Virus - total !

#0
01.12.2007, 17:13
Ehrenmitglied
Avatar Argus

Beiträge: 6028
#61 Schau mal ob diese Daten noch da sind
C:\WINDOWS\system32\yobkvnsc.dll
C:\WINDOWS\system32\zxrmblkx.exe
C:\WINDOWS\system32\drivers\gjebhpfr.sys
__________
MfG Argus
Seitenanfang Seitenende
01.12.2007, 17:22
Member

Themenstarter

Beiträge: 262
#62 Nein leider nicht zu finden
Seitenanfang Seitenende
01.12.2007, 17:37
Member

Themenstarter

Beiträge: 262
#63 ich habe sie gerade über virus total versucht zu finden, vergeblich
Seitenanfang Seitenende
01.12.2007, 17:44
Member

Themenstarter

Beiträge: 262
#64 Arnold bist Du noch da oder wollen wir morgen weitermachen.
Seitenanfang Seitenende
01.12.2007, 17:47
Ehrenmitglied
Avatar Argus

Beiträge: 6028
#65 Du musst glücklich sein dass die nicht zu finden sind

Zitat

Nein leider nicht zu finden
Poste nochmal ein log von Hijack This

Systemwiederherstellung
Arbeitsplatz>>Rechtsklick, dann auf Eigenschaften>>Reiter Systemwiederherstellung>>
Häkchen setzen bei Systemwiederherstellung auf allen Laufwerken deaktivieren.
Neu Starten
Dann wieder aktivieren (Häkchen entfernen)


Entferne DrWeb und installiere neu http://board.protecus.de/t29350.htm und scanne
__________
MfG Argus
Seitenanfang Seitenende
07.12.2007, 12:18
Member

Themenstarter

Beiträge: 262
#66 Hallo

Hier ist ein log

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:17:04, on 07.12.2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programme\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Programme\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Programme\avmwlanstick\WlanNetService.exe
C:\WINDOWS\system32\pctspk.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\Explorer.EXE
C:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe
C:\Programme\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Programme\Zone Labs\ZoneAlarm\zlclient.exe
C:\Programme\QuickTime\qttask.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Programme\Skype\Phone\Skype.exe
C:\Programme\internet explorer\iexplore.exe
C:\Programme\Gemeinsame Dateien\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Programme\Windows Live Toolbar\msn_sl.exe
C:\Programme\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.lycos.de/
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = fritz.box
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Programme\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Programme\Windows Live Toolbar\msntb.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [TkBellExe] "C:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [avgnt] "C:\Programme\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Programme\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Programme\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [IntelAudioStudio] "C:\Programme\Intel Audio Studio\IntelAudioStudio.exe" BOOT
O4 - HKCU\..\Run: [msnmsgr] "C:\Programme\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Skype] "C:\Programme\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOKALER DIENST')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETZWERKDIENST')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: &Search - http://kp.bar.need2find.com/KP/menusearch.html?p=KP
O8 - Extra context menu item: &Windows Live Search - res://C:\Programme\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: In neuer Registerkarte im Hintergrund öffnen - res://C:\Programme\Windows Live Toolbar\Components\de-de\msntabres.dll.mui/229?8a2b2848eaca4216b2237966fce29887
O8 - Extra context menu item: In neuer Registerkarte im Vordergrund öffnen - res://C:\Programme\Windows Live Toolbar\Components\de-de\msntabres.dll.mui/230?8a2b2848eaca4216b2237966fce29887
O18 - Protocol: haufereader - (no CLSID) - (no file)
O23 - Service: AntiVir PersonalEdition Classic Planer (AntiVirScheduler) - Avira GmbH - C:\Programme\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Programme\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: AVM WLAN Connection Service - AVM Berlin - C:\Programme\avmwlanstick\WlanNetService.exe
O23 - Service: Haufe iDesk-Service in C:\Programme\Haufe\iDesk\iDeskService\Zope (HRService) - Unknown owner - C:\Programme\Haufe\iDesk\iDeskService\iDeskService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programme\Gemeinsame Dateien\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PCTEL Speaker Phone (Pctspk) - PCtel, Inc. - C:\WINDOWS\system32\pctspk.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

--
End of file - 4921 bytes
Seitenanfang Seitenende
07.12.2007, 12:43
Member

Themenstarter

Beiträge: 262
#67 Mit Dr.Web gescant er zeigte mir an

Alle laufwerke
478 Files gescan - no virus.
Seitenanfang Seitenende
10.12.2007, 20:21
Member

Themenstarter

Beiträge: 262
#68 Der Computer ist nicht in ordnung, Internet Sites öffnen sich sehr langsam.
Webcam ist zwar angeschlossen und alles ist vorbereitet aber sie wird nicht erkannt.
Gruss Suzi
Seitenanfang Seitenende
06.01.2008, 14:19
Member

Themenstarter

Beiträge: 262
#69 Ich kann nicht mehr!

Hier nochmal die letzten Logfiles, Sigma Audio ist gelöscht,
Outlook Express ist gelöscht , es hatte seit monaten keine Mails empfangen und versendet. Hier ist der Wurm drin, der Rechner ist super langsam.

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 14:14:50, on 06.01.2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programme\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Programme\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Programme\avmwlanstick\WlanNetService.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\pctspk.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\PixArt\PAC207\Monitor.exe
C:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe
C:\Programme\Gemeinsame Dateien\Lexware\Update Manager\LxUpdateManager.exe
C:\Programme\QuickTime\qttask.exe
C:\Programme\Windows Live\Messenger\msnmsgr.exe
C:\Programme\Gemeinsame Dateien\Lexware\LxWebAccess\LxWebAccess.exe
C:\Programme\internet explorer\iexplore.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Programme\Windows Live\Messenger\usnsvc.exe
C:\Programme\Gemeinsame Dateien\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Programme\Trend Micro\HijackThis\HijackThis.exe
C:\Programme\Windows Live Toolbar\msn_sl.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.lycos.de/
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = fritz.box
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Programme\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Programme\Windows Live Toolbar\msntb.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [Monitor] C:\WINDOWS\PixArt\PAC207\Monitor.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [LexwareInfoService] C:\Programme\Gemeinsame Dateien\Lexware\Update Manager\LxUpdateManager.exe /autostart
O4 - HKLM\..\Run: [QuickTime Task] "C:\Programme\QuickTime\qttask.exe" -atboottime
O4 - HKCU\..\Run: [msnmsgr] "C:\Programme\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOKALER DIENST')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETZWERKDIENST')
O4 - HKUS\S-1-5-21-1612816764-2923948185-4025840653-1005\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'ROBERT SHALABI')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: &Search - http://kp.bar.need2find.com/KP/menusearch.html?p=KP
O8 - Extra context menu item: &Windows Live Search - res://C:\Programme\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: In neuer Registerkarte im Hintergrund öffnen - res://C:\Programme\Windows Live Toolbar\Components\de-de\msntabres.dll.mui/229?8a2b2848eaca4216b2237966fce29887
O8 - Extra context menu item: In neuer Registerkarte im Vordergrund öffnen - res://C:\Programme\Windows Live Toolbar\Components\de-de\msntabres.dll.mui/230?8a2b2848eaca4216b2237966fce29887
O18 - Protocol: haufereader - (no CLSID) - (no file)
O23 - Service: AntiVir PersonalEdition Classic Planer (AntiVirScheduler) - Avira GmbH - C:\Programme\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Programme\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: AVM WLAN Connection Service - AVM Berlin - C:\Programme\avmwlanstick\WlanNetService.exe
O23 - Service: Haufe iDesk-Service in C:\Programme\Haufe\iDesk\iDeskService\Zope (HRService) - Unknown owner - C:\Programme\Haufe\iDesk\iDeskService\iDeskService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programme\Gemeinsame Dateien\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PCTEL Speaker Phone (Pctspk) - PCtel, Inc. - C:\WINDOWS\system32\pctspk.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

--
End of file - 5106 bytes


Gruss Susan
Seitenanfang Seitenende
06.01.2008, 15:16
Ehrenmitglied
Avatar Pinguin

Beiträge: 1441
#70 Hallo r123s
ich häng mich mal mit rein:
beginne bitte mit dem Log von Combofix
http://www.virus-protect.org/artikel/tools/combofix.html

Gruss (Sabina)
__________
Gruss
Pinguin

bin dabei, meine Seite + Proggies zu aktualisieren: http://www.virus-protect.org/
Seitenanfang Seitenende
07.01.2008, 17:22
Member

Themenstarter

Beiträge: 262
#71 ComboFix 08-01-07.5 - SUZAN SHALABI 2008-01-07 17:16:16.7 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1031.18.622 [GMT 1:00]
ausgeführt von:: C:\Dokumente und Einstellungen\SUZAN SHALABI\Eigene Dateien\download\ComboFix.exe
* Neuer Wiederherstellungspunkt wurde erstellt
.

(((((((((((((((((((((((((((((((((((( Weitere Löschungen ))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\WINDOWS\Fonts\acrsecB.fon
C:\WINDOWS\system32\twptptbg.ini

.
((((((((((((((((((((((( Dateien erstellt von 2007-12-07 bis 2008-01-07 ))))))))))))))))))))))))))))))
.

2008-01-07 17:12 . 2008-01-07 17:12 54,156 --ah----- C:\WINDOWS\QTFont.qfn
2008-01-07 17:12 . 2008-01-07 17:12 1,409 --a------ C:\WINDOWS\QTFont.for
2008-01-06 13:47 . 2008-01-06 13:47 <DIR> d-------- C:\2bd2932915fca7b132838576
2007-12-30 18:02 . 2008-01-06 13:10 <DIR> d-------- C:\Programme\Bingo RM to MP3 Wave Converter
2007-12-30 17:58 . 2008-01-06 13:12 <DIR> d-------- C:\Programme\RM to MP3 Converter
2007-12-29 13:14 . 2008-01-06 13:10 <DIR> d-------- C:\Programme\Blacky3
2007-12-28 21:11 . 2007-12-28 21:11 <DIR> d-------- C:\Programme\MediaSupplyCodec
2007-12-28 21:08 . 2008-01-06 13:10 <DIR> d-------- C:\Programme\Bingo RM MP3 to Audio CD Maker
2007-12-28 21:01 . 2008-01-06 13:14 <DIR> d-------- C:\Programme\Speedy RM to MP3 Converter
2007-12-28 20:49 . 2007-12-28 21:04 <DIR> d-------- C:\Programme\Real Alternative
2007-12-28 20:36 . 2007-12-28 20:37 <DIR> d-------- C:\Programme\Acoustica MP3 CD Burner
2007-12-28 20:36 . 2007-12-28 20:36 <DIR> d-------- C:\Dokumente und Einstellungen\SUZAN SHALABI\Anwendungsdaten\Acoustica
2007-12-28 20:36 . 2002-11-05 15:16 57,344 --a------ C:\WINDOWS\system32\Wnaspint.dll
2007-12-26 11:28 . 2007-12-26 11:28 <DIR> d-------- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\NCH Swift Sound
2007-12-26 11:22 . 2007-12-26 11:22 <DIR> d-------- C:\Dokumente und Einstellungen\SUZAN SHALABI\Anwendungsdaten\NCH Swift Sound
2007-12-26 11:14 . 2008-01-06 13:14 <DIR> d-------- C:\Programme\NCH Swift Sound
2007-12-24 10:22 . 2008-01-07 13:56 230,432 --a------ C:\PA207.DAT
2007-12-21 08:46 . 2007-12-21 08:46 <DIR> d-------- C:\WINDOWS\PixArt
2007-12-21 08:46 . 2007-12-21 08:46 <DIR> d-------- C:\Programme\Gemeinsame Dateien\PAC207
2007-12-21 08:46 . 2006-11-03 10:59 48,128 --a------ C:\WINDOWS\system32\Remove.exe
2007-12-21 08:46 . 2007-01-04 01:20 314 --a------ C:\WINDOWS\system32\Remover.ini
2007-12-21 08:44 . 2007-12-21 08:46 <DIR> d-------- C:\Programme\Trust
2007-12-21 08:43 . 2007-12-21 08:46 <DIR> d-------- C:\WINDOWS\Downloaded Installations
2007-12-19 13:11 . 1998-10-29 16:45 306,688 --a------ C:\WINDOWS\IsUninst.exe
2007-12-19 13:07 . 2007-12-19 13:08 <DIR> d-------- C:\WINDOWS\system32\NtmsData
2007-12-19 13:03 . 2007-12-19 13:25 113,952 --a------ C:\WINDOWS\hpoins07.dat
2007-12-19 13:03 . 2005-05-24 07:50 21,124 --------- C:\WINDOWS\hpomdl07.dat
2007-12-07 12:33 . 2007-12-07 12:33 <DIR> d-------- C:\Dokumente und Einstellungen\SUZAN SHALABI\DoctorWeb

.
(((((((((((((((((((((((((((((((((((( Find3M Bericht ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-01-06 17:20 --------- d-----w C:\Programme\microsoft frontpage
2008-01-04 14:55 --------- d-----w C:\Dokumente und Einstellungen\SUZAN SHALABI\Anwendungsdaten\AdobeUM
2007-12-30 09:27 --------- d-----w C:\Programme\TuneUp Utilities 2007
2007-12-23 08:31 --------- d-----w C:\Programme\Gemeinsame Dateien\Lexware
2007-12-23 08:24 --------- d--h--w C:\Programme\InstallShield Installation Information
2007-12-19 12:15 --------- d-----w C:\Programme\Hewlett-Packard
2007-12-19 12:00 --------- d-----w C:\Dokumente und Einstellungen\SUZAN SHALABI\Anwendungsdaten\Skype
2007-11-29 13:46 --------- d-----w C:\Programme\goop
2007-11-29 13:46 --------- d-----w C:\Programme\eMule
2007-11-22 17:26 --------- d-----w C:\Programme\Windows Live Toolbar
2007-11-21 16:50 --------- d-----w C:\Programme\Avira
2007-11-21 16:50 --------- d-----w C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Avira
2007-11-20 17:10 --------- dcsh--w C:\Programme\Gemeinsame Dateien\WindowsLiveInstaller
2007-11-20 17:10 --------- d-----w C:\Programme\Windows Live
2007-11-20 17:05 --------- d-----w C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\WLInstaller
2007-11-13 22:39 344,064 ----a-w C:\WINDOWS\system32\BH_DATA110VC8.dll
2007-11-13 12:42 81,920 ----a-w C:\WINDOWS\system32\LxUISettings10VC8.dll
2007-11-13 12:42 81,920 ----a-w C:\WINDOWS\system32\LxCI12.dll
2007-11-13 12:42 716,800 ----a-w C:\WINDOWS\system32\lxter20VC8.dll
2007-11-13 12:42 69,632 ----a-w C:\WINDOWS\system32\PXTTool65VC8.dll
2007-11-13 12:42 61,440 ----a-w C:\WINDOWS\system32\LXCurr12VC8.dll
2007-11-13 12:42 552,960 ----a-w C:\WINDOWS\system32\zvkonline65VC8.dll
2007-11-13 12:42 5,701,632 ----a-w C:\WINDOWS\system32\LxXtreme50VC8.dll
2007-11-13 12:42 319,488 ----a-w C:\WINDOWS\system32\LxImport65VC8.dll
2007-11-13 12:42 27,648 ----a-w C:\WINDOWS\system32\LXTPSW20VC8.dll
2007-11-13 12:42 241,664 ----a-w C:\WINDOWS\system32\LXBtr65VC8.dll
2007-11-13 12:42 188,416 ----a-w C:\WINDOWS\system32\LXDasi65VC8.dll
2007-11-13 12:42 180,224 ----a-w C:\WINDOWS\system32\LxBasics65VC8.dll
2007-11-13 12:42 131,072 ----a-w C:\WINDOWS\system32\LxMail30VC8.dll
2007-11-13 12:42 1,556,480 ----a-w C:\WINDOWS\system32\LxXtreme40VC8.dll
2007-11-13 12:42 1,191,936 ----a-w C:\WINDOWS\system32\LXtool65VC8.dll
2007-11-13 11:38 1,409,024 ----a-w C:\WINDOWS\system32\FormAssi50.dll
2007-11-13 10:25 20,480 ----a-w C:\WINDOWS\system32\drivers\secdrv.sys
2007-11-13 08:39 57,344 ----a-w C:\WINDOWS\system32\FKStampPainter20.dll
2007-11-12 15:32 --------- d-----w C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\MailFrontier
2007-11-12 15:13 --------- d-----w C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Prevx
2007-11-09 14:18 208,896 ----a-w C:\WINDOWS\system32\LXPrnUtil10.dll
2007-11-09 14:15 303,104 ----a-w C:\WINDOWS\system32\dnt27VC8.dll
2007-11-09 14:12 90,112 ----a-w C:\WINDOWS\system32\dntvmc27VC8.dll
2007-11-09 14:12 86,016 ----a-w C:\WINDOWS\system32\dntvm27VC8.dll
2007-11-09 13:22 --------- d-----w C:\Programme\Trend Micro
2007-10-29 22:42 1,293,312 ----a-w C:\WINDOWS\system32\quartz.dll
2007-10-25 08:28 222,720 ----a-w C:\WINDOWS\system32\wmasf.dll
2007-10-22 12:20 134,144 ----a-w C:\WINDOWS\system32\LexEBankCommon10VC8.dll
2007-10-22 11:43 90,112 ----a-w C:\WINDOWS\system32\lxdao11VC8.dll
2007-10-22 11:43 184,320 ----a-w C:\WINDOWS\system32\LxDBAL11VC8.dll
2007-10-22 11:43 118,784 ----a-w C:\WINDOWS\system32\LxOdbc11VC8.dll
2007-10-18 10:31 51,224 ----a-w C:\WINDOWS\system32\sirenacm.dll
2006-06-30 10:26 774,144 ----a-w C:\Programme\RngInterstitial.dll
.

((((((((((((((((((((((((((((( snapshot@2007-12-01_15.03.03.45 )))))))))))))))))))))))))))))))))))))))))
.
- 2007-12-01 10:28:04 1,257,472 ----a-w C:\WINDOWS\assembly\GAC\System.Web\1.0.5000.0__b03f5f7f11d50a3a\System.Web.dll
+ 2007-12-02 11:03:45 1,265,664 ----a-w C:\WINDOWS\assembly\GAC\System.Web\1.0.5000.0__b03f5f7f11d50a3a\System.Web.dll
- 2007-12-01 10:28:06 1,224,704 ----a-w C:\WINDOWS\assembly\GAC\System\1.0.5000.0__b77a5c561934e089\System.dll
+ 2007-12-02 11:03:46 1,232,896 ----a-w C:\WINDOWS\assembly\GAC\System\1.0.5000.0__b77a5c561934e089\System.dll
+ 2007-12-05 07:49:25 61,440 ----a-w C:\WINDOWS\assembly\NativeImages1_v1.1.4322\CustomMarshalers\1.0.5000.0__b03f5f7f11d50a3a_cd0a419a\CustomMarshalers.dll
+ 2007-12-05 07:50:29 3,391,488 ----a-w C:\WINDOWS\assembly\NativeImages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_8924ca82\mscorlib.dll
+ 2007-12-05 07:50:18 1,466,368 ----a-w C:\WINDOWS\assembly\NativeImages1_v1.1.4322\System.Design\1.0.5000.0__b03f5f7f11d50a3a_b1c39f6d\System.Design.dll
+ 2007-12-05 07:49:37 90,112 ----a-w C:\WINDOWS\assembly\NativeImages1_v1.1.4322\System.Drawing.Design\1.0.5000.0__b03f5f7f11d50a3a_d79e584a\System.Drawing.Design.dll
+ 2007-12-05 07:50:23 835,584 ----a-w C:\WINDOWS\assembly\NativeImages1_v1.1.4322\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a_783326cc\System.Drawing.dll
+ 2007-12-05 07:49:58 3,018,752 ----a-w C:\WINDOWS\assembly\NativeImages1_v1.1.4322\System.Windows.Forms\1.0.5000.0__b77a5c561934e089_c9935af7\System.Windows.Forms.dll
+ 2007-12-05 07:50:09 2,088,960 ----a-w C:\WINDOWS\assembly\NativeImages1_v1.1.4322\System.Xml\1.0.5000.0__b77a5c561934e089_f0cbbb15\System.Xml.dll
+ 2007-12-02 11:03:56 1,966,080 ----a-w C:\WINDOWS\assembly\NativeImages1_v1.1.4322\System\1.0.5000.0__b77a5c561934e089_4789feb5\System.dll
+ 2007-12-21 07:46:15 10,134 ----a-r C:\WINDOWS\Installer\{30837A37-8F9F-4817-8B52-C501B67DC3BE}\ARPPRODUCTICON.exe
+ 2007-12-23 08:41:01 10,134 ----a-r C:\WINDOWS\Installer\{539B0A82-CF4A-42CC-A46C-F417099FB0D7}\ARPPRODUCTICON.exe
+ 2007-12-23 08:41:01 40,960 ----a-r C:\WINDOWS\Installer\{539B0A82-CF4A-42CC-A46C-F417099FB0D7}\DTABEG_1.EXE
+ 2007-12-23 08:40:16 10,134 ----a-r C:\WINDOWS\Installer\{8B50F367-2686-4256-BA05-708B299961DF}\ARPPRODUCTICON.exe
+ 2007-12-23 08:23:50 86,016 ----a-r C:\WINDOWS\Installer\{9353F6E9-13B7-43B4-8FA5-CB46CA22671B}\ARPPRODUCTICON.exe
+ 2007-12-23 08:23:50 86,016 ----a-r C:\WINDOWS\Installer\{9353F6E9-13B7-43B4-8FA5-CB46CA22671B}\Formular.exe_135E619C03034DADABDAF8B9FECAF1F4.exe
+ 2007-12-23 08:23:50 86,016 ----a-r C:\WINDOWS\Installer\{9353F6E9-13B7-43B4-8FA5-CB46CA22671B}\Formular.exe1_135E619C03034DADABDAF8B9FECAF1F4.exe
+ 2007-12-23 08:35:30 10,134 ----a-r C:\WINDOWS\Installer\{BEDFB0D0-CA1E-4CBA-9664-B25A74019D0C}\ARPPRODUCTICON.exe
+ 2007-12-23 08:35:30 73,728 ----a-r C:\WINDOWS\Installer\{BEDFB0D0-CA1E-4CBA-9664-B25A74019D0C}\NewShortcut1.E478996E_1F9C_4900_988E_F8A470FEA557.exe
- 2004-07-15 00:49:16 258,048 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_isapi.dll
+ 2007-04-13 20:30:52 258,048 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_isapi.dll
- 2004-07-15 00:49:22 32,768 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_wp.exe
+ 2007-04-13 20:30:52 32,768 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_wp.exe
- 2004-07-14 23:32:22 81,920 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\CORPerfMonExt.dll
+ 2007-04-13 19:57:52 81,920 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\CORPerfMonExt.dll
- 2003-02-20 18:09:14 86,016 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorie.dll
+ 2007-04-13 19:57:58 86,016 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorie.dll
- 2004-07-14 23:25:06 315,392 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorjit.dll
+ 2007-04-13 19:56:30 315,392 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorjit.dll
- 2004-07-14 23:33:04 102,400 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorld.dll
+ 2007-04-13 19:58:00 102,400 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorld.dll
- 2004-07-15 13:29:02 2,138,112 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorlib.dll
+ 2007-04-13 19:50:46 2,142,208 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorlib.dll
- 2003-02-20 18:09:18 77,824 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorsn.dll
+ 2007-04-13 19:58:02 77,824 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorsn.dll
- 2004-07-14 23:26:52 2,510,848 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorsvr.dll
+ 2007-04-13 19:57:00 2,523,136 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorsvr.dll
- 2004-07-14 23:28:34 2,502,656 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorwks.dll
+ 2007-04-13 19:57:28 2,514,944 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorwks.dll
- 2004-08-10 15:20:00 106,496 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\netfxupdate.exe
+ 2007-01-15 15:11:26 73,728 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\netfxupdate.exe
+ 2004-07-15 00:49:16 258,048 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\SHADOW4060\_aspnet_isapi.dll
+ 2004-07-14 23:32:22 81,920 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\SHADOW4060\_CORPerfMonExt.dll
+ 2004-07-14 23:24:30 282,624 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\SHADOW4060\_fusion.dll
+ 2004-07-14 23:25:06 315,392 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\SHADOW4060\_mscorjit.dll
+ 2004-07-15 13:29:02 2,138,112 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\SHADOW4060\_mscorlib.dll
+ 2003-02-20 18:09:18 77,824 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\SHADOW4060\_mscorsn.dll
+ 2004-07-14 23:26:52 2,510,848 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\SHADOW4060\_mscorsvr.dll
+ 2004-07-14 23:28:34 2,502,656 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\SHADOW4060\_mscorwks.dll
+ 2003-02-21 03:42:22 348,160 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\SHADOW4060\_msvcr71.dll
+ 2004-07-14 23:34:50 94,208 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\SHADOW4060\_PerfCounter.dll
- 2004-07-15 13:31:16 1,224,704 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.dll
+ 2007-04-13 20:35:38 1,232,896 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.dll
- 2004-07-15 13:29:00 1,257,472 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Web.dll
+ 2007-04-13 20:35:46 1,265,664 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Web.dll
- 2007-06-16 23:11:58 51,200 ----a-w C:\WINDOWS\NirCmd.exe
+ 2000-08-31 07:00:00 51,200 ----a-w C:\WINDOWS\NirCmd.exe
+ 2006-11-03 10:01:16 319,488 ----a-w C:\WINDOWS\PixArt\PAC207\Monitor.exe
+ 2006-10-12 17:09:56 413,696 ----a-w C:\WINDOWS\PixArt\PAC207\PASnap.exe
- 2007-08-22 13:13:00 1,022,976 ----a-w C:\WINDOWS\system32\browseui.dll
+ 2007-10-11 06:12:41 1,023,488 ----a-w C:\WINDOWS\system32\browseui.dll
- 2007-08-22 13:13:00 152,064 ----a-w C:\WINDOWS\system32\cdfview.dll
+ 2007-10-11 06:12:41 152,064 ----a-w C:\WINDOWS\system32\cdfview.dll
+ 2006-11-20 08:04:24 6,656 ----a-w C:\WINDOWS\system32\CoInst_070511.dll
- 2007-08-22 13:13:00 1,056,256 ----a-w C:\WINDOWS\system32\danim.dll
+ 2007-10-11 06:12:41 1,056,256 ----a-w C:\WINDOWS\system32\danim.dll
- 2007-08-22 13:13:00 1,022,976 -c--a-w C:\WINDOWS\system32\dllcache\browseui.dll
+ 2007-10-11 06:12:41 1,023,488 -c--a-w C:\WINDOWS\system32\dllcache\browseui.dll
- 2007-08-22 13:13:00 152,064 -c--a-w C:\WINDOWS\system32\dllcache\cdfview.dll
+ 2007-10-11 06:12:41 152,064 -c--a-w C:\WINDOWS\system32\dllcache\cdfview.dll
- 2007-08-22 13:13:00 1,056,256 -c--a-w C:\WINDOWS\system32\dllcache\danim.dll
+ 2007-10-11 06:12:41 1,056,256 -c--a-w C:\WINDOWS\system32\dllcache\danim.dll
- 2007-08-22 13:13:00 357,888 -c--a-w C:\WINDOWS\system32\dllcache\dxtmsft.dll
+ 2007-10-11 06:12:41 357,888 -c--a-w C:\WINDOWS\system32\dllcache\dxtmsft.dll
- 2007-08-22 13:13:01 205,312 -c--a-w C:\WINDOWS\system32\dllcache\dxtrans.dll
+ 2007-10-11 06:12:41 205,312 -c--a-w C:\WINDOWS\system32\dllcache\dxtrans.dll
- 2007-08-22 13:13:01 55,808 -c--a-w C:\WINDOWS\system32\dllcache\extmgr.dll
+ 2007-10-11 06:12:41 55,808 -c--a-w C:\WINDOWS\system32\dllcache\extmgr.dll
- 2007-08-21 10:30:45 18,432 -c--a-w C:\WINDOWS\system32\dllcache\iedw.exe
+ 2007-10-10 11:16:27 18,432 -c--a-w C:\WINDOWS\system32\dllcache\iedw.exe
- 2007-08-22 13:13:01 251,392 -c--a-w C:\WINDOWS\system32\dllcache\iepeers.dll
+ 2007-10-11 06:12:42 251,392 -c--a-w C:\WINDOWS\system32\dllcache\iepeers.dll
- 2007-08-22 13:13:01 96,768 -c--a-w C:\WINDOWS\system32\dllcache\inseng.dll
+ 2007-10-11 06:12:42 96,768 -c--a-w C:\WINDOWS\system32\dllcache\inseng.dll
- 2006-05-18 05:36:05 450,560 -c--a-w C:\WINDOWS\system32\dllcache\jscript.dll
+ 2007-11-14 07:26:55 450,560 -c--a-w C:\WINDOWS\system32\dllcache\jscript.dll
- 2007-08-22 13:13:01 16,384 -c--a-w C:\WINDOWS\system32\dllcache\jsproxy.dll
+ 2007-10-11 06:12:42 16,384 -c--a-w C:\WINDOWS\system32\dllcache\jsproxy.dll
- 2007-08-22 13:13:02 3,079,168 -c--a-w C:\WINDOWS\system32\dllcache\mshtml.dll
+ 2007-10-30 10:15:39 3,079,680 -c--a-w C:\WINDOWS\system32\dllcache\mshtml.dll
- 2007-08-22 13:13:02 449,024 -c--a-w C:\WINDOWS\system32\dllcache\mshtmled.dll
+ 2007-10-11 06:12:44 449,024 -c--a-w C:\WINDOWS\system32\dllcache\mshtmled.dll
- 2007-08-22 13:13:02 146,432 -c--a-w C:\WINDOWS\system32\dllcache\msrating.dll
+ 2007-10-11 06:12:44 146,432 -c--a-w C:\WINDOWS\system32\dllcache\msrating.dll
- 2007-08-22 13:13:02 532,480 -c--a-w C:\WINDOWS\system32\dllcache\mstime.dll
+ 2007-10-11 06:12:44 532,480 -c--a-w C:\WINDOWS\system32\dllcache\mstime.dll
- 2007-08-22 13:13:02 39,424 -c--a-w C:\WINDOWS\system32\dllcache\pngfilt.dll
+ 2007-10-11 06:12:44 39,424 -c--a-w C:\WINDOWS\system32\dllcache\pngfilt.dll
+ 2004-03-16 10:58:20 136,960 -c--a-w C:\WINDOWS\system32\dllcache\portcls.sys
- 2005-08-30 03:55:35 1,292,800 -c--a-w C:\WINDOWS\system32\dllcache\quartz.dll
+ 2007-10-29 22:42:30 1,293,312 -c--a-w C:\WINDOWS\system32\dllcache\quartz.dll
- 2007-08-22 13:13:03 1,494,528 -c--a-w C:\WINDOWS\system32\dllcache\shdocvw.dll
+ 2007-10-11 06:12:45 1,494,528 -c--a-w C:\WINDOWS\system32\dllcache\shdocvw.dll
- 2007-08-22 13:13:03 474,624 -c--a-w C:\WINDOWS\system32\dllcache\shlwapi.dll
+ 2007-10-11 06:12:45 474,624 -c--a-w C:\WINDOWS\system32\dllcache\shlwapi.dll
- 2007-08-22 13:13:03 617,472 -c--a-w C:\WINDOWS\system32\dllcache\urlmon.dll
+ 2007-10-11 06:12:45 617,472 -c--a-w C:\WINDOWS\system32\dllcache\urlmon.dll
- 2007-08-22 13:13:04 664,576 -c--a-w C:\WINDOWS\system32\dllcache\wininet.dll
+ 2007-10-11 06:12:45 665,088 -c--a-w C:\WINDOWS\system32\dllcache\wininet.dll
- 2006-10-18 20:47:18 222,208 -c--a-w C:\WINDOWS\system32\dllcache\WMASF.dll
+ 2007-10-25 08:28:30 222,720 -c--a-w C:\WINDOWS\system32\dllcache\wmasf.dll
- 2003-03-09 20:31:00 51,024 ----a-r C:\WINDOWS\system32\drivers\hpzid412.sys
+ 2005-03-08 04:43:25 51,120 ----a-r C:\WINDOWS\system32\drivers\HPZid412.sys
- 2003-03-09 20:31:02 16,080 ----a-r C:\WINDOWS\system32\drivers\HPZipr12.sys
+ 2005-03-08 04:43:26 16,496 ----a-r C:\WINDOWS\system32\drivers\HPZipr12.sys
- 2003-03-09 20:31:02 21,456 ----a-r C:\WINDOWS\system32\drivers\HPZius12.sys
+ 2005-03-08 04:43:27 21,744 ----a-r C:\WINDOWS\system32\drivers\HPZius12.sys
+ 2007-05-14 09:26:10 508,288 ----a-w C:\WINDOWS\system32\drivers\PFC027.SYS
Seitenanfang Seitenende
07.01.2008, 17:46
Ehrenmitglied
Avatar Pinguin

Beiträge: 1441
#72 r123s

poste bitte noch mal alles komplett - falls der Platz nicht ausreicht, über Anhang (siehe unten)

«
wenn das erledigt ist: scanne mit diesem Kasperski-Tool, speichere den Report und poste ihn
http://www.virus-protect.org/artikel/tools/kaspersky.html
__________
Gruss
Pinguin

bin dabei, meine Seite + Proggies zu aktualisieren: http://www.virus-protect.org/
Seitenanfang Seitenende
07.01.2008, 20:38
Member

Themenstarter

Beiträge: 262
#73 ComboFix 08-01-07.5 - SUZAN SHALABI 2008-01-07 20:33:06.8 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.2.1252.49.1031.18.627 [GMT 1:00]
ausgeführt von:: C:\Dokumente und Einstellungen\SUZAN SHALABI\Lokale Einstellungen\Temporary Internet Files\Content.IE5\CX2VKPYZ\ComboFix[1].exe
.

((((((((((((((((((((((( Dateien erstellt von 2007-12-07 bis 2008-01-07 ))))))))))))))))))))))))))))))
.

2008-01-07 17:12 . 2008-01-07 20:30 54,156 --ah----- C:\WINDOWS\QTFont.qfn
2008-01-07 17:12 . 2008-01-07 17:12 1,409 --a------ C:\WINDOWS\QTFont.for
2008-01-06 13:47 . 2008-01-06 13:47 <DIR> d-------- C:\2bd2932915fca7b132838576
2007-12-30 18:02 . 2008-01-06 13:10 <DIR> d-------- C:\Programme\Bingo RM to MP3 Wave Converter
2007-12-30 17:58 . 2008-01-06 13:12 <DIR> d-------- C:\Programme\RM to MP3 Converter
2007-12-29 13:14 . 2008-01-06 13:10 <DIR> d-------- C:\Programme\Blacky3
2007-12-28 21:11 . 2007-12-28 21:11 <DIR> d-------- C:\Programme\MediaSupplyCodec
2007-12-28 21:08 . 2008-01-06 13:10 <DIR> d-------- C:\Programme\Bingo RM MP3 to Audio CD Maker
2007-12-28 21:01 . 2008-01-06 13:14 <DIR> d-------- C:\Programme\Speedy RM to MP3 Converter
2007-12-28 20:49 . 2007-12-28 21:04 <DIR> d-------- C:\Programme\Real Alternative
2007-12-28 20:36 . 2007-12-28 20:37 <DIR> d-------- C:\Programme\Acoustica MP3 CD Burner
2007-12-28 20:36 . 2007-12-28 20:36 <DIR> d-------- C:\Dokumente und Einstellungen\SUZAN SHALABI\Anwendungsdaten\Acoustica
2007-12-28 20:36 . 2002-11-05 15:16 57,344 --a------ C:\WINDOWS\system32\Wnaspint.dll
2007-12-26 11:28 . 2007-12-26 11:28 <DIR> d-------- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\NCH Swift Sound
2007-12-26 11:22 . 2007-12-26 11:22 <DIR> d-------- C:\Dokumente und Einstellungen\SUZAN SHALABI\Anwendungsdaten\NCH Swift Sound
2007-12-26 11:14 . 2008-01-06 13:14 <DIR> d-------- C:\Programme\NCH Swift Sound
2007-12-24 10:22 . 2008-01-07 13:56 230,432 --a------ C:\PA207.DAT
2007-12-21 08:46 . 2007-12-21 08:46 <DIR> d-------- C:\WINDOWS\PixArt
2007-12-21 08:46 . 2007-12-21 08:46 <DIR> d-------- C:\Programme\Gemeinsame Dateien\PAC207
2007-12-21 08:46 . 2006-11-03 10:59 48,128 --a------ C:\WINDOWS\system32\Remove.exe
2007-12-21 08:46 . 2007-01-04 01:20 314 --a------ C:\WINDOWS\system32\Remover.ini
2007-12-21 08:44 . 2007-12-21 08:46 <DIR> d-------- C:\Programme\Trust
2007-12-21 08:43 . 2007-12-21 08:46 <DIR> d-------- C:\WINDOWS\Downloaded Installations
2007-12-19 13:11 . 1998-10-29 16:45 306,688 --a------ C:\WINDOWS\IsUninst.exe
2007-12-19 13:07 . 2007-12-19 13:08 <DIR> d-------- C:\WINDOWS\system32\NtmsData
2007-12-19 13:03 . 2007-12-19 13:25 113,952 --a------ C:\WINDOWS\hpoins07.dat
2007-12-19 13:03 . 2005-05-24 07:50 21,124 --------- C:\WINDOWS\hpomdl07.dat
2007-12-07 12:33 . 2007-12-07 12:33 <DIR> d-------- C:\Dokumente und Einstellungen\SUZAN SHALABI\DoctorWeb

.
(((((((((((((((((((((((((((((((((((( Find3M Bericht ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-01-06 17:20 --------- d-----w C:\Programme\microsoft frontpage
2008-01-04 14:55 --------- d-----w C:\Dokumente und Einstellungen\SUZAN SHALABI\Anwendungsdaten\AdobeUM
2007-12-30 09:27 --------- d-----w C:\Programme\TuneUp Utilities 2007
2007-12-23 08:31 --------- d-----w C:\Programme\Gemeinsame Dateien\Lexware
2007-12-23 08:24 --------- d--h--w C:\Programme\InstallShield Installation Information
2007-12-19 12:15 --------- d-----w C:\Programme\Hewlett-Packard
2007-12-19 12:00 --------- d-----w C:\Dokumente und Einstellungen\SUZAN SHALABI\Anwendungsdaten\Skype
2007-11-29 13:46 --------- d-----w C:\Programme\goop
2007-11-29 13:46 --------- d-----w C:\Programme\eMule
2007-11-22 17:26 --------- d-----w C:\Programme\Windows Live Toolbar
2007-11-21 16:50 --------- d-----w C:\Programme\Avira
2007-11-21 16:50 --------- d-----w C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Avira
2007-11-20 17:10 --------- dcsh--w C:\Programme\Gemeinsame Dateien\WindowsLiveInstaller
2007-11-20 17:10 --------- d-----w C:\Programme\Windows Live
2007-11-20 17:05 --------- d-----w C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\WLInstaller
2007-11-13 22:39 344,064 ----a-w C:\WINDOWS\system32\BH_DATA110VC8.dll
2007-11-13 12:42 81,920 ----a-w C:\WINDOWS\system32\LxUISettings10VC8.dll
2007-11-13 12:42 81,920 ----a-w C:\WINDOWS\system32\LxCI12.dll
2007-11-13 12:42 716,800 ----a-w C:\WINDOWS\system32\lxter20VC8.dll
2007-11-13 12:42 69,632 ----a-w C:\WINDOWS\system32\PXTTool65VC8.dll
2007-11-13 12:42 61,440 ----a-w C:\WINDOWS\system32\LXCurr12VC8.dll
2007-11-13 12:42 552,960 ----a-w C:\WINDOWS\system32\zvkonline65VC8.dll
2007-11-13 12:42 5,701,632 ----a-w C:\WINDOWS\system32\LxXtreme50VC8.dll
2007-11-13 12:42 319,488 ----a-w C:\WINDOWS\system32\LxImport65VC8.dll
2007-11-13 12:42 27,648 ----a-w C:\WINDOWS\system32\LXTPSW20VC8.dll
2007-11-13 12:42 241,664 ----a-w C:\WINDOWS\system32\LXBtr65VC8.dll
2007-11-13 12:42 188,416 ----a-w C:\WINDOWS\system32\LXDasi65VC8.dll
2007-11-13 12:42 180,224 ----a-w C:\WINDOWS\system32\LxBasics65VC8.dll
2007-11-13 12:42 131,072 ----a-w C:\WINDOWS\system32\LxMail30VC8.dll
2007-11-13 12:42 1,556,480 ----a-w C:\WINDOWS\system32\LxXtreme40VC8.dll
2007-11-13 12:42 1,191,936 ----a-w C:\WINDOWS\system32\LXtool65VC8.dll
2007-11-13 11:38 1,409,024 ----a-w C:\WINDOWS\system32\FormAssi50.dll
2007-11-13 10:25 20,480 ----a-w C:\WINDOWS\system32\drivers\secdrv.sys
2007-11-13 08:39 57,344 ----a-w C:\WINDOWS\system32\FKStampPainter20.dll
2007-11-12 15:32 --------- d-----w C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\MailFrontier
2007-11-12 15:13 --------- d-----w C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Prevx
2007-11-09 14:18 208,896 ----a-w C:\WINDOWS\system32\LXPrnUtil10.dll
2007-11-09 14:15 303,104 ----a-w C:\WINDOWS\system32\dnt27VC8.dll
2007-11-09 14:12 90,112 ----a-w C:\WINDOWS\system32\dntvmc27VC8.dll
2007-11-09 14:12 86,016 ----a-w C:\WINDOWS\system32\dntvm27VC8.dll
2007-11-09 13:22 --------- d-----w C:\Programme\Trend Micro
2007-10-29 22:42 1,293,312 ----a-w C:\WINDOWS\system32\quartz.dll
2007-10-25 08:28 222,720 ----a-w C:\WINDOWS\system32\wmasf.dll
2007-10-22 12:20 134,144 ----a-w C:\WINDOWS\system32\LexEBankCommon10VC8.dll
2007-10-22 11:43 90,112 ----a-w C:\WINDOWS\system32\lxdao11VC8.dll
2007-10-22 11:43 184,320 ----a-w C:\WINDOWS\system32\LxDBAL11VC8.dll
2007-10-22 11:43 118,784 ----a-w C:\WINDOWS\system32\LxOdbc11VC8.dll
2007-10-18 10:31 51,224 ----a-w C:\WINDOWS\system32\sirenacm.dll
2006-06-30 10:26 774,144 ----a-w C:\Programme\RngInterstitial.dll
.

(((((((((((((((((((((((((((( Autostart Punkte der Registrierung ))))))))))))))))))))))))))))))))))))))))
.
.
REGEDIT4
*Hinweis* leere Eintrage & legitime Standardeintrage werden nicht angezeigt.

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"msnmsgr"="C:\Programme\Windows Live\Messenger\msnmsgr.exe" [2007-10-18 11:34 5724184]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2005-12-10 03:06 7311360]
"Monitor"="C:\WINDOWS\PixArt\PAC207\Monitor.exe" [2006-11-03 11:01 319488]
"TkBellExe"="C:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe" [2006-12-28 21:24 185896]
"LexwareInfoService"="C:\Programme\Gemeinsame Dateien\Lexware\Update Manager\LxUpdateManager.exe" [2007-09-25 13:59 532776]
"QuickTime Task"="C:\Programme\QuickTime\qttask.exe" [2007-09-10 11:52 77824]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2004-08-04 13:00 15360]

[HKLM\~\startupfolder\C:^Dokumente und Einstellungen^All Users^Startmenü^Programme^Autostart^HP Digital Imaging Monitor.lnk]
path=C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\HP Digital Imaging Monitor.lnk
backup=C:\WINDOWS\pss\HP Digital Imaging Monitor.lnkCommon Startup

[HKLM\~\startupfolder\C:^Dokumente und Einstellungen^All Users^Startmenü^Programme^Autostart^Lexware Info Service.lnk]
path=C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\Lexware Info Service.lnk
backup=C:\WINDOWS\pss\Lexware Info Service.lnkCommon Startup

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AltnetPointsManager]
--a------ 2006-07-19 16:01 336896 C:\Program Files\Altnet\Points Manager\Points Manager.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\avgnt]
--a------ 2007-11-30 11:07 249896 C:\Programme\Avira\AntiVir PersonalEdition Classic\avgnt.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AVMWlanClient]
-ra------ 2006-02-23 00:04 1499136 C:\Programme\avmwlanstick\wlangui.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTFMON.EXE]
--a------ 2004-08-04 13:00 15360 C:\WINDOWS\system32\ctfmon.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\FLMOFFICE4DMOUSE]
--a------ 2006-03-28 11:23 958464 C:\Programme\Labtec\Desktop\V5.1\moffice.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Desktop Search]
C:\Programme\Google\Google Desktop Search\GoogleDesktop.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
--a------ 2005-05-11 22:12 49152 C:\Programme\Hewlett-Packard\HP Software Update\HPWuSchd2.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IMJPMIG8.1]
--a------ 2004-08-04 13:00 208952 C:\WINDOWS\IME\imjp8_1\IMJPMIG.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IntelAudioStudio]
--a------ 2005-04-08 19:37 7081984 C:\Programme\Intel Audio Studio\IntelAudioStudio.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KAZAA]
C:\Programme\Kazaa\kazaa.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\msnmsgr]
--a------ 2007-10-18 11:34 5724184 C:\Programme\Windows Live\Messenger\msnmsgr.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSPY2002]
--a------ 2004-08-04 13:00 59392 C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe
Seitenanfang Seitenende
07.01.2008, 20:39
Member

Themenstarter

Beiträge: 262
#74 [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
--a------ 2001-07-09 09:50 155648 C:\WINDOWS\system32\NeroCheck.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
--a------ 2005-12-10 03:06 7311360 C:\WINDOWS\system32\NvCpl.dll

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
--a------ 2005-12-10 03:06 86016 C:\WINDOWS\system32\NvMcTray.dll

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz]
--a------ 2005-12-10 03:06 1519616 C:\WINDOWS\system32\nwiz.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OFFICEKB]
--a------ 2006-03-28 11:23 387584 C:\Programme\Labtec\Desktop\V5.1\kbdap32a.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\P2P Networking]
C:\WINDOWS\system32\P2P Networking\P2P Networking.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PHIME2002A]
--a------ 2004-08-04 13:00 455168 C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PHIME2002ASync]
--a------ 2004-08-04 13:00 455168 C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
--a------ 2007-09-10 11:52 77824 C:\Programme\QuickTime\qttask.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SemanticInsight]
C:\Programme\RXToolBar\Semantic Insight\SemanticInsight.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Programme\Skype\Phone\Skype.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
--a------ 2005-06-03 03:52 36975 C:\Programme\Java\jre1.5.0_04\bin\jusched.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\tbon]
--a------ 2006-07-01 21:00 83456 C:\Programme\TBONBin\tbon.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe]
--a------ 2006-12-28 21:24 185896 C:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ZoneAlarm Client]
C:\Programme\Zone Labs\ZoneAlarm\zlclient.exe

R2 Pctspk;PCTEL Speaker Phone;C:\WINDOWS\system32\pctspk.exe [2001-08-18 03:55]
R2 UxTuneUp;TuneUp Designerweiterung;C:\WINDOWS\System32\svchost.exe [2004-08-04 13:00]
R3 PAC207;Trust WB-1400T Webcam;C:\WINDOWS\system32\DRIVERS\PFC027.SYS [2007-05-14 10:26]
R3 Ptserlp;PCTEL Serial Device Driver for PCI;C:\WINDOWS\system32\DRIVERS\ptserlp.sys [2001-08-17 12:28]
S0 sexjdqpf;sexjdqpf;C:\WINDOWS\system32\drivers\xaurrfew.sys []
S0 tfgaqmyf;tfgaqmyf;C:\WINDOWS\system32\drivers\gjebhpfr.sys []
S3 AVMUNET;AVM FRITZ!Box;C:\WINDOWS\system32\DRIVERS\avmunet.sys [2005-04-18 15:15]
S3 FWLANUSB;AVM FRITZ!WLAN;C:\WINDOWS\system32\DRIVERS\fwlanusb.sys [2006-02-23 00:04]
S3 HRService;Haufe iDesk-Service in C:\Programme\Haufe\iDesk\iDeskService\Zope;"C:\Programme\Haufe\iDesk\iDeskService\iDeskService.exe" [2007-09-07 03:17]
S3 phil2vid;Philips VGA-Kamera (USB);C:\WINDOWS\system32\DRIVERS\philcam2.sys [2001-08-17 13:04]

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{2a3c3cb4-03af-11db-bfa3-00132061f2e3}]
\Shell\AutoRun\command - F:\pushinst.exe

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{429b9829-02eb-11db-bf9f-00132061f2e3}]
\Shell\AutoRun\command - F:\preinst.exe

.
Inhalt des "geplante Tasks" Ordners
"2007-10-29 14:38:32 C:\WINDOWS\Tasks\1-Klick-Wartung.job"
- C:\Programme\TuneUp Utilities 2007\SystemOptimizer.exe
"2008-01-07 15:40:01 C:\WINDOWS\Tasks\Auf Updates für Windows Live Toolbar prüfen.job"
- C:\Programme\Windows Live Toolbar\MSNTBUP.EXE
.
**************************************************************************

catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-01-07 20:35:24
Windows 5.1.2600 Service Pack 2 NTFS

Scanne versteckte Prozesse...

Scanne versteckte Autostart Einträge...

Scanne versteckte Dateien...

Scan erfolgreich abgeschlossen
versteckte Dateien: 0

**************************************************************************
.
Zeit der Fertigstellung: 2008-01-07 20:36:07
ComboFix-quarantined-files.txt 2008-01-07 19:35:58
ComboFix2.txt 2008-01-07 16:19:31
ComboFix3.txt 2007-12-01 15:31:42
ComboFix4.txt 2007-12-01 15:05:45
ComboFix5.txt 2007-12-01 14:40:33
.
2008-01-06 17:14:57 --- E O F ---
Seitenanfang Seitenende
07.01.2008, 21:00
Member

Themenstarter

Beiträge: 262
#75 99% - Scan
----------
Scanned: 4861
Detected: 1
Untreated: 1
Start time: 07.01.2008 20:55:33
Duration: 00:03:10
Finish time: Unknown


Detected
--------
Status Object
------ ------
detected: adware not-a-virus:AdWare.Win32.Mostofate.j File: C:\Dokumente und Einstellungen\SUZAN SHALABI\Eigene Dateien\BearShareV6de.exe//WiseSFXDropper//WISE0104.BIN//stream//data0005


Events
------
Time Name Status Reason
---- ---- ------ ------
07.01.2008 20:55:36 Running module: C:\Dokumente und Einstellungen\All Users\Desktop\Kaspersky Lab Tool\setup_7.0.0.180_07.01.2008_21-47[1].exe ok scanned
07.01.2008 20:55:36 File: C:\Dokumente und Einstellungen\All Users\Desktop\Kaspersky Lab Tool\setup_7.0.0.180_07.01.2008_21-47[1].exe ok scanned
07.01.2008 20:55:36 Running module: C:\WINDOWS\system32\ntdll.dll ok scanned
07.01.2008 20:55:36 File: C:\WINDOWS\system32\ntdll.dll ok scanned
07.01.2008 20:55:36 Running module: C:\WINDOWS\system32\kernel32.dll ok scanned
07.01.2008 20:55:36 File: C:\WINDOWS\system32\kernel32.dll ok scanned
07.01.2008 20:55:36 Running module: C:\Dokumente und Einstellungen\All Users\Desktop\Kaspersky Lab Tool\prremote.dll ok scanned
07.01.2008 20:55:36 File: C:\Dokumente und Einstellungen\All Users\Desktop\Kaspersky Lab Tool\prremote.dll ok scanned
07.01.2008 20:55:36 Running module: C:\WINDOWS\system32\RPCRT4.dll ok scanned
07.01.2008 20:55:36 File: C:\WINDOWS\system32\RPCRT4.dll ok scanned
07.01.2008 20:55:36 Running module: C:\WINDOWS\system32\ADVAPI32.dll ok scanned
07.01.2008 20:55:36 File: C:\WINDOWS\system32\ADVAPI32.dll ok scanned
07.01.2008 20:55:36 Running module: C:\WINDOWS\system32\Secur32.dll ok scanned
07.01.2008 20:55:36 File: C:\WINDOWS\system32\Secur32.dll ok scanned
07.01.2008 20:55:36 Running module: C:\WINDOWS\system32\USER32.dll ok scanned
07.01.2008 20:55:36 File: C:\WINDOWS\system32\USER32.dll ok scanned
07.01.2008 20:55:36 Running module: C:\WINDOWS\system32\GDI32.dll ok scanned
07.01.2008 20:55:36 File: C:\WINDOWS\system32\GDI32.dll ok scanned
07.01.2008 20:55:36 Running module: C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6b128700\MSVCP80.dll ok scanned
07.01.2008 20:55:36 File: C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6b128700\MSVCP80.dll ok scanned
07.01.2008 20:55:36 Running module: C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6b128700\MSVCR80.dll ok scanned
07.01.2008 20:55:37 File: C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6b128700\MSVCR80.dll ok scanned
07.01.2008 20:55:37 Running module: C:\WINDOWS\system32\msvcrt.dll ok scanned
07.01.2008 20:55:37 File: C:\WINDOWS\system32\msvcrt.dll ok scanned
07.01.2008 20:55:37 Running module: C:\Dokumente und Einstellungen\All Users\Desktop\Kaspersky Lab Tool\FSSync.dll ok scanned
07.01.2008 20:55:37 File: C:\Dokumente und Einstellungen\All Users\Desktop\Kaspersky Lab Tool\FSSync.dll ok scanned
07.01.2008 20:55:37 Running module: C:\WINDOWS\system32\SHELL32.dll ok scanned
07.01.2008 20:55:37 File: C:\WINDOWS\system32\SHELL32.dll ok scanned
07.01.2008 20:55:37 Running module: C:\WINDOWS\system32\SHLWAPI.dll ok scanned
07.01.2008 20:55:37 File: C:\WINDOWS\system32\SHLWAPI.dll ok scanned
07.01.2008 20:55:37 Running module: C:\WINDOWS\system32\ole32.dll ok scanned
07.01.2008 20:55:37 File: C:\WINDOWS\system32\ole32.dll ok scanned
07.01.2008 20:55:37 Running module: C:\WINDOWS\system32\IMM32.DLL ok scanned
07.01.2008 20:55:37 File: C:\WINDOWS\system32\IMM32.DLL ok scanned
07.01.2008 20:55:37 Running module: C:\WINDOWS\system32\LPK.DLL ok scanned
07.01.2008 20:55:37 File: C:\WINDOWS\system32\LPK.DLL ok scanned
07.01.2008 20:55:37 Running module: C:\WINDOWS\system32\USP10.dll ok scanned
07.01.2008 20:55:37 File: C:\WINDOWS\system32\USP10.dll ok scanned
07.01.2008 20:55:37 Running module: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll ok scanned
07.01.2008 20:55:37 File: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll ok scanned
07.01.2008 20:55:37 Running module: C:\WINDOWS\system32\uxtheme.dll ok scanned
07.01.2008 20:55:37 File: C:\WINDOWS\system32\uxtheme.dll ok scanned
07.01.2008 20:55:37 Running module: C:\WINDOWS\system32\msctfime.ime ok scanned
07.01.2008 20:55:37 File: C:\WINDOWS\system32\msctfime.ime ok scanned
07.01.2008 20:55:37 Running module: C:\Dokumente und Einstellungen\All Users\Desktop\Kaspersky Lab Tool\AVPGS.PPL ok scanned
07.01.2008 20:55:37 File: C:\Dokumente und Einstellungen\All Users\Desktop\Kaspersky Lab Tool\AVPGS.PPL ok scanned
07.01.2008 20:55:37 Running module: C:\Dokumente und Einstellungen\All Users\Desktop\Kaspersky Lab Tool\prloader.dll ok scanned
07.01.2008 20:55:37 File: C:\Dokumente und Einstellungen\All Users\Desktop\Kaspersky Lab Tool\prloader.dll ok scanned
07.01.2008 20:55:37 Running module: C:\Dokumente und Einstellungen\All Users\Desktop\Kaspersky Lab Tool\prkernel.ppl ok scanned
07.01.2008 20:55:38 File: C:\Dokumente und Einstellungen\All Users\Desktop\Kaspersky Lab Tool\prkernel.ppl ok scanned
07.01.2008 20:55:38 Running module: C:\WINDOWS\system32\userenv.dll ok scanned
07.01.2008 20:55:38 File: C:\WINDOWS\system32\userenv.dll ok scanned
07.01.2008 20:55:38 Running module: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\pxstub.ppl ok scanned
07.01.2008 20:55:38 File: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\pxstub.ppl ok scanned
07.01.2008 20:55:38 Running module: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\params.ppl ok scanned
07.01.2008 20:55:38 File: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\params.ppl ok scanned
07.01.2008 20:55:38 Running module: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\dtreg.ppl ok scanned
07.01.2008 20:55:38 File: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\dtreg.ppl ok scanned
07.01.2008 20:55:38 Running module: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\nfio.ppl ok scanned
07.01.2008 20:55:38 File: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\nfio.ppl ok scanned
07.01.2008 20:55:38 Running module: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\fsdrvplg.ppl ok scanned
07.01.2008 20:55:38 File: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\fsdrvplg.ppl ok scanned
07.01.2008 20:55:38 Running module: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\mkavio.ppl ok scanned
07.01.2008 20:55:38 File: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\mkavio.ppl ok scanned
07.01.2008 20:55:38 Running module: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\tempfile.ppl ok scanned
07.01.2008 20:55:38 File: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\tempfile.ppl ok scanned
07.01.2008 20:55:38 Running module: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\avpgui.ppl ok scanned
07.01.2008 20:55:38 File: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\avpgui.ppl ok scanned
07.01.2008 20:55:38 Running module: C:\WINDOWS\system32\WININET.dll ok scanned
07.01.2008 20:55:38 File: C:\WINDOWS\system32\WININET.dll ok scanned
07.01.2008 20:55:38 Running module: C:\WINDOWS\system32\CRYPT32.dll ok scanned
07.01.2008 20:55:38 File: C:\WINDOWS\system32\CRYPT32.dll ok scanned
07.01.2008 20:55:38 Running module: C:\WINDOWS\system32\MSASN1.dll ok scanned
07.01.2008 20:55:38 File: C:\WINDOWS\system32\MSASN1.dll ok scanned
07.01.2008 20:55:38 Running module: C:\WINDOWS\system32\OLEAUT32.dll ok scanned
07.01.2008 20:55:38 File: C:\WINDOWS\system32\OLEAUT32.dll ok scanned
07.01.2008 20:55:38 Running module: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\basegui.ppl ok scanned
07.01.2008 20:55:38 File: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\basegui.ppl ok scanned
07.01.2008 20:55:38 Running module: C:\WINDOWS\system32\VERSION.dll ok scanned
07.01.2008 20:55:38 File: C:\WINDOWS\system32\VERSION.dll ok scanned
07.01.2008 20:55:38 Running module: C:\WINDOWS\system32\WS2_32.dll ok scanned
07.01.2008 20:55:38 File: C:\WINDOWS\system32\WS2_32.dll ok scanned
07.01.2008 20:55:38 Running module: C:\WINDOWS\system32\WS2HELP.dll ok scanned
07.01.2008 20:55:38 File: C:\WINDOWS\system32\WS2HELP.dll ok scanned
07.01.2008 20:55:38 Running module: C:\WINDOWS\system32\CLBCATQ.DLL ok scanned
07.01.2008 20:55:38 File: C:\WINDOWS\system32\CLBCATQ.DLL ok scanned
07.01.2008 20:55:38 Running module: C:\WINDOWS\system32\COMRes.dll ok scanned
07.01.2008 20:55:38 File: C:\WINDOWS\system32\COMRes.dll ok scanned
07.01.2008 20:55:38 Running module: C:\WINDOWS\system32\xpsp2res.dll ok scanned
07.01.2008 20:55:38 File: C:\WINDOWS\system32\xpsp2res.dll archive EmbeddedHTML
07.01.2008 20:55:38 File: C:\WINDOWS\system32\xpsp2res.dll//data0001.html ok scanned
07.01.2008 20:55:38 File: C:\WINDOWS\system32\xpsp2res.dll//data0002.html ok scanned
07.01.2008 20:55:38 File: C:\WINDOWS\system32\xpsp2res.dll//data0003.html ok scanned
07.01.2008 20:55:38 File: C:\WINDOWS\system32\xpsp2res.dll//data0004.html ok scanned
07.01.2008 20:55:38 File: C:\WINDOWS\system32\xpsp2res.dll//data0005.html ok scanned
07.01.2008 20:55:38 File: C:\WINDOWS\system32\xpsp2res.dll//data0006.html ok scanned
07.01.2008 20:55:38 File: C:\WINDOWS\system32\xpsp2res.dll//data0007.html ok scanned
07.01.2008 20:55:38 File: C:\WINDOWS\system32\xpsp2res.dll//data0008.html ok scanned
07.01.2008 20:55:38 File: C:\WINDOWS\system32\xpsp2res.dll//data0009.html ok scanned
07.01.2008 20:55:38 File: C:\WINDOWS\system32\xpsp2res.dll//data0010.html ok scanned
07.01.2008 20:55:38 File: C:\WINDOWS\system32\xpsp2res.dll//data0011.html ok scanned
07.01.2008 20:55:38 File: C:\WINDOWS\system32\xpsp2res.dll//data0012.html ok scanned
07.01.2008 20:55:38 File: C:\WINDOWS\system32\xpsp2res.dll ok scanned
07.01.2008 20:55:38 Running module: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\thpimpl.ppl ok scanned
07.01.2008 20:55:38 File: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\thpimpl.ppl ok scanned
07.01.2008 20:55:38 Running module: C:\WINDOWS\system32\fltlib.dll ok scanned
07.01.2008 20:55:38 File: C:\WINDOWS\system32\fltlib.dll ok scanned
07.01.2008 20:55:38 Running module: C:\WINDOWS\system32\wtsapi32.dll ok scanned
07.01.2008 20:55:38 File: C:\WINDOWS\system32\wtsapi32.dll ok scanned
07.01.2008 20:55:38 Running module: C:\WINDOWS\system32\WINSTA.dll ok scanned
07.01.2008 20:55:38 File: C:\WINDOWS\system32\WINSTA.dll ok scanned
07.01.2008 20:55:38 Running module: C:\WINDOWS\system32\NETAPI32.dll ok scanned
07.01.2008 20:55:38 File: C:\WINDOWS\system32\NETAPI32.dll ok scanned
07.01.2008 20:55:38 Running module: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\qb.ppl ok scanned
07.01.2008 20:55:38 File: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\qb.ppl ok scanned
07.01.2008 20:55:38 Running module: C:\WINDOWS\system32\appHelp.dll ok scanned
07.01.2008 20:55:38 File: C:\WINDOWS\system32\appHelp.dll ok scanned
07.01.2008 20:55:38 Running module: C:\WINDOWS\system32\SETUPAPI.dll ok scanned
07.01.2008 20:55:38 File: C:\WINDOWS\system32\SETUPAPI.dll ok scanned
07.01.2008 20:55:38 Running module: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\report.ppl ok scanned
07.01.2008 20:55:38 File: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\report.ppl ok scanned
07.01.2008 20:55:38 Running module: C:\WINDOWS\system32\Comdlg32.dll ok scanned
07.01.2008 20:55:38 File: C:\WINDOWS\system32\Comdlg32.dll ok scanned
07.01.2008 20:55:38 Running module: C:\WINDOWS\system32\browseui.dll ok scanned
07.01.2008 20:55:38 File: C:\WINDOWS\system32\browseui.dll ok scanned
07.01.2008 20:55:38 Running module: C:\WINDOWS\system32\ntshrui.dll ok scanned
07.01.2008 20:55:38 File: C:\WINDOWS\system32\ntshrui.dll ok scanned
07.01.2008 20:55:39 Running module: C:\WINDOWS\system32\ATL.DLL ok scanned
07.01.2008 20:55:39 File: C:\WINDOWS\system32\ATL.DLL ok scanned
07.01.2008 20:55:39 Running module: C:\WINDOWS\system32\shdocvw.dll ok scanned
07.01.2008 20:55:39 File: C:\WINDOWS\system32\shdocvw.dll ok scanned
07.01.2008 20:55:39 Running module: C:\WINDOWS\system32\CRYPTUI.dll ok scanned
07.01.2008 20:55:39 File: C:\WINDOWS\system32\CRYPTUI.dll ok scanned
07.01.2008 20:55:39 Running module: C:\WINDOWS\system32\WINTRUST.dll ok scanned
07.01.2008 20:55:39 File: C:\WINDOWS\system32\WINTRUST.dll ok scanned
07.01.2008 20:55:39 Running module: C:\WINDOWS\system32\IMAGEHLP.dll ok scanned
07.01.2008 20:55:39 File: C:\WINDOWS\system32\IMAGEHLP.dll ok scanned
07.01.2008 20:55:39 Running module: C:\WINDOWS\system32\WLDAP32.dll ok scanned
07.01.2008 20:55:39 File: C:\WINDOWS\system32\WLDAP32.dll ok scanned
07.01.2008 20:55:39 Running module: C:\WINDOWS\system32\LINKINFO.dll ok scanned
07.01.2008 20:55:39 File: C:\WINDOWS\system32\LINKINFO.dll ok scanned
07.01.2008 20:55:39 Running module: C:\Programme\Windows Live\Messenger\fsshext.8.5.1302.1018.dll ok scanned
07.01.2008 20:55:39 File: C:\Programme\Windows Live\Messenger\fsshext.8.5.1302.1018.dll ok scanned
07.01.2008 20:55:39 Running module: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.2600.2180_x-ww_522f9f82\gdiplus.dll ok scanned
07.01.2008 20:55:39 File: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.2600.2180_x-ww_522f9f82\gdiplus.dll ok scanned
07.01.2008 20:55:39 Running module: C:\WINDOWS\system32\MPR.dll ok scanned
07.01.2008 20:55:39 File: C:\WINDOWS\system32\MPR.dll ok scanned
07.01.2008 20:55:39 Running module: C:\WINDOWS\System32\drprov.dll ok scanned
07.01.2008 20:55:39 File: C:\WINDOWS\System32\drprov.dll ok scanned
07.01.2008 20:55:39 Running module: C:\WINDOWS\System32\ntlanman.dll ok scanned
07.01.2008 20:55:39 File: C:\WINDOWS\System32\ntlanman.dll ok scanned
07.01.2008 20:55:39 Running module: C:\WINDOWS\System32\NETUI0.dll ok scanned
07.01.2008 20:55:39 File: C:\WINDOWS\System32\NETUI0.dll ok scanned
07.01.2008 20:55:39 Running module: C:\WINDOWS\System32\NETUI1.dll ok scanned
07.01.2008 20:55:39 File: C:\WINDOWS\System32\NETUI1.dll ok scanned
07.01.2008 20:55:39 Running module: C:\WINDOWS\System32\NETRAP.dll ok scanned
07.01.2008 20:55:39 File: C:\WINDOWS\System32\NETRAP.dll ok scanned
07.01.2008 20:55:39 Running module: C:\WINDOWS\System32\SAMLIB.dll ok scanned
07.01.2008 20:55:39 File: C:\WINDOWS\System32\SAMLIB.dll ok scanned
07.01.2008 20:55:39 Running module: C:\WINDOWS\System32\davclnt.dll ok scanned
07.01.2008 20:55:39 File: C:\WINDOWS\System32\davclnt.dll ok scanned
07.01.2008 20:55:39 Running module: C:\WINDOWS\system32\PortableDeviceApi.dll ok scanned
07.01.2008 20:55:39 File: C:\WINDOWS\system32\PortableDeviceApi.dll ok scanned
07.01.2008 20:55:39 Running module: C:\WINDOWS\system32\MSGINA.dll ok scanned
07.01.2008 20:55:39 File: C:\WINDOWS\system32\MSGINA.dll ok scanned
07.01.2008 20:55:39 Running module: C:\WINDOWS\system32\ODBC32.dll ok scanned
07.01.2008 20:55:39 File: C:\WINDOWS\system32\ODBC32.dll ok scanned
07.01.2008 20:55:39 Running module: C:\WINDOWS\system32\odbcint.dll ok scanned
07.01.2008 20:55:39 File: C:\WINDOWS\system32\odbcint.dll ok scanned
07.01.2008 20:55:39 Running module: C:\WINDOWS\system32\sti.dll ok scanned
07.01.2008 20:55:39 File: C:\WINDOWS\system32\sti.dll ok scanned
07.01.2008 20:55:39 Running module: C:\WINDOWS\system32\CFGMGR32.dll ok scanned
07.01.2008 20:55:39 File: C:\WINDOWS\system32\CFGMGR32.dll ok scanned
07.01.2008 20:55:39 File: c:\windows\system32\mmdrv.dll ok scanned
07.01.2008 20:55:39 File: c:\windows\system\timer.drv ok scanned
07.01.2008 20:55:39 File: c:\windows\system32\pvmjpg21.dll ok scanned
07.01.2008 20:55:39 File: c:\windows\system32\mshta.exe ok scanned
07.01.2008 20:55:39 File: C:\WINDOWS\system32\notepad.exe ok scanned
07.01.2008 20:55:40 File: c:\windows\regedit.exe ok scanned
07.01.2008 20:55:40 File: c:\programme\adobe\acrobat 6.0\reader\acrord32.exe ok scanned
07.01.2008 20:55:40 File: C:\WINDOWS\system32\accwiz.exe ok scanned
07.01.2008 20:55:40 File: c:\programme\windows media player\wmplayer.exe ok scanned
07.01.2008 20:55:40 File: c:\programme\internet explorer\iexplore.exe ok scanned
07.01.2008 20:55:40 File: c:\windows\system32\rundll32.exe ok scanned
07.01.2008 20:55:40 File: c:\windows\system32\cryptext.dll ok scanned
07.01.2008 20:55:40 File: c:\programme\outlook express\wab.exe ok scanned
07.01.2008 20:55:40 File: c:\windows\explorer.exe ok scanned
07.01.2008 20:55:40 File: C:\WINDOWS\system32\cdfview.dll ok scanned
07.01.2008 20:55:40 File: c:\windows\hh.exe ok scanned
07.01.2008 20:55:41 File: c:\windows\system32\clipbrd.exe ok scanned
07.01.2008 20:55:41 File: C:\WINDOWS\system32\rundll32.exe ok scanned
07.01.2008 20:55:41 File: c:\windows\system32\netshell.dll ok scanned
07.01.2008 20:55:41 File: c:\windows\system32\shimgvw.dll ok scanned
07.01.2008 20:55:42 File: C:\WINDOWS\explorer.exe ok scanned
07.01.2008 20:55:42 File: C:\WINDOWS\system32\fontview.exe ok scanned
07.01.2008 20:55:42 File: c:\windows\system32\msconf.dll ok scanned
07.01.2008 20:55:42 File: c:\windows\winhlp32.exe ok scanned
07.01.2008 20:55:42 File: C:\WINDOWS\system32\winhlp32.exe ok scanned
07.01.2008 20:55:42 File: c:\programme\windows nt\hypertrm.exe ok scanned
07.01.2008 20:55:42 File: c:\programme\java\jre1.5.0_04\bin\javaw.exe ok scanned
07.01.2008 20:55:42 File: c:\programme\java\jre1.5.0_04\bin\javaws.exe ok scanned
07.01.2008 20:55:42 File: C:\WINDOWS\system32\wscript.exe ok scanned
07.01.2008 20:55:42 File: c:\programme\microsoft works\wksproj.exe ok scanned
07.01.2008 20:55:43 File: C:\WINDOWS\system32\mmc.exe ok scanned
07.01.2008 20:55:43 File: C:\WINDOWS\system32\shell32.dll ok scanned
07.01.2008 20:55:43 File: C:\WINDOWS\system32\desk.cpl ok scanned
07.01.2008 20:55:43 File: c:\programme\mv2player\mv2playerplus.exe packed file UPX
07.01.2008 20:55:43 File: c:\programme\mv2player\mv2playerplus.exe//UPX ok scanned
07.01.2008 20:55:45 File: c:\programme\mv2player\mv2playerplus.exe ok scanned
07.01.2008 20:55:45 File: c:\windows\system32\nview.dll ok scanned
07.01.2008 20:55:45 File: c:\windows\system\shell.dll ok scanned
07.01.2008 20:55:45 File: C:\WINDOWS\system32\rasphone.exe ok scanned
07.01.2008 20:55:45 File: C:\WINDOWS\system32\perfmon.exe ok scanned
07.01.2008 20:55:45 File: c:\programme\cyberlink\powerdvd\powerdvd.exe ok scanned
07.01.2008 20:55:45 File: c:\programme\gemeinsame dateien\microsoft shared\shoebox\piolch.exe ok scanned
07.01.2008 20:55:45 File: c:\windows\system32\msrating.dll ok scanned
07.01.2008 20:55:45 File: c:\programme\windows nt\zubehör\wordpad.exe ok scanned
07.01.2008 20:55:46 File: c:\windows\notepad.exe ok scanned
07.01.2008 20:55:46 File: c:\programme\cyberlink\common\updateipr.exe ok scanned
07.01.2008 20:55:46 File: C:\WINDOWS\system32\wpnpinst.exe ok scanned
07.01.2008 20:55:46 File: c:\windows\system32\shell32.dll ok scanned
07.01.2008 20:55:47 File: c:\windows\system32\drwtsn32.exe ok scanned
07.01.2008 20:55:48 File: c:\windows\system32\userinit.exe ok scanned
07.01.2008 20:55:48 File: c:\windows\system32\crypt32.dll ok scanned
07.01.2008 20:55:48 File: c:\windows\system32\cryptnet.dll ok scanned
07.01.2008 20:55:48 File: c:\windows\system32\cscdll.dll ok scanned
07.01.2008 20:55:48 File: c:\windows\system32\wlnotify.dll ok scanned
07.01.2008 20:55:48 File: c:\windows\system32\sclgntfy.dll ok scanned
07.01.2008 20:55:48 File: c:\windows\system32\wgalogon.dll ok scanned
07.01.2008 20:55:48 File: c:\windows\system32\nvcpl.dll ok scanned
07.01.2008 20:55:48 File: c:\windows\pixart\pac207\monitor.exe ok scanned
07.01.2008 20:55:48 File: c:\programme\gemeinsame dateien\real\update_ob\realsched.exe//# ok scanned
07.01.2008 20:55:48 File: c:\programme\gemeinsame dateien\real\update_ob\realsched.exe//# ok scanned
07.01.2008 20:55:49 File: c:\programme\gemeinsame dateien\real\update_ob\realsched.exe ok scanned
07.01.2008 20:55:49 File: c:\programme\gemeinsame dateien\lexware\update manager\lxupdatemanager.exe ok scanned
07.01.2008 20:55:49 File: c:\programme\quicktime\qttask.exe ok scanned
07.01.2008 20:55:49 File: c:\dokumente und einstellungen\all users\desktop\kaspersky lab tool\setup_7.0.0.180_07.01.2008_21-47[1].exe ok scanned
07.01.2008 20:55:49 File: c:\windows\system32\ctfmon.exe ok scanned
07.01.2008 20:55:49 File: c:\programme\windows live\messenger\msnmsgr.exe ok scanned
07.01.2008 20:55:49 File: C:\WINDOWS\system32\alrsvc.dll ok scanned
07.01.2008 20:55:49 File: C:\WINDOWS\system32\audiosrv.dll ok scanned
07.01.2008 20:55:49 File: c:\windows\system32\qmgr.dll ok scanned
07.01.2008 20:55:49 File: C:\WINDOWS\system32\browser.dll ok scanned
07.01.2008 20:55:49 File: C:\WINDOWS\system32\cryptsvc.dll ok scanned
07.01.2008 20:55:49 File: C:\WINDOWS\system32\rpcss.dll ok scanned
07.01.2008 20:55:49 File: C:\WINDOWS\system32\dhcpcsvc.dll ok scanned
07.01.2008 20:55:49 File: C:\WINDOWS\system32\dmserver.dll ok scanned
07.01.2008 20:55:49 File: C:\WINDOWS\system32\dnsrslvr.dll ok scanned
07.01.2008 20:55:49 File: C:\WINDOWS\system32\ersvc.dll ok scanned
07.01.2008 20:55:49 File: c:\windows\system32\es.dll ok scanned
07.01.2008 20:55:49 File: C:\WINDOWS\system32\shsvcs.dll ok scanned
07.01.2008 20:55:49 File: C:\WINDOWS\pchealth\helpctr\binaries\pchsvc.dll ok scanned
07.01.2008 20:55:49 File: C:\WINDOWS\system32\hidserv.dll ok scanned
07.01.2008 20:55:49 File: C:\WINDOWS\system32\w3ssl.dll ok scanned
07.01.2008 20:55:49 File: C:\WINDOWS\system32\srvsvc.dll ok scanned
07.01.2008 20:55:49 File: C:\WINDOWS\system32\wkssvc.dll ok scanned
07.01.2008 20:55:49 File: C:\WINDOWS\system32\lmhsvc.dll ok scanned
07.01.2008 20:55:49 File: C:\WINDOWS\system32\msgsvc.dll ok scanned
07.01.2008 20:55:49 File: C:\WINDOWS\system32\netman.dll ok scanned
07.01.2008 20:55:49 File: C:\WINDOWS\system32\mswsock.dll ok scanned
07.01.2008 20:55:49 File: C:\WINDOWS\system32\ntmssvc.dll ok scanned
07.01.2008 20:55:49 File: C:\WINDOWS\system32\rasauto.dll ok scanned
07.01.2008 20:55:49 File: C:\WINDOWS\system32\rasmans.dll ok scanned
07.01.2008 20:55:49 File: C:\WINDOWS\system32\mprdim.dll ok scanned
07.01.2008 20:55:49 File: C:\WINDOWS\system32\schedsvc.dll ok scanned
07.01.2008 20:55:49 File: C:\WINDOWS\system32\seclogon.dll ok scanned
07.01.2008 20:55:49 File: C:\WINDOWS\system32\sens.dll ok scanned
07.01.2008 20:55:49 File: C:\WINDOWS\system32\ipnathlp.dll ok scanned
07.01.2008 20:55:49 File: c:\windows\system32\srsvc.dll ok scanned
07.01.2008 20:55:49 File: C:\WINDOWS\system32\ssdpsrv.dll ok scanned
07.01.2008 20:55:49 File: C:\WINDOWS\system32\wiaservc.dll ok scanned
07.01.2008 20:55:49 File: C:\WINDOWS\system32\tapisrv.dll ok scanned
07.01.2008 20:55:49 File: C:\WINDOWS\system32\termsrv.dll ok scanned
07.01.2008 20:55:49 File: C:\WINDOWS\system32\trkwks.dll ok scanned
07.01.2008 20:55:49 File: C:\WINDOWS\system32\upnphost.dll ok scanned
07.01.2008 20:55:49 File: C:\WINDOWS\system32\uxtuneup.dll ok scanned
07.01.2008 20:55:49 File: c:\windows\system32\w32time.dll ok scanned
07.01.2008 20:55:49 File: C:\WINDOWS\system32\webclnt.dll ok scanned
07.01.2008 20:55:49 File: C:\WINDOWS\system32\wbem\wmisvc.dll ok scanned
07.01.2008 20:55:49 File: c:\windows\system32\mspmsnsv.dll ok scanned
07.01.2008 20:55:49 File: C:\WINDOWS\system32\wscsvc.dll ok scanned
07.01.2008 20:55:49 File: c:\windows\system32\wuauserv.dll ok scanned
07.01.2008 20:55:49 File: C:\WINDOWS\system32\wudfsvc.dll ok scanned
07.01.2008 20:55:49 File: C:\WINDOWS\system32\wzcsvc.dll ok scanned
07.01.2008 20:55:49 File: C:\WINDOWS\system32\xmlprov.dll ok scanned
07.01.2008 20:55:50 File: c:\windows\system32\drivers\acpi.sys ok scanned
07.01.2008 20:55:50 File: c:\windows\system32\drivers\aec.sys ok scanned
07.01.2008 20:55:50 File: C:\WINDOWS\system32\drivers\afd.sys ok scanned
07.01.2008 20:55:50 File: C:\WINDOWS\system32\svchost.exe ok scanned
07.01.2008 20:55:50 File: C:\WINDOWS\system32\alg.exe ok scanned
07.01.2008 20:55:50 File: c:\programme\avira\antivir personaledition classic\sched.exe ok scanned
07.01.2008 20:55:50 File: c:\programme\avira\antivir personaledition classic\avguard.exe ok scanned
07.01.2008 20:55:50 File: c:\windows\system32\drivers\arp1394.sys ok scanned
07.01.2008 20:55:50 File: C:\WINDOWS\microsoft.net\framework\v2.0.50727\aspnet_state.exe packed file PE_Patch
07.01.2008 20:55:50 File: C:\WINDOWS\microsoft.net\framework\v2.0.50727\aspnet_state.exe//PE_Patch ok scanned
07.01.2008 20:55:50 File: C:\WINDOWS\microsoft.net\framework\v2.0.50727\aspnet_state.exe ok scanned
07.01.2008 20:55:50 File: c:\windows\system32\drivers\asyncmac.sys ok scanned
07.01.2008 20:55:50 File: c:\windows\system32\drivers\atapi.sys ok scanned
07.01.2008 20:55:50 File: c:\windows\system32\drivers\atmarpc.sys ok scanned
07.01.2008 20:55:50 File: c:\windows\system32\drivers\audstub.sys ok scanned
07.01.2008 20:55:50 File: c:\programme\avira\antivir personaledition classic\avgio.sys ok scanned
07.01.2008 20:55:50 File: c:\programme\avira\antivir personaledition classic\avgntflt.sys ok scanned
07.01.2008 20:55:50 File: c:\windows\system32\drivers\avipbb.sys ok scanned
07.01.2008 20:55:50 File: c:\programme\avmwlanstick\wlannetservice.exe ok scanned
07.01.2008 20:55:50 File: c:\windows\system32\drivers\avmunet.sys ok scanned
07.01.2008 20:55:50 File: c:\windows\system32\drivers\ccdecode.sys ok scanned
07.01.2008 20:55:50 File: c:\windows\system32\drivers\cdrom.sys ok scanned
07.01.2008 20:55:50 File: C:\WINDOWS\system32\cisvc.exe ok scanned
07.01.2008 20:55:50 File: C:\WINDOWS\system32\clipsrv.exe ok scanned
07.01.2008 20:55:50 File: c:\windows\microsoft.net\framework\v2.0.50727\mscorsvw.exe ok scanned
07.01.2008 20:55:50 File: c:\windows\system32\dllhost.exe ok scanned
07.01.2008 20:55:50 File: c:\windows\system32\drivers\disk.sys ok scanned
07.01.2008 20:55:50 File: C:\WINDOWS\system32\dmadmin.exe ok scanned
07.01.2008 20:55:50 File: c:\windows\system32\drivers\dmboot.sys packed file PE_Patch
07.01.2008 20:55:50 File: c:\windows\system32\drivers\dmboot.sys//PE_Patch ok scanned
07.01.2008 20:55:50 File: c:\windows\system32\drivers\dmboot.sys ok scanned
07.01.2008 20:55:50 File: c:\windows\system32\drivers\dmio.sys ok scanned
07.01.2008 20:55:50 File: c:\windows\system32\drivers\dmload.sys ok scanned
07.01.2008 20:55:50 File: c:\windows\system32\drivers\dmusic.sys ok scanned
07.01.2008 20:55:50 File: c:\windows\system32\drivers\drmkaud.sys ok scanned
07.01.2008 20:55:50 File: c:\windows\system32\drivers\e1e5132.sys ok scanned
07.01.2008 20:55:50 File: c:\windows\system32\drivers\eio.sys ok scanned
07.01.2008 20:55:50 File: C:\WINDOWS\system32\services.exe ok scanned
07.01.2008 20:55:50 File: c:\windows\system32\svchost.exe ok scanned
07.01.2008 20:55:51 File: c:\windows\system32\drivers\fdc.sys ok scanned
07.01.2008 20:55:51 File: c:\windows\system32\drivers\flpydisk.sys ok scanned
07.01.2008 20:55:51 File: c:\windows\system32\drivers\fltmgr.sys packed file PE_Patch
07.01.2008 20:55:51 File: c:\windows\system32\drivers\fltmgr.sys//PE_Patch ok scanned
07.01.2008 20:55:51 File: c:\windows\system32\drivers\fltmgr.sys ok scanned
07.01.2008 20:55:51 File: c:\windows\system32\drivers\ftdisk.sys ok scanned
07.01.2008 20:55:51 File: c:\windows\system32\drivers\fwlanusb.sys ok scanned
07.01.2008 20:55:51 File: c:\windows\system32\drivers\msgpc.sys ok scanned
07.01.2008 20:55:51 File: c:\windows\system32\drivers\hdaudbus.sys packed file PE_Patch
07.01.2008 20:55:51 File: c:\windows\system32\drivers\hdaudbus.sys//PE_Patch ok scanned
07.01.2008 20:55:51 File: c:\windows\system32\drivers\hdaudbus.sys ok scanned
07.01.2008 20:55:51 File: c:\windows\system32\drivers\hidusb.sys ok scanned
07.01.2008 20:55:51 File: c:\windows\system32\drivers\hpzid412.sys ok scanned
07.01.2008 20:55:51 File: c:\windows\system32\drivers\hpzipr12.sys ok scanned
07.01.2008 20:55:51 File: c:\windows\system32\drivers\hpzius12.sys ok scanned
07.01.2008 20:55:51 File: c:\programme\haufe\idesk\ideskservice\ideskservice.exe ok scanned
07.01.2008 20:55:51 File: c:\windows\system32\drivers\http.sys ok scanned
07.01.2008 20:55:51 File: c:\windows\system32\drivers\i8042prt.sys ok scanned
07.01.2008 20:55:51 File: c:\programme\gemeinsame dateien\installshield\driver\1050\intel 32\idrivert.exe ok scanned
07.01.2008 20:55:51 File: c:\windows\system32\drivers\imapi.sys ok scanned
07.01.2008 20:55:51 File: c:\windows\system32\imapi.exe ok scanned
07.01.2008 20:55:51 File: c:\windows\system32\drivers\intelppm.sys ok scanned
07.01.2008 20:55:51 File: c:\windows\system32\drivers\ip6fw.sys ok scanned
07.01.2008 20:55:51 File: c:\windows\system32\drivers\ipfltdrv.sys ok scanned
07.01.2008 20:55:51 File: c:\windows\system32\drivers\ipinip.sys ok scanned
07.01.2008 20:55:51 File: c:\windows\system32\drivers\ipnat.sys ok scanned
07.01.2008 20:55:51 File: c:\windows\system32\drivers\ipsec.sys ok scanned
07.01.2008 20:55:51 File: c:\windows\system32\drivers\irenum.sys ok scanned
07.01.2008 20:55:51 File: c:\windows\system32\drivers\isapnp.sys ok scanned
07.01.2008 20:55:51 File: c:\windows\system32\drivers\kbdclass.sys ok scanned
07.01.2008 20:55:51 File: c:\windows\system32\drivers\kbdhid.sys ok scanned
07.01.2008 20:55:51 File: c:\windows\system32\drivers\klif.sys ok scanned
07.01.2008 20:55:52 File: c:\windows\system32\drivers\kmixer.sys ok scanned
07.01.2008 20:55:52 File: c:\windows\system32\mnmsrvc.exe ok scanned
07.01.2008 20:55:53 File: c:\windows\system32\drivers\mouclass.sys ok scanned
07.01.2008 20:55:53 File: c:\windows\system32\drivers\mouhid.sys ok scanned
07.01.2008 20:55:53 File: c:\windows\system32\drivers\mrxdav.sys packed file PE_Patch
07.01.2008 20:55:53 File: c:\windows\system32\drivers\mrxdav.sys//PE_Patch ok scanned
07.01.2008 20:55:53 File: c:\windows\system32\drivers\mrxdav.sys ok scanned
07.01.2008 20:55:53 File: c:\windows\system32\drivers\mrxsmb.sys packed file PE_Patch
07.01.2008 20:55:53 File: c:\windows\system32\drivers\mrxsmb.sys//PE_Patch ok scanned
07.01.2008 20:55:54 File: c:\windows\system32\drivers\mrxsmb.sys ok scanned
07.01.2008 20:55:54 File: c:\windows\system32\msdtc.exe ok scanned
07.01.2008 20:55:56 File: C:\WINDOWS\system32\msiexec.exe ok scanned
07.01.2008 20:55:56 File: c:\windows\system32\drivers\mskssrv.sys ok scanned
07.01.2008 20:55:57 File: c:\windows\system32\drivers\mspclock.sys ok scanned
07.01.2008 20:55:57 File: c:\windows\system32\drivers\mspqm.sys ok scanned
07.01.2008 20:55:57 File: c:\windows\system32\drivers\mssmbios.sys ok scanned
07.01.2008 20:55:57 File: c:\windows\system32\drivers\mstee.sys ok scanned
07.01.2008 20:55:57 File: c:\windows\system32\drivers\nabtsfec.sys ok scanned
07.01.2008 20:55:57 File: c:\windows\system32\drivers\ndisip.sys ok scanned
07.01.2008 20:55:57 File: c:\windows\system32\drivers\ndistapi.sys ok scanned
07.01.2008 20:55:57 File: c:\windows\system32\drivers\ndisuio.sys ok scanned
07.01.2008 20:55:57 File: c:\windows\system32\drivers\ndiswan.sys ok scanned
07.01.2008 20:55:57 File: c:\windows\system32\drivers\netbios.sys ok scanned
07.01.2008 20:55:57 File: c:\windows\system32\drivers\netbt.sys ok scanned
07.01.2008 20:55:57 File: C:\WINDOWS\system32\netdde.exe ok scanned
07.01.2008 20:55:57 File: C:\WINDOWS\system32\lsass.exe ok scanned
07.01.2008 20:55:57 File: c:\windows\system32\drivers\nic1394.sys ok scanned
07.01.2008 20:55:57 File: c:\windows\system32\drivers\nv4_mini.sys ok scanned
07.01.2008 20:55:57 File: C:\WINDOWS\system32\nvsvc32.exe ok scanned
07.01.2008 20:55:57 File: c:\windows\system32\drivers\nwlnkflt.sys ok scanned
07.01.2008 20:55:57 File: c:\windows\system32\drivers\nwlnkfwd.sys ok scanned
07.01.2008 20:55:57 File: c:\windows\system32\drivers\ohci1394.sys ok scanned
07.01.2008 20:55:57 File: c:\programme\gemeinsame dateien\microsoft shared\source engine\ose.exe ok scanned
07.01.2008 20:55:57 File: c:\windows\system32\drivers\pfc027.sys ok scanned
07.01.2008 20:55:57 File: c:\windows\system32\drivers\parport.sys ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\drivers\pci.sys ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\drivers\pciide.sys ok scanned
07.01.2008 20:55:58 File: C:\WINDOWS\system32\pctspk.exe ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\drivers\philcam2.sys ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\hpzipm12.exe ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\drivers\raspptp.sys ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\drivers\ptilink.sys ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\drivers\ptserlp.sys ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\drivers\rasacd.sys ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\drivers\rasl2tp.sys ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\drivers\raspppoe.sys ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\drivers\raspti.sys ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\drivers\rdbss.sys ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\drivers\rdpcdd.sys ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\sessmgr.exe ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\drivers\redbook.sys ok scanned
07.01.2008 20:55:58 File: C:\WINDOWS\system32\locator.exe ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\rpcss.dll ok scanned
07.01.2008 20:55:58 File: C:\WINDOWS\system32\rsvp.exe ok scanned
07.01.2008 20:55:58 File: C:\WINDOWS\system32\scardsvr.exe ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\drivers\secdrv.sys ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\drivers\serenum.sys ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\drivers\serial.sys ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\drivers\sfng32.sys ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\drivers\slip.sys ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\drivers\splitter.sys ok scanned
07.01.2008 20:55:58 File: C:\WINDOWS\system32\spoolsv.exe ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\drivers\sr.sys packed file PE_Patch
07.01.2008 20:55:58 File: c:\windows\system32\drivers\sr.sys//PE_Patch ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\drivers\sr.sys ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\drivers\srv.sys ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\drivers\ssmdrv.sys ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\drivers\ssm_bus.sys ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\drivers\ssm_mdfl.sys ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\drivers\ssm_mdm.sys ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\drivers\streamip.sys ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\drivers\swenum.sys ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\drivers\swmidi.sys ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\drivers\sysaudio.sys ok scanned
07.01.2008 20:55:58 File: C:\WINDOWS\system32\smlogsvc.exe ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\drivers\tcpip.sys ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\drivers\termdd.sys ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\drivers\update.sys ok scanned
07.01.2008 20:55:58 File: C:\WINDOWS\system32\ups.exe ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\drivers\usbaudio.sys ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\drivers\usbccgp.sys ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\drivers\usbehci.sys ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\drivers\usbhub.sys ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\drivers\usbprint.sys ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\drivers\usbscan.sys ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\drivers\usbstor.sys ok scanned
07.01.2008 20:55:58 File: c:\windows\system32\drivers\usbuhci.sys ok scanned
07.01.2008 20:55:59 File: c:\programme\windows live\messenger\usnsvc.exe ok scanned
07.01.2008 20:55:59 File: C:\WINDOWS\system32\drivers\vga.sys ok scanned
07.01.2008 20:55:59 File: c:\windows\system32\drivers\vmodem.sys ok scanned
07.01.2008 20:55:59 File: c:\windows\system32\drivers\vpctcom.sys ok scanned
07.01.2008 20:55:59 File: C:\WINDOWS\system32\vssvc.exe ok scanned
07.01.2008 20:55:59 File: c:\windows\system32\drivers\vvoice.sys ok scanned
07.01.2008 20:55:59 File: c:\windows\system32\drivers\wanarp.sys ok scanned
07.01.2008 20:55:59 File: c:\windows\system32\drivers\wdmaud.sys ok scanned
07.01.2008 20:55:59 File: c:\programme\windows live\installer\wlsetupsvc.exe ok scanned
07.01.2008 20:55:59 File: c:\windows\system32\wbem\wmiapsrv.exe ok scanned
07.01.2008 20:55:59 File: c:\programme\windows media player\wmpnetwk.exe ok scanned
07.01.2008 20:55:59 File: c:\windows\system32\drivers\wstcodec.sys ok scanned
07.01.2008 20:55:59 File: c:\windows\system32\drivers\wudfpf.sys ok scanned
07.01.2008 20:55:59 File: c:\windows\system32\drivers\wudfrd.sys ok scanned
07.01.2008 20:55:59 File: c:\windows\system32\javasup.vxd ok scanned
07.01.2008 20:55:59 File: c:\windows\system32\autochk.exe ok scanned
07.01.2008 20:55:59 File: c:\windows\inf\unregmp2.exe ok scanned
07.01.2008 20:55:59 File: C:\WINDOWS\system32\shmgrate.exe ok scanned
07.01.2008 20:55:59 File: c:\windows\system32\iedkcs32.dll ok scanned
07.01.2008 20:55:59 File: c:\windows\system32\advpack.dll ok scanned
07.01.2008 20:56:00 File: c:\windows\inf\mswmp.inf ok scanned
07.01.2008 20:56:00 File: C:\WINDOWS\system32\regsvr32.exe ok scanned
07.01.2008 20:56:00 File: C:\WINDOWS\system32\themeui.dll ok scanned
07.01.2008 20:56:00 File: C:\Programme\outlook express\setup50.exe//# ok scanned
07.01.2008 20:56:00 File: C:\Programme\outlook express\setup50.exe ok scanned
07.01.2008 20:56:00 File: c:\windows\system32\user.exe ok scanned
07.01.2008 20:56:00 File: c:\windows\inf\msnetmtg.inf ok scanned
07.01.2008 20:56:00 File: c:\windows\inf\msmsgs.inf ok scanned
07.01.2008 20:56:00 File: c:\windows\inf\wmp11.inf ok scanned
07.01.2008 20:56:00 File: c:\windows\system32\regsvr32.exe ok scanned
07.01.2008 20:56:00 File: C:\WINDOWS\system32\ie4uinit.exe ok scanned
07.01.2008 20:56:00 File: c:\windows\system32\mscories.dll ok scanned
07.01.2008 20:56:00 File: c:\windows\system32\comm.drv ok scanned
07.01.2008 20:56:00 File: c:\windows\system\vga.drv ok scanned
07.01.2008 20:56:00 File: c:\windows\system\mmsystem.dll ok scanned
07.01.2008 20:56:00 File: c:\windows\system\keyboard.drv ok scanned
07.01.2008 20:56:00 File: c:\windows\system\mouse.drv ok scanned
07.01.2008 20:56:00 File: c:\windows\system\wfwnet.drv ok scanned
07.01.2008 20:56:00 File: c:\windows\system32\progman.exe ok scanned
07.01.2008 20:56:00 File: c:\windows\system\sound.drv ok scanned
07.01.2008 20:56:00 File: c:\windows\system\system.drv ok scanned
07.01.2008 20:56:00 File: c:\windows\system32\midimap.dll ok scanned
07.01.2008 20:56:00 File: c:\windows\system32\imaadp32.acm ok scanned
07.01.2008 20:56:00 File: c:\windows\system32\msadp32.acm ok scanned
07.01.2008 20:56:00 File: c:\windows\system32\msg711.acm ok scanned
07.01.2008 20:56:01 File: c:\windows\system32\msgsm32.acm ok scanned
07.01.2008 20:56:01 File: c:\windows\system32\tssoft32.acm ok scanned
07.01.2008 20:56:01 File: c:\windows\system32\iccvid.dll ok scanned
07.01.2008 20:56:01 File: c:\windows\system32\msh263.drv ok scanned
07.01.2008 20:56:01 File: c:\windows\system32\ir32_32.dll ok scanned
07.01.2008 20:56:01 File: c:\windows\system32\ir41_32.ax ok scanned
07.01.2008 20:56:01 File: c:\windows\system32\iyuv_32.dll ok scanned
07.01.2008 20:56:01 File: c:\windows\system32\msrle32.dll ok scanned
07.01.2008 20:56:01 File: c:\windows\system32\msvidc32.dll ok scanned
07.01.2008 20:56:01 File: c:\windows\system32\msyuv.dll ok scanned
07.01.2008 20:56:01 File: c:\windows\system32\tsbyuv.dll ok scanned
07.01.2008 20:56:01 File: c:\windows\system32\msacm32.drv ok scanned
07.01.2008 20:56:01 File: c:\windows\system32\msg723.acm ok scanned
07.01.2008 20:56:01 File: c:\windows\system32\msh261.drv ok scanned
07.01.2008 20:56:01 File: c:\windows\system32\msaud32.acm ok scanned
07.01.2008 20:56:01 File: c:\windows\system32\sl_anet.acm ok scanned
07.01.2008 20:56:01 File: c:\windows\system32\iac25_32.ax ok scanned
07.01.2008 20:56:01 File: c:\windows\system32\ir50_32.dll ok scanned
07.01.2008 20:56:01 File: c:\windows\system32\l3codeca.acm ok scanned
07.01.2008 20:56:01 File: c:\windows\system32\wdmaud.drv ok scanned
07.01.2008 20:56:01 File: c:\windows\system32\vfwwdm32.dll ok scanned
07.01.2008 20:56:01 File: c:\windows\system32\vdowave.drv ok scanned
07.01.2008 20:56:01 File: c:\windows\system32\lhacm.acm ok scanned
07.01.2008 20:56:01 File: c:\windows\system32\tr2032.dll ok scanned
07.01.2008 20:56:01 File: c:\windows\system32\mpg4c32.dll ok scanned
07.01.2008 20:56:01 File: c:\windows\system32\vct3216.acm ok scanned
07.01.2008 20:56:01 File: c:\windows\system32\ivvideo.dll ok scanned
07.01.2008 20:56:01 File: c:\windows\system32\sirenacm.dll ok scanned
07.01.2008 20:56:02 File: C:\WINDOWS\system32\webcheck.dll ok scanned
07.01.2008 20:56:02 File: c:\windows\system32\stobject.dll ok scanned
07.01.2008 20:56:02 File: c:\windows\system32\wpdshserviceobj.dll ok scanned
07.01.2008 20:56:02 File: c:\windows\system32\logon.scr ok scanned
07.01.2008 20:56:02 File: C:\WINDOWS\system32\logon.scr ok scanned
07.01.2008 20:56:02 File: C:\WINDOWS\system32\browseui.dll ok scanned
07.01.2008 20:56:02 File: c:\windows\system32\mmsys.cpl ok scanned
07.01.2008 20:56:02 File: c:\windows\system32\icmui.dll ok scanned
07.01.2008 20:56:02 File: c:\windows\system32\rshx32.dll ok scanned
07.01.2008 20:56:02 File: c:\windows\system32\docprop.dll ok scanned
07.01.2008 20:56:02 File: c:\windows\system32\ntshrui.dll ok scanned
07.01.2008 20:56:03 File: c:\windows\system32\deskadp.dll ok scanned
07.01.2008 20:56:03 File: c:\windows\system32\deskmon.dll ok scanned
07.01.2008 20:56:03 File: c:\windows\system32\dssec.dll ok scanned
07.01.2008 20:56:03 File: c:\windows\system32\slayerxp.dll ok scanned
07.01.2008 20:56:03 File: c:\windows\system32\shscrap.dll ok scanned
07.01.2008 20:56:03 File: c:\windows\system32\diskcopy.dll ok scanned
07.01.2008 20:56:03 File: c:\windows\system32\ntlanui2.dll ok scanned
07.01.2008 20:56:04 File: C:\WINDOWS\system32\icmui.dll ok scanned
07.01.2008 20:56:04 File: c:\windows\system32\printui.dll ok scanned
07.01.2008 20:56:04 File: c:\windows\system32\dskquoui.dll ok scanned
07.01.2008 20:56:04 File: c:\windows\system32\syncui.dll ok scanned
07.01.2008 20:56:04 File: c:\windows\system32\hticons.dll ok scanned
07.01.2008 20:56:05 File: c:\windows\system32\fontext.dll ok scanned
07.01.2008 20:56:05 File: c:\windows\system32\deskperf.dll ok scanned
07.01.2008 20:56:05 File: c:\windows\system32\wiashext.dll ok scanned
07.01.2008 20:56:06 File: c:\windows\system32\remotepg.dll ok scanned
07.01.2008 20:56:06 File: c:\windows\system32\wshext.dll ok scanned
07.01.2008 20:56:06 File: c:\programme\gemeinsame dateien\system\ole db\oledb32.dll ok scanned
07.01.2008 20:56:06 File: c:\windows\system32\mstask.dll ok scanned
07.01.2008 20:56:06 File: C:\WINDOWS\system32\shdocvw.dll ok scanned
07.01.2008 20:56:06 File: c:\windows\system32\wuaucpl.cpl ok scanned
07.01.2008 20:56:07 File: C:\WINDOWS\system32\twext.dll ok scanned
07.01.2008 20:56:07 File: C:\WINDOWS\system32\shmedia.dll ok scanned
07.01.2008 20:56:09 File: c:\windows\system32\shdocvw.dll ok scanned
07.01.2008 20:56:10 File: c:\windows\system32\sendmail.dll ok scanned
07.01.2008 20:56:12 File: C:\WINDOWS\system32\occache.dll ok scanned
07.01.2008 20:56:12 File: C:\WINDOWS\system32\appwiz.cpl ok scanned
07.01.2008 20:56:12 File: C:\WINDOWS\system32\shimgvw.dll ok scanned
07.01.2008 20:56:13 File: C:\WINDOWS\system32\netplwiz.dll ok scanned
07.01.2008 20:56:13 File: C:\WINDOWS\system32\zipfldr.dll ok scanned
07.01.2008 20:56:14 File: C:\WINDOWS\system32\extmgr.dll ok scanned
07.01.2008 20:56:15 File: c:\windows\system32\msieftp.dll ok scanned
07.01.2008 20:56:15 File: c:\windows\system32\docprop2.dll ok scanned
07.01.2008 20:56:15 File: C:\WINDOWS\system32\dsquery.dll ok scanned
07.01.2008 20:56:15 File: C:\WINDOWS\system32\dsuiext.dll ok scanned
07.01.2008 20:56:16 File: C:\WINDOWS\system32\mydocs.dll ok scanned
07.01.2008 20:56:16 File: C:\WINDOWS\system32\cscui.dll ok scanned
07.01.2008 20:56:16 File: c:\windows\msagent\agentpsh.dll ok scanned
07.01.2008 20:56:17 File: c:\windows\system32\dfsshlex.dll ok scanned
07.01.2008 20:56:17 File: C:\WINDOWS\system32\photowiz.dll ok scanned
07.01.2008 20:56:18 File: C:\WINDOWS\system32\mmcshext.dll ok scanned
07.01.2008 20:56:18 File: c:\windows\system32\cabview.dll ok scanned
07.01.2008 20:56:18 File: c:\programme\outlook express\wabfind.dll ok scanned
07.01.2008 20:56:18 File: c:\windows\system32\wmpshell.dll ok scanned
07.01.2008 20:56:18 File: c:\windows\system32\nvshell.dll ok scanned
07.01.2008 20:56:18 File: c:\windows\system32\mscoree.dll ok scanned
07.01.2008 20:56:18 File: c:\programme\windows live\messenger\fsshext.8.5.1302.1018.dll ok scanned
07.01.2008 20:56:18 File: c:\windows\system32\dfshim.dll ok scanned
07.01.2008 20:56:18 File: C:\WINDOWS\system32\audiodev.dll ok scanned
07.01.2008 20:56:18 File: C:\WINDOWS\system32\wpdshext.dll ok scanned
07.01.2008 20:56:19 File: c:\programme\real\realplayer\rpshell.dll ok scanned
07.01.2008 20:56:19 File: c:\programme\tuneup utilities 2007\sdshelex-win32.dll ok scanned
07.01.2008 20:56:19 File: c:\programme\avira\antivir personaledition classic\shlext.dll ok scanned
07.01.2008 20:56:19 File: c:\programme\windows live toolbar\msntb.dll ok scanned
07.01.2008 20:56:19 File: c:\programme\windows live toolbar\components\de-de\msntabres.dll.mui ok scanned
07.01.2008 20:56:19 File: c:\programme\adobe\acrobat 6.0\reader\activex\acroiehelper.dll ok scanned
07.01.2008 20:56:19 File: c:\programme\gemeinsame dateien\microsoft shared\windows live\windowslivelogin.dll ok scanned
07.01.2008 20:56:20 File: c:\programme\netshow services\tools\asfindxr.exe ok scanned
07.01.2008 20:56:20 File: c:\programme\ahead\nero backitup\backitup.exe ok scanned
07.01.2008 20:56:20 File: c:\programme\msn gaming zone\windows\bckgzm.exe ok scanned
07.01.2008 20:56:20 File: c:\programme\msn gaming zone\windows\chkrzm.exe ok scanned
07.01.2008 20:56:20 File: c:\windows\system32\cmcfg32.dll ok scanned
07.01.2008 20:56:20 File: c:\programme\netmeeting\conf.exe ok scanned
07.01.2008 20:56:21 File: c:\programme\windows nt\dialer.exe ok scanned
07.01.2008 20:56:23 File: c:\programme\lexware\2006-2007\elfo2006.exe ok scanned
07.01.2008 20:56:23 File: c:\programme\haufe\haufereader\haufereader.exe ok scanned
07.01.2008 20:56:23 File: c:\windows\pchealth\helpctr\binaries\helpctr.exe ok scanned
07.01.2008 20:56:23 File: c:\programme\trend micro\hijackthis\hijackthis.exe packed file PE_Patch.UPX
07.01.2008 20:56:23 File: c:\programme\trend micro\hijackthis\hijackthis.exe//PE_Patch.UPX packed file UPX
07.01.2008 20:56:24 File: c:\programme\trend micro\hijackthis\hijackthis.exe//PE_Patch.UPX//UPX ok scanned
07.01.2008 20:56:24 File: c:\programme\trend micro\hijackthis\hijackthis.exe//PE_Patch.UPX ok scanned
07.01.2008 20:56:24 File: c:\programme\trend micro\hijackthis\hijackthis.exe ok scanned
Seitenanfang Seitenende