll ok scanned 07.01.2008 20:55:49 File: C:\WINDOWS\system32\rasauto.dll ok scanned 07.01.2008 20:55:49 File: C:\WINDOWS\system32\rasmans.dll ok scanned 07.01.2008 20:55:49 File: C:\WINDOWS\system32\mprdim.dll ok scanned 07.01.2008 20:55:49 File: C:\WINDOWS\system32\schedsvc.dll ok scanned 07.01.2008 20:55:49 File: C:\WINDOWS\system32\seclogon.dll ok scanned 07.01.2008 20:55:49 File: C:\WINDOWS\system32\sens.dll ok scanned 07.01.2008 20:55:49 File: C:\WINDOWS\system32\ipnathlp.dll ok scanned 07.01.2008 20:55:49 File: c:\windows\system32\srsvc.dll ok scanned 07.01.2008 20:55:49 File: C:\WINDOWS\system32\ssdpsrv.dll ok scanned 07.01.2008 20:55:49 File: C:\WINDOWS\system32\wiaservc.dll ok scanned 07.01.2008 20:55:49 File: C:\WINDOWS\system32\tapisrv.dll ok scanned 07.01.2008 20:55:49 File: C:\WINDOWS\system32\termsrv.dll ok scanned 07.01.2008 20:55:49 File: C:\WINDOWS\system32\trkwks.dll ok scanned 07.01.2008 20:55:49 File: C:\WINDOWS\system32\upnphost.dll ok scanned 07.01.2008 20:55:49 File: C:\WINDOWS\system32\uxtuneup.dll ok scanned 07.01.2008 20:55:49 File: c:\windows\system32\w32time.dll ok scanned 07.01.2008 20:55:49 File: C:\WINDOWS\system32\webclnt.dll ok scanned 07.01.2008 20:55:49 File: C:\WINDOWS\system32\wbem\wmisvc.dll ok scanned 07.01.2008 20:55:49 File: c:\windows\system32\mspmsnsv.dll ok scanned 07.01.2008 20:55:49 File: C:\WINDOWS\system32\wscsvc.dll ok scanned 07.01.2008 20:55:49 File: c:\windows\system32\wuauserv.dll ok scanned 07.01.2008 20:55:49 File: C:\WINDOWS\system32\wudfsvc.dll ok scanned 07.01.2008 20:55:49 File: C:\WINDOWS\system32\wzcsvc.dll ok scanned 07.01.2008 20:55:49 File: C:\WINDOWS\system32\xmlprov.dll ok scanned 07.01.2008 20:55:50 File: c:\windows\system32\drivers\acpi.sys ok scanned 07.01.2008 20:55:50 File: c:\windows\system32\drivers\aec.sys ok scanned 07.01.2008 20:55:50 File: C:\WINDOWS\system32\drivers\afd.sys ok scanned 07.01.2008 20:55:50 File: C:\WINDOWS\system32\svchost.exe ok scanned 07.01.2008 20:55:50 File: C:\WINDOWS\system32\alg.exe ok scanned 07.01.2008 20:55:50 File: c:\programme\avira\antivir personaledition classic\sched.exe ok scanned 07.01.2008 20:55:50 File: c:\programme\avira\antivir personaledition classic\avguard.exe ok scanned 07.01.2008 20:55:50 File: c:\windows\system32\drivers\arp1394.sys ok scanned 07.01.2008 20:55:50 File: C:\WINDOWS\microsoft.net\framework\v2.0.50727\aspnet_state.exe packed file PE_Patch 07.01.2008 20:55:50 File: C:\WINDOWS\microsoft.net\framework\v2.0.50727\aspnet_state.exe//PE_Patch ok scanned 07.01.2008 20:55:50 File: C:\WINDOWS\microsoft.net\framework\v2.0.50727\aspnet_state.exe ok scanned 07.01.2008 20:55:50 File: c:\windows\system32\drivers\asyncmac.sys ok scanned 07.01.2008 20:55:50 File: c:\windows\system32\drivers\atapi.sys ok scanned 07.01.2008 20:55:50 File: c:\windows\system32\drivers\atmarpc.sys ok scanned 07.01.2008 20:55:50 File: c:\windows\system32\drivers\audstub.sys ok scanned 07.01.2008 20:55:50 File: c:\programme\avira\antivir personaledition classic\avgio.sys ok scanned 07.01.2008 20:55:50 File: c:\programme\avira\antivir personaledition classic\avgntflt.sys ok scanned 07.01.2008 20:55:50 File: c:\windows\system32\drivers\avipbb.sys ok scanned 07.01.2008 20:55:50 File: c:\programme\avmwlanstick\wlannetservice.exe ok scanned 07.01.2008 20:55:50 File: c:\windows\system32\drivers\avmunet.sys ok scanned 07.01.2008 20:55:50 File: c:\windows\system32\drivers\ccdecode.sys ok scanned 07.01.2008 20:55:50 File: c:\windows\system32\drivers\cdrom.sys ok scanned 07.01.2008 20:55:50 File: C:\WINDOWS\system32\cisvc.exe ok scanned 07.01.2008 20:55:50 File: C:\WINDOWS\system32\clipsrv.exe ok scanned 07.01.2008 20:55:50 File: c:\windows\microsoft.net\framework\v2.0.50727\mscorsvw.exe ok scanned 07.01.2008 20:55:50 File: c:\windows\system32\dllhost.exe ok scanned 07.01.2008 20:55:50 File: c:\windows\system32\drivers\disk.sys ok scanned 07.01.2008 20:55:50 File: C:\WINDOWS\system32\dmadmin.exe ok scanned 07.01.2008 20:55:50 File: c:\windows\system32\drivers\dmboot.sys packed file PE_Patch 07.01.2008 20:55:50 File: c:\windows\system32\drivers\dmboot.sys//PE_Patch ok scanned 07.01.2008 20:55:50 File: c:\windows\system32\drivers\dmboot.sys ok scanned 07.01.2008 20:55:50 File: c:\windows\system32\drivers\dmio.sys ok scanned 07.01.2008 20:55:50 File: c:\windows\system32\drivers\dmload.sys ok scanned 07.01.2008 20:55:50 File: c:\windows\system32\drivers\dmusic.sys ok scanned 07.01.2008 20:55:50 File: c:\windows\system32\drivers\drmkaud.sys ok scanned 07.01.2008 20:55:50 File: c:\windows\system32\drivers\e1e5132.sys ok scanned 07.01.2008 20:55:50 File: c:\windows\system32\drivers\eio.sys ok scanned 07.01.2008 20:55:50 File: C:\WINDOWS\system32\services.exe ok scanned 07.01.2008 20:55:50 File: c:\windows\system32\svchost.exe ok scanned 07.01.2008 20:55:51 File: c:\windows\system32\drivers\fdc.sys ok scanned 07.01.2008 20:55:51 File: c:\windows\system32\drivers\flpydisk.sys ok scanned 07.01.2008 20:55:51 File: c:\windows\system32\drivers\fltmgr.sys packed file PE_Patch 07.01.2008 20:55:51 File: c:\windows\system32\drivers\fltmgr.sys//PE_Patch ok scanned 07.01.2008 20:55:51 File: c:\windows\system32\drivers\fltmgr.sys ok scanned 07.01.2008 20:55:51 File: c:\windows\system32\drivers\ftdisk.sys ok scanned 07.01.2008 20:55:51 File: c:\windows\system32\drivers\fwlanusb.sys ok scanned 07.01.2008 20:55:51 File: c:\windows\system32\drivers\msgpc.sys ok scanned 07.01.2008 20:55:51 File: c:\windows\system32\drivers\hdaudbus.sys packed file PE_Patch 07.01.2008 20:55:51 File: c:\windows\system32\drivers\hdaudbus.sys//PE_Patch ok scanned 07.01.2008 20:55:51 File: c:\windows\system32\drivers\hdaudbus.sys ok scanned 07.01.2008 20:55:51 File: c:\windows\system32\drivers\hidusb.sys ok scanned 07.01.2008 20:55:51 File: c:\windows\system32\drivers\hpzid412.sys ok scanned 07.01.2008 20:55:51 File: c:\windows\system32\drivers\hpzipr12.sys ok scanned 07.01.2008 20:55:51 File: c:\windows\system32\drivers\hpzius12.sys ok scanned 07.01.2008 20:55:51 File: c:\programme\haufe\idesk\ideskservice\ideskservice.exe ok scanned 07.01.2008 20:55:51 File: c:\windows\system32\drivers\http.sys ok scanned 07.01.2008 20:55:51 File: c:\windows\system32\drivers\i8042prt.sys ok scanned 07.01.2008 20:55:51 File: c:\programme\gemeinsame dateien\installshield\driver\1050\intel 32\idrivert.exe ok scanned 07.01.2008 20:55:51 File: c:\windows\system32\drivers\imapi.sys ok scanned 07.01.2008 20:55:51 File: c:\windows\system32\imapi.exe ok scanned 07.01.2008 20:55:51 File: c:\windows\system32\drivers\intelppm.sys ok scanned 07.01.2008 20:55:51 File: c:\windows\system32\drivers\ip6fw.sys ok scanned 07.01.2008 20:55:51 File: c:\windows\system32\drivers\ipfltdrv.sys ok scanned 07.01.2008 20:55:51 File: c:\windows\system32\drivers\ipinip.sys ok scanned 07.01.2008 20:55:51 File: c:\windows\system32\drivers\ipnat.sys ok scanned 07.01.2008 20:55:51 File: c:\windows\system32\drivers\ipsec.sys ok scanned 07.01.2008 20:55:51 File: c:\windows\system32\drivers\irenum.sys ok scanned 07.01.2008 20:55:51 File: c:\windows\system32\drivers\isapnp.sys ok scanned 07.01.2008 20:55:51 File: c:\windows\system32\drivers\kbdclass.sys ok scanned 07.01.2008 20:55:51 File: c:\windows\system32\drivers\kbdhid.sys ok scanned 07.01.2008 20:55:51 File: c:\windows\system32\drivers\klif.sys ok scanned 07.01.2008 20:55:52 File: c:\windows\system32\drivers\kmixer.sys ok scanned 07.01.2008 20:55:52 File: c:\windows\system32\mnmsrvc.exe ok scanned 07.01.2008 20:55:53 File: c:\windows\system32\drivers\mouclass.sys ok scanned 07.01.2008 20:55:53 File: c:\windows\system32\drivers\mouhid.sys ok scanned 07.01.2008 20:55:53 File: c:\windows\system32\drivers\mrxdav.sys packed file PE_Patch 07.01.2008 20:55:53 File: c:\windows\system32\drivers\mrxdav.sys//PE_Patch ok scanned 07.01.2008 20:55:53 File: c:\windows\system32\drivers\mrxdav.sys ok scanned 07.01.2008 20:55:53 File: c:\windows\system32\drivers\mrxsmb.sys packed file PE_Patch 07.01.2008 20:55:53 File: c:\windows\system32\drivers\mrxsmb.sys//PE_Patch ok scanned 07.01.2008 20:55:54 File: c:\windows\system32\drivers\mrxsmb.sys ok scanned 07.01.2008 20:55:54 File: c:\windows\system32\msdtc.exe ok scanned 07.01.2008 20:55:56 File: C:\WINDOWS\system32\msiexec.exe ok scanned 07.01.2008 20:55:56 File: c:\windows\system32\drivers\mskssrv.sys ok scanned 07.01.2008 20:55:57 File: c:\windows\system32\drivers\mspclock.sys ok scanned 07.01.2008 20:55:57 File: c:\windows\system32\drivers\mspqm.sys ok scanned 07.01.2008 20:55:57 File: c:\windows\system32\drivers\mssmbios.sys ok scanned 07.01.2008 20:55:57 File: c:\windows\system32\drivers\mstee.sys ok scanned 07.01.2008 20:55:57 File: c:\windows\system32\drivers\nabtsfec.sys ok scanned 07.01.2008 20:55:57 File: c:\windows\system32\drivers\ndisip.sys ok scanned 07.01.2008 20:55:57 File: c:\windows\system32\drivers\ndistapi.sys ok scanned 07.01.2008 20:55:57 File: c:\windows\system32\drivers\ndisuio.sys ok scanned 07.01.2008 20:55:57 File: c:\windows\system32\drivers\ndiswan.sys ok scanned 07.01.2008 20:55:57 File: c:\windows\system32\drivers\netbios.sys ok scanned 07.01.2008 20:55:57 File: c:\windows\system32\drivers\netbt.sys ok scanned 07.01.2008 20:55:57 File: C:\WINDOWS\system32\netdde.exe ok scanned 07.01.2008 20:55:57 File: C:\WINDOWS\system32\lsass.exe ok scanned 07.01.2008 20:55:57 File: c:\windows\system32\drivers\nic1394.sys ok scanned 07.01.2008 20:55:57 File: c:\windows\system32\drivers\nv4_mini.sys ok scanned 07.01.2008 20:55:57 File: C:\WINDOWS\system32\nvsvc32.exe ok scanned 07.01.2008 20:55:57 File: c:\windows\system32\drivers\nwlnkflt.sys ok scanned 07.01.2008 20:55:57 File: c:\windows\system32\drivers\nwlnkfwd.sys ok scanned 07.01.2008 20:55:57 File: c:\windows\system32\drivers\ohci1394.sys ok scanned 07.01.2008 20:55:57 File: c:\programme\gemeinsame dateien\microsoft shared\source engine\ose.exe ok scanned 07.01.2008 20:55:57 File: c:\windows\system32\drivers\pfc027.sys ok scanned 07.01.2008 20:55:57 File: c:\windows\system32\drivers\parport.sys ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\drivers\pci.sys ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\drivers\pciide.sys ok scanned 07.01.2008 20:55:58 File: C:\WINDOWS\system32\pctspk.exe ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\drivers\philcam2.sys ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\hpzipm12.exe ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\drivers\raspptp.sys ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\drivers\ptilink.sys ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\drivers\ptserlp.sys ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\drivers\rasacd.sys ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\drivers\rasl2tp.sys ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\drivers\raspppoe.sys ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\drivers\raspti.sys ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\drivers\rdbss.sys ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\drivers\rdpcdd.sys ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\sessmgr.exe ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\drivers\redbook.sys ok scanned 07.01.2008 20:55:58 File: C:\WINDOWS\system32\locator.exe ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\rpcss.dll ok scanned 07.01.2008 20:55:58 File: C:\WINDOWS\system32\rsvp.exe ok scanned 07.01.2008 20:55:58 File: C:\WINDOWS\system32\scardsvr.exe ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\drivers\secdrv.sys ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\drivers\serenum.sys ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\drivers\serial.sys ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\drivers\sfng32.sys ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\drivers\slip.sys ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\drivers\splitter.sys ok scanned 07.01.2008 20:55:58 File: C:\WINDOWS\system32\spoolsv.exe ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\drivers\sr.sys packed file PE_Patch 07.01.2008 20:55:58 File: c:\windows\system32\drivers\sr.sys//PE_Patch ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\drivers\sr.sys ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\drivers\srv.sys ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\drivers\ssmdrv.sys ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\drivers\ssm_bus.sys ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\drivers\ssm_mdfl.sys ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\drivers\ssm_mdm.sys ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\drivers\streamip.sys ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\drivers\swenum.sys ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\drivers\swmidi.sys ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\drivers\sysaudio.sys ok scanned 07.01.2008 20:55:58 File: C:\WINDOWS\system32\smlogsvc.exe ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\drivers\tcpip.sys ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\drivers\termdd.sys ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\drivers\update.sys ok scanned 07.01.2008 20:55:58 File: C:\WINDOWS\system32\ups.exe ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\drivers\usbaudio.sys ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\drivers\usbccgp.sys ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\drivers\usbehci.sys ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\drivers\usbhub.sys ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\drivers\usbprint.sys ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\drivers\usbscan.sys ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\drivers\usbstor.sys ok scanned 07.01.2008 20:55:58 File: c:\windows\system32\drivers\usbuhci.sys ok scanned 07.01.2008 20:55:59 File: c:\programme\windows live\messenger\usnsvc.exe ok scanned 07.01.2008 20:55:59 File: C:\WINDOWS\system32\drivers\vga.sys ok scanned 07.01.2008 20:55:59 File: c:\windows\system32\drivers\vmodem.sys ok scanned 07.01.2008 20:55:59 File: c:\windows\system32\drivers\vpctcom.sys ok scanned 07.01.2008 20:55:59 File: C:\WINDOWS\system32\vssvc.exe ok scanned 07.01.2008 20:55:59 File: c:\windows\system32\drivers\vvoice.sys ok scanned 07.01.2008 20:55:59 File: c:\windows\system32\drivers\wanarp.sys ok scanned 07.01.2008 20:55:59 File: c:\windows\system32\drivers\wdmaud.sys ok scanned 07.01.2008 20:55:59 File: c:\programme\windows live\installer\wlsetupsvc.exe ok scanned 07.01.2008 20:55:59 File: c:\windows\system32\wbem\wmiapsrv.exe ok scanned 07.01.2008 20:55:59 File: c:\programme\windows media player\wmpnetwk.exe ok scanned 07.01.2008 20:55:59 File: c:\windows\system32\drivers\wstcodec.sys ok scanned 07.01.2008 20:55:59 File: c:\windows\system32\drivers\wudfpf.sys ok scanned 07.01.2008 20:55:59 File: c:\windows\system32\drivers\wudfrd.sys ok scanned 07.01.2008 20:55:59 File: c:\windows\system32\javasup.vxd ok scanned 07.01.2008 20:55:59 File: c:\windows\system32\autochk.exe ok scanned 07.01.2008 20:55:59 File: c:\windows\inf\unregmp2.exe ok scanned 07.01.2008 20:55:59 File: C:\WINDOWS\system32\shmgrate.exe ok scanned 07.01.2008 20:55:59 File: c:\windows\system32\iedkcs32.dll ok scanned 07.01.2008 20:55:59 File: c:\windows\system32\advpack.dll ok scanned 07.01.2008 20:56:00 File: c:\windows\inf\mswmp.inf ok scanned 07.01.2008 20:56:00 File: C:\WINDOWS\system32\regsvr32.exe ok scanned 07.01.2008 20:56:00 File: C:\WINDOWS\system32\themeui.dll ok scanned 07.01.2008 20:56:00 File: C:\Programme\outlook express\setup50.exe//# ok scanned 07.01.2008 20:56:00 File: C:\Programme\outlook express\setup50.exe ok scanned 07.01.2008 20:56:00 File: c:\windows\system32\user.exe ok scanned 07.01.2008 20:56:00 File: c:\windows\inf\msnetmtg.inf ok scanned 07.01.2008 20:56:00 File: c:\windows\inf\msmsgs.inf ok scanned 07.01.2008 20:56:00 File: c:\windows\inf\wmp11.inf ok scanned 07.01.2008 20:56:00 File: c:\windows\system32\regsvr32.exe ok scanned 07.01.2008 20:56:00 File: C:\WINDOWS\system32\ie4uinit.exe ok scanned 07.01.2008 20:56:00 File: c:\windows\system32\mscories.dll ok scanned 07.01.2008 20:56:00 File: c:\windows\system32\comm.drv ok scanned 07.01.2008 20:56:00 File: c:\windows\system\vga.drv ok scanned 07.01.2008 20:56:00 File: c:\windows\system\mmsystem.dll ok scanned 07.01.2008 20:56:00 File: c:\windows\system\keyboard.drv ok scanned 07.01.2008 20:56:00 File: c:\windows\system\mouse.drv ok scanned 07.01.2008 20:56:00 File: c:\windows\system\wfwnet.drv ok scanned 07.01.2008 20:56:00 File: c:\windows\system32\progman.exe ok scanned 07.01.2008 20:56:00 File: c:\windows\system\sound.drv ok scanned 07.01.2008 20:56:00 File: c:\windows\system\system.drv ok scanned 07.01.2008 20:56:00 File: c:\windows\system32\midimap.dll ok scanned 07.01.2008 20:56:00 File: c:\windows\system32\imaadp32.acm ok scanned 07.01.2008 20:56:00 File: c:\windows\system32\msadp32.acm ok scanned 07.01.2008 20:56:00 File: c:\windows\system32\msg711.acm ok scanned 07.01.2008 20:56:01 File: c:\windows\system32\msgsm32.acm ok scanned 07.01.2008 20:56:01 File: c:\windows\system32\tssoft32.acm ok scanned 07.01.2008 20:56:01 File: c:\windows\system32\iccvid.dll ok scanned 07.01.2008 20:56:01 File: c:\windows\system32\msh263.drv ok scanned 07.01.2008 20:56:01 File: c:\windows\system32\ir32_32.dll ok scanned 07.01.2008 20:56:01 File: c:\windows\system32\ir41_32.ax ok scanned 07.01.2008 20:56:01 File: c:\windows\system32\iyuv_32.dll ok scanned 07.01.2008 20:56:01 File: c:\windows\system32\msrle32.dll ok scanned 07.01.2008 20:56:01 File: c:\windows\system32\msvidc32.dll ok scanned 07.01.2008 20:56:01 File: c:\windows\system32\msyuv.dll ok scanned 07.01.2008 20:56:01 File: c:\windows\system32\tsbyuv.dll ok scanned 07.01.2008 20:56:01 File: c:\windows\system32\msacm32.drv ok scanned 07.01.2008 20:56:01 File: c:\windows\system32\msg723.acm ok scanned 07.01.2008 20:56:01 File: c:\windows\system32\msh261.drv ok scanned 07.01.2008 20:56:01 File: c:\windows\system32\msaud32.acm ok scanned 07.01.2008 20:56:01 File: c:\windows\system32\sl_anet.acm ok scanned 07.01.2008 20:56:01 File: c:\windows\system32\iac25_32.ax ok scanned 07.01.2008 20:56:01 File: c:\windows\system32\ir50_32.dll ok scanned 07.01.2008 20:56:01 File: c:\windows\system32\l3codeca.acm ok scanned 07.01.2008 20:56:01 File: c:\windows\system32\wdmaud.drv ok scanned 07.01.2008 20:56:01 File: c:\windows\system32\vfwwdm32.dll ok scanned 07.01.2008 20:56:01 File: c:\windows\system32\vdowave.drv ok scanned 07.01.2008 20:56:01 File: c:\windows\system32\lhacm.acm ok scanned 07.01.2008 20:56:01 File: c:\windows\system32\tr2032.dll ok scanned 07.01.2008 20:56:01 File: c:\windows\system32\mpg4c32.dll ok scanned 07.01.2008 20:56:01 File: c:\windows\system32\vct3216.acm ok scanned 07.01.2008 20:56:01 File: c:\windows\system32\ivvideo.dll ok scanned 07.01.2008 20:56:01 File: c:\windows\system32\sirenacm.dll ok scanned 07.01.2008 20:56:02 File: C:\WINDOWS\system32\webcheck.dll ok scanned 07.01.2008 20:56:02 File: c:\windows\system32\stobject.dll ok scanned 07.01.2008 20:56:02 File: c:\windows\system32\wpdshserviceobj.dll ok scanned 07.01.2008 20:56:02 File: c:\windows\system32\logon.scr ok scanned 07.01.2008 20:56:02 File: C:\WINDOWS\system32\logon.scr ok scanned 07.01.2008 20:56:02 File: C:\WINDOWS\system32\browseui.dll ok scanned 07.01.2008 20:56:02 File: c:\windows\system32\mmsys.cpl ok scanned 07.01.2008 20:56:02 File: c:\windows\system32\icmui.dll ok scanned 07.01.2008 20:56:02 File: c:\windows\system32\rshx32.dll ok scanned 07.01.2008 20:56:02 File: c:\windows\system32\docprop.dll ok scanned 07.01.2008 20:56:02 File: c:\windows\system32\ntshrui.dll ok scanned 07.01.2008 20:56:03 File: c:\windows\system32\deskadp.dll ok scanned 07.01.2008 20:56:03 File: c:\windows\system32\deskmon.dll ok scanned 07.01.2008 20:56:03 File: c:\windows\system32\dssec.dll ok scanned 07.01.2008 20:56:03 File: c:\windows\system32\slayerxp.dll ok scanned 07.01.2008 20:56:03 File: c:\windows\system32\shscrap.dll ok scanned 07.01.2008 20:56:03 File: c:\windows\system32\diskcopy.dll ok scanned 07.01.2008 20:56:03 File: c:\windows\system32\ntlanui2.dll ok scanned 07.01.2008 20:56:04 File: C:\WINDOWS\system32\icmui.dll ok scanned 07.01.2008 20:56:04 File: c:\windows\system32\printui.dll ok scanned 07.01.2008 20:56:04 File: c:\windows\system32\dskquoui.dll ok scanned 07.01.2008 20:56:04 File: c:\windows\system32\syncui.dll ok scanned 07.01.2008 20:56:04 File: c:\windows\system32\hticons.dll ok scanned 07.01.2008 20:56:05 File: c:\windows\system32\fontext.dll ok scanned 07.01.2008 20:56:05 File: c:\windows\system32\deskperf.dll ok scanned 07.01.2008 20:56:05 File: c:\windows\system32\wiashext.dll ok scanned 07.01.2008 20:56:06 File: c:\windows\system32\remotepg.dll ok scanned 07.01.2008 20:56:06 File: c:\windows\system32\wshext.dll ok scanned 07.01.2008 20:56:06 File: c:\programme\gemeinsame dateien\system\ole db\oledb32.dll ok scanned 07.01.2008 20:56:06 File: c:\windows\system32\mstask.dll ok scanned 07.01.2008 20:56:06 File: C:\WINDOWS\system32\shdocvw.dll ok scanned 07.01.2008 20:56:06 File: c:\windows\system32\wuaucpl.cpl ok scanned 07.01.2008 20:56:07 File: C:\WINDOWS\system32\twext.dll ok scanned 07.01.2008 20:56:07 File: C:\WINDOWS\system32\shmedia.dll ok scanned 07.01.2008 20:56:09 File: c:\windows\system32\shdocvw.dll ok scanned 07.01.2008 20:56:10 File: c:\windows\system32\sendmail.dll ok scanned 07.01.2008 20:56:12 File: C:\WINDOWS\system32\occache.dll ok scanned 07.01.2008 20:56:12 File: C:\WINDOWS\system32\appwiz.cpl ok scanned 07.01.2008 20:56:12 File: C:\WINDOWS\system32\shimgvw.dll ok scanned 07.01.2008 20:56:13 File: C:\WINDOWS\system32\netplwiz.dll ok scanned 07.01.2008 20:56:13 File: C:\WINDOWS\system32\zipfldr.dll ok scanned 07.01.2008 20:56:14 File: C:\WINDOWS\system32\extmgr.dll ok scanned 07.01.2008 20:56:15 File: c:\windows\system32\msieftp.dll ok scanned 07.01.2008 20:56:15 File: c:\windows\system32\docprop2.dll ok scanned 07.01.2008 20:56:15 File: C:\WINDOWS\system32\dsquery.dll ok scanned 07.01.2008 20:56:15 File: C:\WINDOWS\system32\dsuiext.dll ok scanned 07.01.2008 20:56:16 File: C:\WINDOWS\system32\mydocs.dll ok scanned 07.01.2008 20:56:16 File: C:\WINDOWS\system32\cscui.dll ok scanned 07.01.2008 20:56:16 File: c:\windows\msagent\agentpsh.dll ok scanned 07.01.2008 20:56:17 File: c:\windows\system32\dfsshlex.dll ok scanned 07.01.2008 20:56:17 File: C:\WINDOWS\system32\photowiz.dll ok scanned 07.01.2008 20:56:18 File: C:\WINDOWS\system32\mmcshext.dll ok scanned 07.01.2008 20:56:18 File: c:\windows\system32\cabview.dll ok scanned 07.01.2008 20:56:18 File: c:\programme\outlook express\wabfind.dll ok scanned 07.01.2008 20:56:18 File: c:\windows\system32\wmpshell.dll ok scanned 07.01.2008 20:56:18 File: c:\windows\system32\nvshell.dll ok scanned 07.01.2008 20:56:18 File: c:\windows\system32\mscoree.dll ok scanned 07.01.2008 20:56:18 File: c:\programme\windows live\messenger\fsshext.8.5.1302.1018.dll ok scanned 07.01.2008 20:56:18 File: c:\windows\system32\dfshim.dll ok scanned 07.01.2008 20:56:18 File: C:\WINDOWS\system32\audiodev.dll ok scanned 07.01.2008 20:56:18 File: C:\WINDOWS\system32\wpdshext.dll ok scanned 07.01.2008 20:56:19 File: c:\programme\real\realplayer\rpshell.dll ok scanned 07.01.2008 20:56:19 File: c:\programme\tuneup utilities 2007\sdshelex-win32.dll ok scanned 07.01.2008 20:56:19 File: c:\programme\avira\antivir personaledition classic\shlext.dll ok scanned 07.01.2008 20:56:19 File: c:\programme\windows live toolbar\msntb.dll ok scanned 07.01.2008 20:56:19 File: c:\programme\windows live toolbar\components\de-de\msntabres.dll.mui ok scanned 07.01.2008 20:56:19 File: c:\programme\adobe\acrobat 6.0\reader\activex\acroiehelper.dll ok scanned 07.01.2008 20:56:19 File: c:\programme\gemeinsame dateien\microsoft shared\windows live\windowslivelogin.dll ok scanned 07.01.2008 20:56:20 File: c:\programme\netshow services\tools\asfindxr.exe ok scanned 07.01.2008 20:56:20 File: c:\programme\ahead\nero backitup\backitup.exe ok scanned 07.01.2008 20:56:20 File: c:\programme\msn gaming zone\windows\bckgzm.exe ok scanned 07.01.2008 20:56:20 File: c:\programme\msn gaming zone\windows\chkrzm.exe ok scanned 07.01.2008 20:56:20 File: c:\windows\system32\cmcfg32.dll ok scanned 07.01.2008 20:56:20 File: c:\programme\netmeeting\conf.exe ok scanned 07.01.2008 20:56:21 File: c:\programme\windows nt\dialer.exe ok scanned 07.01.2008 20:56:23 File: c:\programme\lexware\2006-2007\elfo2006.exe ok scanned 07.01.2008 20:56:23 File: c:\programme\haufe\haufereader\haufereader.exe ok scanned 07.01.2008 20:56:23 File: c:\windows\pchealth\helpctr\binaries\helpctr.exe ok scanned 07.01.2008 20:56:23 File: c:\programme\trend micro\hijackthis\hijackthis.exe packed file PE_Patch.UPX 07.01.2008 20:56:23 File: c:\programme\trend micro\hijackthis\hijackthis.exe//PE_Patch.UPX packed file UPX 07.01.2008 20:56:24 File: c:\programme\trend micro\hijackthis\hijackthis.exe//PE_Patch.UPX//UPX ok scanned 07.01.2008 20:56:24 File: c:\programme\trend micro\hijackthis\hijackthis.exe//PE_Patch.UPX ok scanned 07.01.2008 20:56:24 File: c:\programme\trend micro\hijackthis\hijackthis.exe ok scanned |
|
|
||
C:\WINDOWS\system32\yobkvnsc.dll
C:\WINDOWS\system32\zxrmblkx.exe
C:\WINDOWS\system32\drivers\gjebhpfr.sys
__________
MfG Argus