Warum kostenlos registrieren?

Nur als registriertes Mitglied hast Du vollen Zugriff auf alle Funktionen unserer Website. So kannst Du eigene Fragen stellen und hast die volle Übersicht über neue interessante Themen im Forum.
Jetzt kostenlos registrieren.

Login


IE 6.028 öffnet sich ständig von selbst

Warnungen vor Sicherheitslücken und Hilfe beim Enfernen von Viren, Würmern und Trojanern.

IE 6.028 öffnet sich ständig von selbst

Beitragvon Kernbohrer am 11.02.2005, 20:21

Hallo !

Ich weiss nicht so recht weiter bzw. ob es überhaupt ein sicherheitsrelevantes Problem ist. War in China im Hotel online über Netzwerkkabel des Hotels und Laptop. Seitdem öffnet sich unregelmäßig aber mehr als 50x pro Stunde der IE mit (entspr. eingestellter) Startseite.blank. Kurz vorher blitzt unten rechts im Display WWW in grüner fetter Schrift kurz auf.

Kann mir da jemand helfen ?

Logfile:
Logfile of HijackThis v1.99.0
Scan saved at 13:19:05, on 10.02.2005
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
D:\WINDOWS\System32\smss.exe
D:\WINDOWS\system32\winlogon.exe
D:\WINDOWS\system32\services.exe
D:\WINDOWS\system32\lsass.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\WINDOWS\system32\spoolsv.exe
D:\WINDOWS\Explorer.EXE
D:\Programme\Gemeinsame Dateien\Symantec Shared\ccEvtMgr.exe
D:\Programme\Norton Internet Security\NISUM.EXE
D:\PROGRA~1\EzButton\CPATR10.EXE
D:\PROGRA~1\GEMEIN~1\PCSuite\DATALA~1\DATALA~1.EXE
D:\PROGRA~1\Nokia\NOKIAP~1\TRAYAP~1.EXE
D:\Programme\Gemeinsame Dateien\Symantec Shared\ccApp.exe
D:\WINDOWS\System32\ctfmon.exe
D:\Programme\Messenger\msmsgs.exe
D:\Programme\Nokia\Nokia PC Suite 6\pcsync2.exe
D:\PROGRA~1\GEMEIN~1\PCSuite\Services\SERVIC~1.EXE
D:\PROGRA~1\GEMEIN~1\Nokia\MPAPI\MPAPI3s.exe
D:\Programme\Norton Internet Security\ccPxySvc.exe
D:\Programme\Norton AntiVirus\navapsvc.exe
D:\WINDOWS\System32\taskmgr.exe
C:\hijackthis\HijackThis.exe

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:\Programme\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - D:\Programme\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - D:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - D:\Programme\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [NeroCheck] D:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [CPATR10] D:\PROGRA~1\EzButton\CPATR10.EXE
O4 - HKLM\..\Run: [DataLayer] D:\PROGRA~1\GEMEIN~1\PCSuite\DATALA~1\DATALA~1.EXE
O4 - HKLM\..\Run: [PCSuiteTrayApplication] D:\PROGRA~1\Nokia\NOKIAP~1\TRAYAP~1.EXE
O4 - HKLM\..\Run: [ccApp] "D:\Programme\Gemeinsame Dateien\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [ccRegVfy] "D:\Programme\Gemeinsame Dateien\Symantec Shared\ccRegVfy.exe"
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] D:\PROGRA~1\SYMNET~1\SNDMon.exe
O4 - HKLM\..\Run: [SSC_UserPrompt] D:\Programme\Gemeinsame Dateien\Symantec Shared\Security Center\UsrPrmpt.exe
O4 - HKCU\..\Run: [CTFMON.EXE] D:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "D:\Programme\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [PcSync] D:\Programme\Nokia\Nokia PC Suite 6\pcsync2.exe /NoDialog
O4 - Global Startup: Microsoft Office.lnk = D:\Programme\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: WinZip Quick Pick.lnk = D:\Programme\WinZip\WZQKPICK.EXE
O4 - Global Startup: Adobe Reader - Schnellstart.lnk = D:\Programme\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: Nach Microsoft &Excel exportieren - res://D:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - D:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - D:\WINDOWS\web\related.htm
O23 - Service: Symantec Event Manager - Symantec Corporation - D:\Programme\Gemeinsame Dateien\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation Service - Symantec Corporation - D:\Programme\Gemeinsame Dateien\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Proxy Service - Symantec Corporation - D:\Programme\Norton Internet Security\ccPxySvc.exe
O23 - Service: Norton AntiVirus Auto-Protect-Dienst - Symantec Corporation - D:\Programme\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton Internet Security Accounts Manager - Symantec Corporation - D:\Programme\Norton Internet Security\NISUM.EXE
O23 - Service: ScriptBlocking Service - Symantec Corporation - D:\PROGRA~1\GEMEIN~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service - Symantec Corporation - D:\Programme\Gemeinsame Dateien\Symantec Shared\SNDSrvc.exe
O23 - Service: SymWMI Service - Symantec Corporation - D:\Programme\Gemeinsame Dateien\Symantec Shared\Security Center\SymWSC.exe

Danke schonmal und Gruss...

Klaus
Kernbohrer
 
Beiträge: 3
Registriert: 11.02.2005, 20:14


Beitragvon Nikita am 12.02.2005, 02:00

Hallo@Kernbohrer

#ClaerProg..lade die neuste Version <1.4.1
http://www.clearprog.de/downloads.php
<und saeubere den Browser.
Das Programm löscht die Surfspuren des Internet Explorers ab Version 5.0, des Netscape/Mozilla und des Opera:
- Cookies
- Verlauf
- Temporäre Internetfiles (Cache)



eScan-Erkennungstool
eSan ist hier unter dem Namen Free eScan Antivirus Toolkit Utility kostenlos erhältlich:
http://www.mwti.net/antivirus/free_utilities.asp
oeffne den Scanner--> noch nicht scannen--> gehe in Start<Ausfuehren< schreib rein: %temp% und suche
kavupd.exe, die klickst du an--> (Update- in DOS) ausführen

gehe in den abgesicherten Modus
http://www.tu-berlin.de/www/software/vi ... mode.shtml

und den Scanner mit der "mwav.exe"[oder:MWAVSCAN.COM] starten. Alle Häkchen setzen :
Auswählen: "all files", Memory, Startup-Folders, Registry, System Folders,
Services, Drive/All Local drives, Folder [C:\WINDOWS], Include SubDirectory

[*]Beim Start von e-scan sollten folgende Optionen aktiviert sein:
Bild

-->und "Scan " klicken.

Gehe wieder in den Normalmodus:

mache bitte folgendes:
nun öffnest du mit dem editor, die mwav.txt und gehst unter bearbeiten -> suchen, hier gibst du infected ein

Bild

jene zeile in der infected steht, markieren, und hier einfügen, weitersuchen usw.
und ganz unten steht die zusammenfassung, diese auch hier posten :)
Nikita
Moderator
 
Beiträge: 11478
Registriert: 07.12.2003, 16:53
Wohnort: Lissabon

Beitragvon Kernbohrer am 12.02.2005, 13:56

Hallo!l

Danke erstmal. Hat keine infected files gefunden, das log ist anbei:

Sat Feb 12 12:33:34 2005 => **********************************************************
Sat Feb 12 12:33:34 2005 => eScan AntiVirus Toolkit Utility.
Sat Feb 12 12:33:34 2005 => Copyright © 2003-2004, MicroWorld Technologies Inc.
Sat Feb 12 12:33:34 2005 => **********************************************************
Sat Feb 12 12:33:34 2005 => Version 4.8.7 (D:\DOKUME~1\STEFAN~1\LOKALE~1\Temp\mwavscan.com)
Sat Feb 12 12:33:34 2005 => Log File: D:\DOKUME~1\STEFAN~1\LOKALE~1\Temp\MWAV.LOG
Sat Feb 12 12:33:34 2005 => Latest Date of files inside MWAV: 11 Feb 2005 12:49:43.
Sat Feb 12 12:33:36 2005 => AV Library Loaded...
Sat Feb 12 12:33:36 2005 => Scanning File D:\DOKUME~1\STEFAN~1\LOKALE~1\Temp\kavss.exe
Sat Feb 12 12:33:36 2005 => Scanning File D:\DOKUME~1\STEFAN~1\LOKALE~1\Temp\Getvlist.exe
Sat Feb 12 12:33:36 2005 => Scanning File D:\DOKUME~1\STEFAN~1\LOKALE~1\Temp\kavss.dll
Sat Feb 12 12:33:36 2005 => Scanning File D:\DOKUME~1\STEFAN~1\LOKALE~1\Temp\kavssdi.dll
Sat Feb 12 12:33:36 2005 => Scanning File D:\DOKUME~1\STEFAN~1\LOKALE~1\Temp\kavssi.dll
Sat Feb 12 12:33:36 2005 => Scanning File D:\DOKUME~1\STEFAN~1\LOKALE~1\Temp\kavvlg.dll
Sat Feb 12 12:33:36 2005 => Scanning File D:\DOKUME~1\STEFAN~1\LOKALE~1\Temp\msvlclnt.dll
Sat Feb 12 12:33:36 2005 => Scanning File D:\DOKUME~1\STEFAN~1\LOKALE~1\Temp\ipc.dll
Sat Feb 12 12:33:36 2005 => Scanning File D:\DOKUME~1\STEFAN~1\LOKALE~1\Temp\main.avi
Sat Feb 12 12:33:37 2005 => Scanning File D:\DOKUME~1\STEFAN~1\LOKALE~1\Temp\virus.avi
Sat Feb 12 12:33:37 2005 => Virus Database Date: 2005/02/11
Sat Feb 12 12:33:37 2005 => Virus Database Count: 117901
Sat Feb 12 12:35:44 2005 => AV Library Unloaded (3)...
Sat Feb 12 12:43:37 2005 => **********************************************************
Sat Feb 12 12:43:37 2005 => eScan AntiVirus Toolkit Utility.
Sat Feb 12 12:43:37 2005 => Copyright © 2003-2004, MicroWorld Technologies Inc.
Sat Feb 12 12:43:37 2005 => **********************************************************
Sat Feb 12 12:43:37 2005 => Version 4.8.7 (D:\DOKUME~1\STEFAN~1\LOKALE~1\Temp\mwavscan.com)
Sat Feb 12 12:43:37 2005 => Log File: D:\DOKUME~1\STEFAN~1\LOKALE~1\Temp\MWAV.LOG
Sat Feb 12 12:43:37 2005 => Latest Date of files inside MWAV: 11 Feb 2005 12:49:43.
Sat Feb 12 12:43:38 2005 => AV Library Loaded...
Sat Feb 12 12:43:38 2005 => Scanning File D:\DOKUME~1\STEFAN~1\LOKALE~1\Temp\kavss.exe
Sat Feb 12 12:43:38 2005 => Scanning File D:\DOKUME~1\STEFAN~1\LOKALE~1\Temp\Getvlist.exe
Sat Feb 12 12:43:39 2005 => Scanning File D:\DOKUME~1\STEFAN~1\LOKALE~1\Temp\kavss.dll
Sat Feb 12 12:43:39 2005 => Scanning File D:\DOKUME~1\STEFAN~1\LOKALE~1\Temp\kavssdi.dll
Sat Feb 12 12:43:39 2005 => Scanning File D:\DOKUME~1\STEFAN~1\LOKALE~1\Temp\kavssi.dll
Sat Feb 12 12:43:39 2005 => Scanning File D:\DOKUME~1\STEFAN~1\LOKALE~1\Temp\kavvlg.dll
Sat Feb 12 12:43:39 2005 => Scanning File D:\DOKUME~1\STEFAN~1\LOKALE~1\Temp\msvlclnt.dll
Sat Feb 12 12:43:39 2005 => Scanning File D:\DOKUME~1\STEFAN~1\LOKALE~1\Temp\ipc.dll
Sat Feb 12 12:43:39 2005 => Scanning File D:\DOKUME~1\STEFAN~1\LOKALE~1\Temp\main.avi
Sat Feb 12 12:43:39 2005 => Scanning File D:\DOKUME~1\STEFAN~1\LOKALE~1\Temp\virus.avi
Sat Feb 12 12:43:39 2005 => Virus Database Date: 2005/02/11
Sat Feb 12 12:43:39 2005 => Virus Database Count: 117901

Sat Feb 12 12:43:50 2005 => **********************************************************
Sat Feb 12 12:43:50 2005 => eScan AntiVirus Toolkit Utility.
Sat Feb 12 12:43:50 2005 => Copyright © 2003-2004, MicroWorld Technologies Inc.
Sat Feb 12 12:43:50 2005 =>
Sat Feb 12 12:43:50 2005 => Support: support@mwti.net
Sat Feb 12 12:43:50 2005 => Web: http://www.mwti.net
Sat Feb 12 12:43:50 2005 => **********************************************************
Sat Feb 12 12:43:50 2005 => Version 4.8.7 (D:\DOKUME~1\STEFAN~1\LOKALE~1\Temp\mwavscan.com)
Sat Feb 12 12:43:50 2005 => Log File: D:\DOKUME~1\STEFAN~1\LOKALE~1\Temp\MWAV.LOG
Sat Feb 12 12:43:50 2005 => Windows Root Folder: D:\WINDOWS
Sat Feb 12 12:43:50 2005 => Windows Sys32 Folder: D:\WINDOWS\System32
Sat Feb 12 12:43:50 2005 => OS: Windows NT
Sat Feb 12 12:43:50 2005 => Latest Date of files inside MWAV: 11 Feb 2005 12:49:43.

Sat Feb 12 12:43:50 2005 => Options Selected by User:
Sat Feb 12 12:43:50 2005 => Memory Check: Enabled
Sat Feb 12 12:43:50 2005 => Registry Check: Enabled
Sat Feb 12 12:43:50 2005 => StartUp Folder Check: Enabled
Sat Feb 12 12:43:50 2005 => System Folder Check: Enabled
Sat Feb 12 12:43:50 2005 => System Area Check: Disabled
Sat Feb 12 12:43:50 2005 => Services Check: Enabled
Sat Feb 12 12:43:50 2005 => Drive Check Option Disabled
Sat Feb 12 12:43:50 2005 => Folder Check: Disabled

Sat Feb 12 12:43:50 2005 => ***** Scanning Memory Files *****
Sat Feb 12 12:43:50 2005 => Scanning File D:\WINDOWS\System32\smss.exe
Sat Feb 12 12:43:51 2005 => Scanning File D:\WINDOWS\System32\ntdll.dll
Sat Feb 12 12:43:51 2005 => Scanning File D:\WINDOWS\SYSTEM32\CSRSS.EXE
Sat Feb 12 12:43:51 2005 => Scanning File D:\WINDOWS\system32\CSRSRV.dll
Sat Feb 12 12:43:51 2005 => Scanning File D:\WINDOWS\system32\basesrv.dll
Sat Feb 12 12:43:51 2005 => Scanning File D:\WINDOWS\system32\winsrv.dll
Sat Feb 12 12:43:51 2005 => Scanning File D:\WINDOWS\system32\USER32.dll
Sat Feb 12 12:43:51 2005 => Scanning File D:\WINDOWS\system32\KERNEL32.dll
Sat Feb 12 12:43:51 2005 => Scanning File D:\WINDOWS\system32\GDI32.dll
Sat Feb 12 12:43:51 2005 => Scanning File D:\WINDOWS\system32\ADVAPI32.dll
Sat Feb 12 12:43:52 2005 => Scanning File D:\WINDOWS\system32\RPCRT4.dll
Sat Feb 12 12:43:52 2005 => Scanning File D:\WINDOWS\System32\sxs.dll
Sat Feb 12 12:43:52 2005 => Scanning File D:\WINDOWS\SYSTEM32\WINLOGON.EXE
Sat Feb 12 12:43:52 2005 => Scanning File D:\WINDOWS\system32\msvcrt.dll
Sat Feb 12 12:43:52 2005 => Scanning File D:\WINDOWS\system32\USERENV.dll
Sat Feb 12 12:43:52 2005 => Scanning File D:\WINDOWS\system32\NDdeApi.dll
Sat Feb 12 12:43:52 2005 => Scanning File D:\WINDOWS\system32\CRYPT32.dll
Sat Feb 12 12:43:53 2005 => Scanning File D:\WINDOWS\system32\MSASN1.dll
Sat Feb 12 12:43:53 2005 => Scanning File D:\WINDOWS\system32\Secur32.dll
Sat Feb 12 12:43:53 2005 => Scanning File D:\WINDOWS\system32\WINSTA.dll
Sat Feb 12 12:43:53 2005 => Scanning File D:\WINDOWS\system32\PROFMAP.dll
Sat Feb 12 12:43:53 2005 => Scanning File D:\WINDOWS\system32\NETAPI32.dll
Sat Feb 12 12:43:53 2005 => Scanning File D:\WINDOWS\system32\REGAPI.dll
Sat Feb 12 12:43:53 2005 => Scanning File D:\WINDOWS\system32\WS2_32.dll
Sat Feb 12 12:43:53 2005 => Scanning File D:\WINDOWS\system32\WS2HELP.dll
Sat Feb 12 12:43:54 2005 => Scanning File D:\WINDOWS\system32\AUTHZ.dll
Sat Feb 12 12:43:54 2005 => Scanning File D:\WINDOWS\system32\PSAPI.DLL
Sat Feb 12 12:43:54 2005 => Scanning File D:\WINDOWS\system32\VERSION.dll
Sat Feb 12 12:43:54 2005 => Scanning File D:\WINDOWS\system32\SETUPAPI.dll
Sat Feb 12 12:43:54 2005 => Scanning File D:\WINDOWS\System32\MSGINA.dll
Sat Feb 12 12:43:54 2005 => Scanning File D:\WINDOWS\system32\SHELL32.dll
Sat Feb 12 12:43:55 2005 => Scanning File D:\WINDOWS\system32\SHLWAPI.dll
Sat Feb 12 12:43:55 2005 => Scanning File D:\WINDOWS\system32\COMCTL32.dll
Sat Feb 12 12:43:55 2005 => Scanning File D:\WINDOWS\System32\ODBC32.dll
Sat Feb 12 12:43:55 2005 => Scanning File D:\WINDOWS\system32\comdlg32.dll
Sat Feb 12 12:43:55 2005 => Scanning File D:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.10.0_x-ww_f7fb5805\comctl32.dll
Sat Feb 12 12:43:55 2005 => Scanning File D:\WINDOWS\System32\odbcint.dll
Sat Feb 12 12:43:55 2005 => Scanning File D:\WINDOWS\System32\SHSVCS.dll
Sat Feb 12 12:43:56 2005 => Scanning File D:\WINDOWS\system32\sfc.dll
Sat Feb 12 12:43:56 2005 => Scanning File D:\WINDOWS\System32\sfc_os.dll
Sat Feb 12 12:43:56 2005 => Scanning File D:\WINDOWS\System32\WINTRUST.dll
Sat Feb 12 12:43:56 2005 => Scanning File D:\WINDOWS\system32\ole32.dll
Sat Feb 12 12:43:56 2005 => Scanning File D:\WINDOWS\system32\IMAGEHLP.dll
Sat Feb 12 12:43:56 2005 => Scanning File D:\WINDOWS\System32\WINMM.dll
Sat Feb 12 12:43:56 2005 => Scanning File D:\WINDOWS\system32\cscdll.dll
Sat Feb 12 12:43:56 2005 => Scanning File D:\WINDOWS\System32\rsaenh.dll
Sat Feb 12 12:43:57 2005 => Scanning File D:\WINDOWS\system32\WlNotify.dll
Sat Feb 12 12:43:57 2005 => Scanning File D:\WINDOWS\System32\WinSCard.dll
Sat Feb 12 12:43:57 2005 => Scanning File D:\WINDOWS\System32\WTSAPI32.dll
Sat Feb 12 12:43:57 2005 => Scanning File D:\WINDOWS\System32\WINSPOOL.DRV
Sat Feb 12 12:43:57 2005 => Scanning File D:\WINDOWS\system32\MPR.dll
Sat Feb 12 12:43:57 2005 => Scanning File D:\WINDOWS\System32\UxTheme.dll
Sat Feb 12 12:43:57 2005 => Scanning File D:\WINDOWS\System32\SAMLIB.dll
Sat Feb 12 12:43:57 2005 => Scanning File D:\WINDOWS\System32\cscui.dll
Sat Feb 12 12:43:57 2005 => Scanning File D:\WINDOWS\System32\NTMARTA.DLL
Sat Feb 12 12:43:58 2005 => Scanning File D:\WINDOWS\system32\WLDAP32.dll
Sat Feb 12 12:43:58 2005 => Scanning File D:\WINDOWS\System32\COMRes.dll
Sat Feb 12 12:43:58 2005 => Scanning File D:\WINDOWS\system32\OLEAUT32.dll
Sat Feb 12 12:43:58 2005 => Scanning File D:\WINDOWS\System32\CLBCATQ.DLL
Sat Feb 12 12:43:58 2005 => Scanning File D:\WINDOWS\system32\services.exe
Sat Feb 12 12:43:58 2005 => Scanning File D:\WINDOWS\system32\SCESRV.dll
Sat Feb 12 12:43:58 2005 => Scanning File D:\WINDOWS\system32\umpnpmgr.dll
Sat Feb 12 12:43:58 2005 => Scanning File D:\WINDOWS\system32\NCObjAPI.DLL
Sat Feb 12 12:43:59 2005 => Scanning File D:\WINDOWS\system32\eventlog.dll
Sat Feb 12 12:43:59 2005 => Scanning File D:\WINDOWS\system32\lsass.exe
Sat Feb 12 12:43:59 2005 => Scanning File D:\WINDOWS\system32\LSASRV.dll
Sat Feb 12 12:43:59 2005 => Scanning File D:\WINDOWS\system32\SAMSRV.dll
Sat Feb 12 12:43:59 2005 => Scanning File D:\WINDOWS\system32\cryptdll.dll
Sat Feb 12 12:43:59 2005 => Scanning File D:\WINDOWS\system32\DNSAPI.dll
Sat Feb 12 12:43:59 2005 => Scanning File D:\WINDOWS\system32\NTDSAPI.dll
Sat Feb 12 12:43:59 2005 => Scanning File D:\WINDOWS\system32\msprivs.dll
Sat Feb 12 12:43:59 2005 => Scanning File D:\WINDOWS\system32\kerberos.dll
Sat Feb 12 12:44:00 2005 => Scanning File D:\WINDOWS\system32\msv1_0.dll
Sat Feb 12 12:44:00 2005 => Scanning File D:\WINDOWS\system32\netlogon.dll
Sat Feb 12 12:44:00 2005 => Scanning File D:\WINDOWS\system32\w32time.dll
Sat Feb 12 12:44:00 2005 => Scanning File D:\WINDOWS\system32\MSVCP60.dll
Sat Feb 12 12:44:00 2005 => Scanning File D:\WINDOWS\system32\iphlpapi.dll
Sat Feb 12 12:44:00 2005 => Scanning File D:\WINDOWS\system32\schannel.dll
Sat Feb 12 12:44:00 2005 => Scanning File D:\WINDOWS\system32\wdigest.dll
Sat Feb 12 12:44:00 2005 => Scanning File D:\WINDOWS\system32\scecli.dll
Sat Feb 12 12:44:01 2005 => Scanning File D:\WINDOWS\system32\svchost.exe
Sat Feb 12 12:44:01 2005 => Scanning File d:\windows\system32\rpcss.dll
Sat Feb 12 12:44:01 2005 => Scanning File D:\WINDOWS\system32\mswsock.dll
Sat Feb 12 12:44:01 2005 => Scanning File D:\WINDOWS\System32\wshtcpip.dll
Sat Feb 12 12:44:01 2005 => Scanning File D:\WINDOWS\System32\winrnr.dll
Sat Feb 12 12:44:01 2005 => Scanning File D:\WINDOWS\system32\rasadhlp.dll
Sat Feb 12 12:44:01 2005 => Scanning File d:\windows\system32\cryptsvc.dll
Sat Feb 12 12:44:01 2005 => Scanning File d:\windows\system32\certcli.dll
Sat Feb 12 12:44:01 2005 => Scanning File d:\windows\system32\ATL.DLL
Sat Feb 12 12:44:02 2005 => Scanning File d:\windows\system32\CRYPTUI.dll
Sat Feb 12 12:44:02 2005 => Scanning File D:\WINDOWS\system32\WININET.dll
Sat Feb 12 12:44:02 2005 => Scanning File d:\windows\system32\ESENT.dll
Sat Feb 12 12:44:02 2005 => Scanning File d:\windows\system32\wbem\wmisvc.dll
Sat Feb 12 12:44:02 2005 => Scanning File d:\windows\system32\wbem\wbemcomn.dll
Sat Feb 12 12:44:02 2005 => Scanning File D:\WINDOWS\System32\VSSAPI.DLL
Sat Feb 12 12:44:02 2005 => Scanning File d:\windows\system32\srsvc.dll
Sat Feb 12 12:44:03 2005 => Scanning File d:\windows\system32\POWRPROF.dll
Sat Feb 12 12:44:03 2005 => Scanning File d:\windows\pchealth\helpctr\binaries\pchsvc.dll
Sat Feb 12 12:44:03 2005 => Scanning File d:\windows\system32\dmserver.dll
Sat Feb 12 12:44:03 2005 => Scanning File D:\WINDOWS\System32\es.dll
Sat Feb 12 12:44:03 2005 => Scanning File D:\WINDOWS\System32\wbem\wbemcore.dll
Sat Feb 12 12:44:03 2005 => Scanning File D:\WINDOWS\System32\wbem\esscli.dll
Sat Feb 12 12:44:04 2005 => Scanning File D:\WINDOWS\System32\wbem\FastProx.dll
Sat Feb 12 12:44:04 2005 => Scanning File D:\WINDOWS\System32\wbem\wmiutils.dll
Sat Feb 12 12:44:04 2005 => Scanning File D:\WINDOWS\System32\wbem\repdrvfs.dll
Sat Feb 12 12:44:04 2005 => Scanning File D:\WINDOWS\System32\wbem\wmiprvsd.dll
Sat Feb 12 12:44:04 2005 => Scanning File D:\WINDOWS\System32\wbem\wbemess.dll
Sat Feb 12 12:44:04 2005 => Scanning File D:\WINDOWS\System32\wbem\ncprov.dll
Sat Feb 12 12:44:04 2005 => Scanning File D:\WINDOWS\Explorer.EXE
Sat Feb 12 12:44:04 2005 => Scanning File D:\WINDOWS\System32\BROWSEUI.dll
Sat Feb 12 12:44:05 2005 => Scanning File D:\WINDOWS\System32\SHDOCVW.dll
Sat Feb 12 12:44:05 2005 => Scanning File D:\WINDOWS\system32\appHelp.dll
Sat Feb 12 12:44:05 2005 => Scanning File D:\WINDOWS\System32\themeui.dll
Sat Feb 12 12:44:05 2005 => Scanning File D:\WINDOWS\System32\MSIMG32.dll
Sat Feb 12 12:44:05 2005 => Scanning File D:\WINDOWS\System32\msutb.dll
Sat Feb 12 12:44:05 2005 => Scanning File D:\WINDOWS\System32\MSCTF.dll
Sat Feb 12 12:44:05 2005 => Scanning File D:\WINDOWS\System32\LINKINFO.dll
Sat Feb 12 12:44:06 2005 => Scanning File D:\WINDOWS\System32\ntshrui.dll
Sat Feb 12 12:44:06 2005 => Scanning File D:\WINDOWS\system32\NETSHELL.dll
Sat Feb 12 12:44:06 2005 => Scanning File D:\WINDOWS\system32\credui.dll
Sat Feb 12 12:44:06 2005 => Scanning File D:\WINDOWS\System32\msi.dll
Sat Feb 12 12:44:06 2005 => Scanning File D:\WINDOWS\System32\drprov.dll
Sat Feb 12 12:44:06 2005 => Scanning File D:\WINDOWS\System32\ntlanman.dll
Sat Feb 12 12:44:06 2005 => Scanning File D:\WINDOWS\System32\NETUI0.dll
Sat Feb 12 12:44:06 2005 => Scanning File D:\WINDOWS\System32\NETUI1.dll
Sat Feb 12 12:44:07 2005 => Scanning File D:\WINDOWS\System32\NETRAP.dll
Sat Feb 12 12:44:07 2005 => Scanning File D:\WINDOWS\System32\davclnt.dll
Sat Feb 12 12:44:07 2005 => Scanning File D:\PROGRA~1\MICROS~2\Office10\msohev.dll
Sat Feb 12 12:44:07 2005 => Scanning File D:\PROGRA~1\Adobe\ACROBA~1.0\ActiveX\PDFShell.dll
Sat Feb 12 12:44:07 2005 => Scanning File D:\WINDOWS\system32\urlmon.dll
Sat Feb 12 12:44:07 2005 => Scanning File D:\DOKUME~1\STEFAN~1\LOKALE~1\Temp\mwavscan.com
Sat Feb 12 12:44:08 2005 => Scanning File D:\DOKUME~1\STEFAN~1\LOKALE~1\Temp\msvlclnt.dll
Sat Feb 12 12:44:08 2005 => Scanning File D:\DOKUME~1\STEFAN~1\LOKALE~1\Temp\kavssdi.dll
Sat Feb 12 12:44:08 2005 => Scanning File D:\DOKUME~1\STEFAN~1\LOKALE~1\Temp\kavssd.dll
Sat Feb 12 12:44:08 2005 => Scanning File D:\DOKUME~1\STEFAN~1\LOKALE~1\Temp\kavssi.dll
Sat Feb 12 12:44:08 2005 => Scanning File D:\DOKUME~1\STEFAN~1\LOKALE~1\Temp\ipc.dll
Sat Feb 12 12:44:08 2005 => Scanning File D:\DOKUME~1\STEFAN~1\LOKALE~1\Temp\RICHED32.DLL
Sat Feb 12 12:44:08 2005 => Scanning File D:\DOKUME~1\STEFAN~1\LOKALE~1\Temp\PSAPI.DLL
Sat Feb 12 12:44:08 2005 => Scanning File D:\WINDOWS\System32\VDMDBG.DLL
Sat Feb 12 12:44:08 2005 => Scanning File D:\DOKUME~1\STEFAN~1\LOKALE~1\Temp\kavss.exe
Sat Feb 12 12:44:08 2005 => Scanning File D:\DOKUME~1\STEFAN~1\LOKALE~1\Temp\kavss.dll

Sat Feb 12 12:44:09 2005 => ***** Scanning Registry Files *****

Sat Feb 12 12:44:09 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad
Sat Feb 12 12:44:09 2005 => *** File D:\WINDOWS\system32\SHELL32.dll having Size Restriction ***
Sat Feb 12 12:44:09 2005 => Scanning File D:\WINDOWS\system32\SHELL32.dll [**]
Sat Feb 12 12:44:09 2005 => *** File D:\WINDOWS\system32\SHELL32.dll having Size Restriction ***
Sat Feb 12 12:44:09 2005 => Scanning File D:\WINDOWS\system32\SHELL32.dll [**]
Sat Feb 12 12:44:09 2005 => Scanning File D:\WINDOWS\System32\webcheck.dll
Sat Feb 12 12:44:09 2005 => Scanning File D:\WINDOWS\System32\stobject.dll

Sat Feb 12 12:44:09 2005 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad

Sat Feb 12 12:44:09 2005 => Scanning HKLM\SOFTWARE\Microsoft\Internet Explorer\Plugins\Extension

Sat Feb 12 12:44:09 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects
Sat Feb 12 12:44:09 2005 => {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} = D:\Programme\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
Sat Feb 12 12:44:09 2005 => Scanning File D:\PROGRA~1\Adobe\ACROBA~1.0\ActiveX\ACROIE~1.DLL
Sat Feb 12 12:44:09 2005 => {BDF3E430-B101-42AD-A544-FADC6B084872} = D:\Programme\Norton AntiVirus\NavShExt.dll
Sat Feb 12 12:44:09 2005 => Scanning File D:\PROGRA~1\NORTON~1\NavShExt.dll

Sat Feb 12 12:44:09 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\SharedTaskScheduler
Sat Feb 12 12:44:09 2005 => Scanning File D:\WINDOWS\System32\browseui.dll
Sat Feb 12 12:44:09 2005 => Scanning File D:\WINDOWS\System32\browseui.dll

Sat Feb 12 12:44:09 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
Sat Feb 12 12:44:09 2005 => Scanning File D:\WINDOWS\system32\mmsys.cpl
Sat Feb 12 12:44:10 2005 => Scanning File D:\WINDOWS\system32\icmui.dll
Sat Feb 12 12:44:10 2005 => Scanning File D:\WINDOWS\system32\rshx32.dll
Sat Feb 12 12:44:10 2005 => Scanning File D:\WINDOWS\system32\docprop.dll
Sat Feb 12 12:44:10 2005 => Scanning File D:\WINDOWS\system32\ntshrui.dll
Sat Feb 12 12:44:10 2005 => Scanning File D:\WINDOWS\System32\themeui.dll
Sat Feb 12 12:44:10 2005 => Scanning File D:\WINDOWS\system32\deskadp.dll
Sat Feb 12 12:44:10 2005 => Scanning File D:\WINDOWS\system32\deskmon.dll
Sat Feb 12 12:44:10 2005 => ERROR!!! Invalid Entry {42071714-76d4-11d1-8b24-00a0c9068ff3} = deskpan.dll (in key SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved). Removing it.
Sat Feb 12 12:44:10 2005 => Scanning File D:\WINDOWS\system32\dssec.dll
Sat Feb 12 12:44:10 2005 => Scanning File D:\WINDOWS\system32\SlayerXP.dll
Sat Feb 12 12:44:10 2005 => Scanning File D:\WINDOWS\system32\shscrap.dll
Sat Feb 12 12:44:10 2005 => Scanning File D:\WINDOWS\system32\diskcopy.dll
Sat Feb 12 12:44:10 2005 => Scanning File D:\WINDOWS\system32\ntlanui2.dll
Sat Feb 12 12:44:10 2005 => Scanning File D:\WINDOWS\System32\icmui.dll
Sat Feb 12 12:44:10 2005 => Scanning File D:\WINDOWS\system32\icmui.dll
Sat Feb 12 12:44:10 2005 => Scanning File D:\WINDOWS\system32\printui.dll
Sat Feb 12 12:44:11 2005 => Scanning File D:\WINDOWS\system32\dskquoui.dll
Sat Feb 12 12:44:11 2005 => Scanning File D:\WINDOWS\system32\syncui.dll
Sat Feb 12 12:44:11 2005 => Scanning File D:\WINDOWS\System32\hticons.dll
Sat Feb 12 12:44:11 2005 => Scanning File D:\WINDOWS\system32\fontext.dll
Sat Feb 12 12:44:11 2005 => Scanning File D:\WINDOWS\system32\icmui.dll
Sat Feb 12 12:44:11 2005 => Scanning File D:\WINDOWS\system32\rshx32.dll
Sat Feb 12 12:44:11 2005 => Scanning File D:\WINDOWS\system32\ntshrui.dll
Sat Feb 12 12:44:11 2005 => Scanning File D:\WINDOWS\system32\deskperf.dll
Sat Feb 12 12:44:11 2005 => Scanning File D:\WINDOWS\system32\cryptext.dll
Sat Feb 12 12:44:11 2005 => Scanning File D:\WINDOWS\system32\cryptext.dll
Sat Feb 12 12:44:11 2005 => Scanning File D:\WINDOWS\system32\NETSHELL.dll
Sat Feb 12 12:44:11 2005 => Scanning File D:\WINDOWS\system32\NETSHELL.dll
Sat Feb 12 12:44:11 2005 => Scanning File D:\WINDOWS\system32\wiashext.dll
Sat Feb 12 12:44:11 2005 => Scanning File D:\WINDOWS\system32\wiashext.dll
Sat Feb 12 12:44:11 2005 => Scanning File D:\WINDOWS\system32\wiashext.dll
Sat Feb 12 12:44:11 2005 => Scanning File D:\WINDOWS\system32\wiashext.dll
Sat Feb 12 12:44:11 2005 => Scanning File D:\WINDOWS\system32\wiashext.dll
Sat Feb 12 12:44:11 2005 => Scanning File D:\WINDOWS\System32\remotepg.dll
Sat Feb 12 12:44:11 2005 => Scanning File D:\WINDOWS\System32\wuaueng.dll
Sat Feb 12 12:44:11 2005 => Scanning File D:\WINDOWS\System32\wshext.dll
Sat Feb 12 12:44:11 2005 => Scanning File D:\PROGRA~1\GEMEIN~1\System\OLEDB~1\oledb32.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\mstask.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\mstask.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\mstask.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\system32\shdocvw.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\system32\shdocvw.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\system32\shdocvw.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\system32\shdocvw.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\system32\shdocvw.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\system32\shdocvw.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\system32\shdocvw.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\system32\shdocvw.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\shmedia.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\shmedia.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\shmedia.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\shmedia.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\shmedia.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\shmedia.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\browseui.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\browseui.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\browseui.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\browseui.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\browseui.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\browseui.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\browseui.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\browseui.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\browseui.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\browseui.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\browseui.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\browseui.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\browseui.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\browseui.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\browseui.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\browseui.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\browseui.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\browseui.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\browseui.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\browseui.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\browseui.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\browseui.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\browseui.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\browseui.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\browseui.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\browseui.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\browseui.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\browseui.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\browseui.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\shdocvw.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\shdocvw.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\shdocvw.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\shdocvw.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\system32\shdocvw.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\shdocvw.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\shdocvw.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\shdocvw.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\shdocvw.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\shdocvw.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\shdocvw.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\shdocvw.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\shdocvw.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\shdocvw.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\shdocvw.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\shdocvw.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\shdocvw.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\sendmail.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\sendmail.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\occache.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\webcheck.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\webcheck.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\webcheck.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\webcheck.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\webcheck.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\webcheck.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\webcheck.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\webcheck.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\webcheck.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\webcheck.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\appwiz.cpl
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\appwiz.cpl
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\appwiz.cpl
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\shimgvw.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\shimgvw.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\shimgvw.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\shimgvw.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\shimgvw.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\shimgvw.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\netplwiz.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\netplwiz.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\netplwiz.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\netplwiz.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\zipfldr.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\zipfldr.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\zipfldr.dll
Sat Feb 12 12:44:12 2005 => Scanning File D:\WINDOWS\System32\cdfview.dll
Sat Feb 12 12:44:13 2005 => Scanning File D:\WINDOWS\System32\cdfview.dll
Sat Feb 12 12:44:13 2005 => Scanning File D:\WINDOWS\System32\cdfview.dll
Sat Feb 12 12:44:13 2005 => Scanning File D:\WINDOWS\System32\cdfview.dll
Sat Feb 12 12:44:13 2005 => Scanning File D:\WINDOWS\System32\cdfview.dll
Sat Feb 12 12:44:13 2005 => Scanning File D:\WINDOWS\System32\msieftp.dll
Sat Feb 12 12:44:13 2005 => Scanning File D:\WINDOWS\System32\docprop2.dll
Sat Feb 12 12:44:13 2005 => Scanning File D:\WINDOWS\System32\docprop2.dll
Sat Feb 12 12:44:13 2005 => Scanning File D:\WINDOWS\System32\docprop2.dll
Sat Feb 12 12:44:13 2005 => Scanning File D:\WINDOWS\System32\docprop2.dll
Sat Feb 12 12:44:13 2005 => Scanning File D:\WINDOWS\System32\docprop2.dll
Sat Feb 12 12:44:13 2005 => Scanning File D:\WINDOWS\System32\docprop2.dll
Sat Feb 12 12:44:13 2005 => Scanning File D:\WINDOWS\System32\dsquery.dll
Sat Feb 12 12:44:13 2005 => Scanning File D:\WINDOWS\System32\dsquery.dll
Sat Feb 12 12:44:13 2005 => Scanning File D:\WINDOWS\System32\dsquery.dll
Sat Feb 12 12:44:13 2005 => Scanning File D:\WINDOWS\System32\dsquery.dll
Sat Feb 12 12:44:13 2005 => Scanning File D:\WINDOWS\System32\dsuiext.dll
Sat Feb 12 12:44:13 2005 => Scanning File D:\WINDOWS\System32\dsuiext.dll
Sat Feb 12 12:44:13 2005 => Scanning File D:\WINDOWS\System32\mydocs.dll
Sat Feb 12 12:44:13 2005 => Scanning File D:\WINDOWS\System32\mydocs.dll
Sat Feb 12 12:44:13 2005 => Scanning File D:\WINDOWS\System32\mydocs.dll
Sat Feb 12 12:44:13 2005 => Scanning File D:\WINDOWS\System32\cscui.dll
Sat Feb 12 12:44:13 2005 => Scanning File D:\WINDOWS\System32\cscui.dll
Sat Feb 12 12:44:13 2005 => Scanning File D:\WINDOWS\System32\cscui.dll
Sat Feb 12 12:44:13 2005 => Scanning File D:\WINDOWS\msagent\agentpsh.dll
Sat Feb 12 12:44:13 2005 => Scanning File D:\WINDOWS\System32\dfsshlex.dll
Sat Feb 12 12:44:13 2005 => Scanning File D:\WINDOWS\System32\photowiz.dll
Sat Feb 12 12:44:13 2005 => Scanning File D:\WINDOWS\System32\mmcshext.dll
Sat Feb 12 12:44:13 2005 => Scanning File D:\WINDOWS\system32\cabview.dll
Sat Feb 12 12:44:13 2005 => Scanning File D:\PROGRA~1\OUTLOO~1\wabfind.dll
Sat Feb 12 12:44:13 2005 => Scanning File D:\WINDOWS\System32\wmpshell.dll
Sat Feb 12 12:44:13 2005 => Scanning File D:\WINDOWS\System32\wmpshell.dll
Sat Feb 12 12:44:13 2005 => Scanning File D:\WINDOWS\System32\wmpshell.dll
Sat Feb 12 12:44:13 2005 => Scanning File D:\PROGRA~1\GEMEIN~1\MICROS~1\WEBFOL~1\MSONSEXT.DLL
Sat Feb 12 12:44:14 2005 => Scanning File D:\PROGRA~1\MICROS~2\Office10\OLKFSTUB.DLL
Sat Feb 12 12:44:14 2005 => Scanning File D:\PROGRA~1\MICROS~2\Office10\msohev.dll
Sat Feb 12 12:44:14 2005 => Scanning File D:\PROGRA~1\WINZIP\WZSHLSTB.DLL
Sat Feb 12 12:44:14 2005 => Scanning File D:\PROGRA~1\WINZIP\WZSHLSTB.DLL
Sat Feb 12 12:44:14 2005 => Scanning File D:\PROGRA~1\WINZIP\WZSHLSTB.DLL
Sat Feb 12 12:44:14 2005 => Scanning File D:\PROGRA~1\WINZIP\WZSHLSTB.DLL
Sat Feb 12 12:44:14 2005 => Scanning File D:\PROGRA~1\Nokia\NOKIAP~1\PHONEB~1.DLL
Sat Feb 12 12:44:14 2005 => Scanning File D:\PROGRA~1\Nokia\NOKIAP~1\CONTAC~1.DLL
Sat Feb 12 12:44:15 2005 => Scanning File D:\PROGRA~1\Nokia\NOKIAP~1\MESSAG~1.DLL
Sat Feb 12 12:44:15 2005 => Scanning File D:\Programme\WinRAR\rarext.dll

Sat Feb 12 12:44:15 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows

Sat Feb 12 12:44:15 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon
Sat Feb 12 12:44:15 2005 => Scanning File D:\WINDOWS\Explorer.exe
Sat Feb 12 12:44:15 2005 => Scanning File D:\WINDOWS\system32\userinit.exe

Sat Feb 12 12:44:15 2005 => Scanning HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon

Sat Feb 12 12:44:15 2005 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System

Sat Feb 12 12:44:15 2005 => Scanning HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows

Sat Feb 12 12:44:15 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AEDEBUG
Sat Feb 12 12:44:15 2005 => Scanning File D:\WINDOWS\system32\drwtsn32.exe

Sat Feb 12 12:44:15 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options
Sat Feb 12 12:44:15 2005 => Scanning File D:\WINDOWS\system32\ntsd.exe

Sat Feb 12 12:44:15 2005 => Scanning HKCU\Control Panel\Desktop
Sat Feb 12 12:44:16 2005 => Scanning File D:\WINDOWS\System32\logon.scr

Sat Feb 12 12:44:16 2005 => Scanning HKLM\SYSTEM\CurrentControlSet\Control\WOW
Sat Feb 12 12:44:16 2005 => Scanning File D:\WINDOWS\system32\ntvdm.exe
Sat Feb 12 12:44:16 2005 => Scanning File D:\WINDOWS\system32\ntvdm.exe

Sat Feb 12 12:44:16 2005 => Scanning HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components
Sat Feb 12 12:44:16 2005 => Scanning File D:\WINDOWS\inf\unregmp2.exe
Sat Feb 12 12:44:16 2005 => Scanning File D:\WINDOWS\system32\shmgrate.exe
Sat Feb 12 12:44:16 2005 => Scanning File D:\WINDOWS\system32\RunDLL32.exe
Sat Feb 12 12:44:16 2005 => Scanning File D:\WINDOWS\system32\shmgrate.exe
Sat Feb 12 12:44:16 2005 => Scanning File D:\WINDOWS\system32\rundll32.exe
Sat Feb 12 12:44:16 2005 => Scanning File D:\WINDOWS\system32\regsvr32.exe
Sat Feb 12 12:44:17 2005 => Scanning File D:\WINDOWS\System32\rundll32.exe
Sat Feb 12 12:44:17 2005 => Scanning File D:\PROGRA~1\OUTLOO~1\setup50.exe
Sat Feb 12 12:44:17 2005 => Scanning File D:\WINDOWS\system32\rundll32.exe
Sat Feb 12 12:44:17 2005 => Scanning File D:\WINDOWS\system32\rundll32.exe
Sat Feb 12 12:44:17 2005 => Scanning File D:\WINDOWS\system32\rundll32.exe
Sat Feb 12 12:44:17 2005 => Scanning File D:\PROGRA~1\OUTLOO~1\setup50.exe
Sat Feb 12 12:44:17 2005 => Scanning File D:\WINDOWS\system32\regsvr32.exe
Sat Feb 12 12:44:17 2005 => Scanning File D:\WINDOWS\system32\ie4uinit.exe

Sat Feb 12 12:44:17 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run

Sat Feb 12 12:44:17 2005 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run

Sat Feb 12 12:44:17 2005 => Scanning HKLM\SOFTWARE\Microsoft\WindowsNT\CurrentVersion\Run

Sat Feb 12 12:44:17 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Run

Sat Feb 12 12:44:17 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Sat Feb 12 12:44:17 2005 => Scanning File D:\WINDOWS\system32\NeroCheck.exe
Sat Feb 12 12:44:17 2005 => Scanning File D:\PROGRA~1\EzButton\CPATR10.EXE
Sat Feb 12 12:44:17 2005 => Scanning File D:\PROGRA~1\GEMEIN~1\PCSuite\DATALA~1\DATALA~1.EXE
Sat Feb 12 12:44:18 2005 => Scanning File D:\PROGRA~1\Nokia\NOKIAP~1\TRAYAP~1.EXE
Sat Feb 12 12:44:18 2005 => Scanning File D:\PROGRA~1\GEMEIN~1\SYMANT~1\ccApp.exe
Sat Feb 12 12:44:18 2005 => Scanning File D:\PROGRA~1\GEMEIN~1\SYMANT~1\ccRegVfy.exe
Sat Feb 12 12:44:18 2005 => Scanning File D:\PROGRA~1\SYMNET~1\SNDMon.exe
Sat Feb 12 12:44:18 2005 => Scanning File D:\PROGRA~1\GEMEIN~1\SYMANT~1\SECURI~1\UsrPrmpt.exe

Sat Feb 12 12:44:18 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce

Sat Feb 12 12:44:19 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnceEx

Sat Feb 12 12:44:19 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices

Sat Feb 12 12:44:19 2005 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServicesOnce

Sat Feb 12 12:44:19 2005 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Sat Feb 12 12:44:19 2005 => Scanning File D:\WINDOWS\System32\ctfmon.exe
Sat Feb 12 12:44:19 2005 => Scanning File D:\Programme\Messenger\msmsgs.exe
Sat Feb 12 12:44:19 2005 => Scanning File D:\PROGRA~1\Nokia\NOKIAP~1\pcsync2.exe

Sat Feb 12 12:44:20 2005 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce

Sat Feb 12 12:44:20 2005 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnceEx

Sat Feb 12 12:44:20 2005 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices

Sat Feb 12 12:44:20 2005 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce\Setup

Sat Feb 12 12:44:20 2005 => Scanning HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Sat Feb 12 12:44:20 2005 => Scanning File D:\WINDOWS\System32\CTFMON.EXE
Sat Feb 12 12:44:20 2005 => Scanning File D:\PROGRA~1\SYMNET~1\SNDWarn.exe

Sat Feb 12 12:44:20 2005 => Scanning HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce

Sat Feb 12 12:44:20 2005 => Scanning HKCR\txtfile\shell\open\command

Sat Feb 12 12:44:20 2005 => Scanning HKCR\comfile\shell\open\command

Sat Feb 12 12:44:20 2005 => Scanning HKCR\exefile\shell\open\command

Sat Feb 12 12:44:20 2005 => Scanning HKCR\dllfile\shell\open\command

Sat Feb 12 12:44:20 2005 => Scanning HKCR\batfile\shell\open\command

Sat Feb 12 12:44:20 2005 => Scanning HKCR\piffile\shell\open\command

Sat Feb 12 12:44:20 2005 => Scanning HKCR\scrfile\shell\open\command

Sat Feb 12 12:44:21 2005 => Scanning HKCR\scrfile\shell\config\command

Sat Feb 12 12:44:21 2005 => Scanning HKCR\regfile\shell\open\command

Sat Feb 12 12:44:21 2005 => Scanning HKCR\htmlfile\shell\open\command
Sat Feb 12 12:44:21 2005 => Scanning File D:\PROGRA~1\INTERN~1\iexplore.exe

Sat Feb 12 12:44:21 2005 => Scanning HKCR\htafile\shell\open\command
Sat Feb 12 12:44:21 2005 => Scanning File D:\WINDOWS\System32\mshta.exe

Sat Feb 12 12:44:21 2005 => Scanning HKCR\jsfile\shell\open\command
Sat Feb 12 12:44:21 2005 => Scanning File D:\WINDOWS\System32\WScript.exe

Sat Feb 12 12:44:21 2005 => Scanning HKCR\jsefile\shell\open\command
Sat Feb 12 12:44:21 2005 => Scanning File D:\WINDOWS\System32\WScript.exe

Sat Feb 12 12:44:21 2005 => Scanning HKCR\vbsfile\shell\open\command
Sat Feb 12 12:44:21 2005 => Scanning File D:\WINDOWS\System32\WScript.exe

Sat Feb 12 12:44:21 2005 => Scanning HKCR\vbefile\shell\open\command
Sat Feb 12 12:44:21 2005 => Scanning File D:\WINDOWS\System32\WScript.exe

Sat Feb 12 12:44:21 2005 => Scanning HKCR\wshfile\shell\open\command
Sat Feb 12 12:44:21 2005 => Scanning File D:\WINDOWS\System32\WScript.exe

Sat Feb 12 12:44:21 2005 => Scanning HKCR\wsffile\shell\open\command
Sat Feb 12 12:44:21 2005 => Scanning File D:\WINDOWS\System32\WScript.exe

Sat Feb 12 12:44:21 2005 => ***** Scanning StartUp Folders *****

Sat Feb 12 12:44:21 2005 => ***** Scanning D:\Dokumente und Einstellungen\Stefan Wies\Startmenü\Programme\Autostart Folder *****
Sat Feb 12 12:44:21 2005 => Scanning Folder: D:\Dokumente und Einstellungen\Stefan Wies\Startmenü\Programme\Autostart\*.*
Sat Feb 12 12:44:22 2005 => Scanning File D:\Dokumente und Einstellungen\Stefan Wies\Startmenü\Programme\Autostart\desktop.ini [**]

Sat Feb 12 12:44:22 2005 => ***** Scanning D:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart Folder *****
Sat Feb 12 12:44:22 2005 => Scanning Folder: D:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\*.*
Sat Feb 12 12:44:22 2005 => Scanning File D:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\desktop.ini [**]
Sat Feb 12 12:44:22 2005 => Scanning File D:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\Microsoft Office.lnk
Sat Feb 12 12:44:22 2005 => Scanning File D:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\WinZip Quick Pick.lnk
Sat Feb 12 12:44:22 2005 => Scanning File D:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\Adobe Reader - Schnellstart.lnk

Sat Feb 12 12:44:22 2005 => ***** Scanning Service Files *****
Sat Feb 12 12:44:22 2005 => Scanning HKLM\SYSTEM\CurrentControlSet\Services
Sat Feb 12 12:44:22 2005 => Scanning File D:\WINDOWS\System32\drivers\ac97intc.sys
Sat Feb 12 12:44:22 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\ACPI.sys
Sat Feb 12 12:44:22 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\ACPIEC.sys
Sat Feb 12 12:44:22 2005 => Scanning File D:\WINDOWS\System32\drivers\aec.sys
Sat Feb 12 12:44:23 2005 => Scanning File D:\WINDOWS\System32\drivers\afd.sys
Sat Feb 12 12:44:23 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\agp440.sys
Sat Feb 12 12:44:23 2005 => Scanning File D:\WINDOWS\System32\svchost.exe
Sat Feb 12 12:44:23 2005 => Scanning File D:\WINDOWS\System32\alg.exe
Sat Feb 12 12:44:23 2005 => Scanning File D:\WINDOWS\system32\svchost.exe
Sat Feb 12 12:44:23 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\asyncmac.sys
Sat Feb 12 12:44:23 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\atapi.sys
Sat Feb 12 12:44:23 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\atmarpc.sys
Sat Feb 12 12:44:23 2005 => Scanning File D:\WINDOWS\System32\svchost.exe
Sat Feb 12 12:44:23 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\audstub.sys
Sat Feb 12 12:44:23 2005 => Scanning File D:\WINDOWS\System32\svchost.exe
Sat Feb 12 12:44:23 2005 => Scanning File D:\WINDOWS\System32\svchost.exe
Sat Feb 12 12:44:23 2005 => Scanning File D:\PROGRA~1\GEMEIN~1\SYMANT~1\ccEvtMgr.exe
Sat Feb 12 12:44:23 2005 => Scanning File D:\PROGRA~1\GEMEIN~1\SYMANT~1\ccPwdSvc.exe
Sat Feb 12 12:44:23 2005 => Scanning File D:\PROGRA~1\NORTON~2\ccPxySvc.exe
Sat Feb 12 12:44:23 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\cdrom.sys
Sat Feb 12 12:44:24 2005 => Scanning File D:\WINDOWS\system32\cisvc.exe
Sat Feb 12 12:44:24 2005 => Scanning File D:\WINDOWS\system32\clipsrv.exe
Sat Feb 12 12:44:24 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\CmBatt.sys
Sat Feb 12 12:44:24 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\compbatt.sys
Sat Feb 12 12:44:24 2005 => Scanning File D:\WINDOWS\System32\dllhost.exe
Sat Feb 12 12:44:24 2005 => Scanning File D:\WINDOWS\system32\svchost.exe
Sat Feb 12 12:44:24 2005 => Scanning File D:\WINDOWS\System32\svchost.exe
Sat Feb 12 12:44:24 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\disk.sys
Sat Feb 12 12:44:24 2005 => Scanning File D:\WINDOWS\System32\dmadmin.exe
Sat Feb 12 12:44:24 2005 => Scanning File D:\WINDOWS\System32\drivers\dmboot.sys
Sat Feb 12 12:44:24 2005 => Scanning File D:\WINDOWS\System32\drivers\dmio.sys
Sat Feb 12 12:44:24 2005 => Scanning File D:\WINDOWS\System32\drivers\dmload.sys
Sat Feb 12 12:44:24 2005 => Scanning File D:\WINDOWS\System32\svchost.exe
Sat Feb 12 12:44:24 2005 => Scanning File D:\WINDOWS\System32\drivers\DMusic.sys
Sat Feb 12 12:44:24 2005 => Scanning File D:\WINDOWS\System32\svchost.exe
Sat Feb 12 12:44:24 2005 => Scanning File D:\WINDOWS\System32\Drivers\DPortIO.sys
Sat Feb 12 12:44:24 2005 => Scanning File D:\WINDOWS\System32\drivers\drmkaud.sys
Sat Feb 12 12:44:24 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\e100b325.sys
Sat Feb 12 12:44:24 2005 => Scanning File D:\WINDOWS\System32\svchost.exe
Sat Feb 12 12:44:24 2005 => Scanning File D:\WINDOWS\system32\services.exe
Sat Feb 12 12:44:24 2005 => Scanning File D:\WINDOWS\System32\svchost.exe
Sat Feb 12 12:44:24 2005 => Scanning File D:\WINDOWS\System32\svchost.exe
Sat Feb 12 12:44:24 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\fdc.sys
Sat Feb 12 12:44:24 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\flpydisk.sys
Sat Feb 12 12:44:24 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\ftdisk.sys
Sat Feb 12 12:44:24 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\msgpc.sys
Sat Feb 12 12:44:24 2005 => Scanning File D:\WINDOWS\System32\svchost.exe
Sat Feb 12 12:44:24 2005 => Scanning File D:\WINDOWS\System32\svchost.exe
Sat Feb 12 12:44:24 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\i8042prt.sys
Sat Feb 12 12:44:25 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\imapi.sys
Sat Feb 12 12:44:25 2005 => Scanning File D:\WINDOWS\System32\imapi.exe
Sat Feb 12 12:44:25 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\intelide.sys
Sat Feb 12 12:44:25 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\ipfltdrv.sys
Sat Feb 12 12:44:25 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\ipinip.sys
Sat Feb 12 12:44:25 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\ipnat.sys
Sat Feb 12 12:44:25 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\ipsec.sys
Sat Feb 12 12:44:25 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\irenum.sys
Sat Feb 12 12:44:25 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\isapnp.sys
Sat Feb 12 12:44:25 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\kbdclass.sys
Sat Feb 12 12:44:25 2005 => Scanning File D:\WINDOWS\System32\Drivers\KBFiltr.sys
Sat Feb 12 12:44:25 2005 => Scanning File D:\WINDOWS\System32\drivers\kmixer.sys
Sat Feb 12 12:44:25 2005 => Scanning File D:\WINDOWS\System32\svchost.exe
Sat Feb 12 12:44:25 2005 => Scanning File D:\WINDOWS\System32\svchost.exe
Sat Feb 12 12:44:25 2005 => Scanning File D:\WINDOWS\System32\svchost.exe
Sat Feb 12 12:44:25 2005 => Scanning File D:\WINDOWS\System32\svchost.exe
Sat Feb 12 12:44:25 2005 => Scanning File D:\WINDOWS\System32\mnmsrvc.exe
Sat Feb 12 12:44:25 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\mouclass.sys
Sat Feb 12 12:44:25 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\mrxdav.sys
Sat Feb 12 12:44:25 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\mrxsmb.sys
Sat Feb 12 12:44:25 2005 => Scanning File D:\WINDOWS\System32\msdtc.exe
Sat Feb 12 12:44:25 2005 => Scanning File D:\WINDOWS\System32\msiexec.exe
Sat Feb 12 12:44:26 2005 => Scanning File D:\WINDOWS\System32\drivers\MSKSSRV.sys
Sat Feb 12 12:44:26 2005 => Scanning File D:\WINDOWS\System32\drivers\MSPCLOCK.sys
Sat Feb 12 12:44:26 2005 => Scanning File D:\WINDOWS\System32\drivers\MSPQM.sys
Sat Feb 12 12:44:26 2005 => Scanning File D:\PROGRA~1\NORTON~1\navapsvc.exe
Sat Feb 12 12:44:26 2005 => Scanning File D:\PROGRA~1\GEMEIN~1\SYMANT~1\VIRUSD~1\20050209.032\NAVENG.SYS
Sat Feb 12 12:44:26 2005 => Scanning File D:\PROGRA~1\GEMEIN~1\SYMANT~1\VIRUSD~1\20050209.032\NAVEX15.SYS
Sat Feb 12 12:44:26 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\ndistapi.sys
Sat Feb 12 12:44:26 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\ndisuio.sys
Sat Feb 12 12:44:26 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\ndiswan.sys
Sat Feb 12 12:44:26 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\netbios.sys
Sat Feb 12 12:44:26 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\netbt.sys
Sat Feb 12 12:44:26 2005 => Scanning File D:\WINDOWS\system32\netdde.exe
Sat Feb 12 12:44:26 2005 => Scanning File D:\WINDOWS\system32\netdde.exe
Sat Feb 12 12:44:26 2005 => Scanning File D:\WINDOWS\System32\lsass.exe
Sat Feb 12 12:44:26 2005 => Scanning File D:\WINDOWS\System32\svchost.exe
Sat Feb 12 12:44:26 2005 => Scanning File D:\PROGRA~1\NORTON~2\NISUM.EXE
Sat Feb 12 12:44:27 2005 => Scanning File D:\WINDOWS\System32\svchost.exe
Sat Feb 12 12:44:27 2005 => Scanning File D:\WINDOWS\System32\drivers\nmwcdc.sys
Sat Feb 12 12:44:27 2005 => Scanning File D:\WINDOWS\System32\drivers\nmwcdcm.sys
Sat Feb 12 12:44:27 2005 => Scanning File D:\WINDOWS\System32\drivers\nmwcd.sys
Sat Feb 12 12:44:27 2005 => Scanning File D:\WINDOWS\System32\lsass.exe
Sat Feb 12 12:44:27 2005 => Scanning File D:\WINDOWS\system32\svchost.exe
Sat Feb 12 12:44:27 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\nwlnkflt.sys
Sat Feb 12 12:44:27 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\nwlnkfwd.sys
Sat Feb 12 12:44:27 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\parport.sys
Sat Feb 12 12:44:27 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\pci.sys
Sat Feb 12 12:44:27 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\pcmcia.sys
Sat Feb 12 12:44:27 2005 => Scanning File D:\WINDOWS\system32\services.exe
Sat Feb 12 12:44:27 2005 => Scanning File D:\WINDOWS\System32\lsass.exe
Sat Feb 12 12:44:27 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\raspptp.sys
Sat Feb 12 12:44:27 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\processr.sys
Sat Feb 12 12:44:27 2005 => Scanning File D:\WINDOWS\system32\lsass.exe
Sat Feb 12 12:44:27 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\psched.sys
Sat Feb 12 12:44:27 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\ptilink.sys
Sat Feb 12 12:44:27 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\rasacd.sys
Sat Feb 12 12:44:27 2005 => Scanning File D:\WINDOWS\System32\svchost.exe
Sat Feb 12 12:44:27 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\rasl2tp.sys
Sat Feb 12 12:44:27 2005 => Scanning File D:\WINDOWS\System32\svchost.exe
Sat Feb 12 12:44:27 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\raspppoe.sys
Sat Feb 12 12:44:27 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\raspti.sys
Sat Feb 12 12:44:27 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\rdbss.sys
Sat Feb 12 12:44:27 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\RDPCDD.sys
Sat Feb 12 12:44:27 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\rdpdr.sys
Sat Feb 12 12:44:28 2005 => Scanning File D:\WINDOWS\system32\sessmgr.exe
Sat Feb 12 12:44:28 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\redbook.sys
Sat Feb 12 12:44:28 2005 => Scanning File D:\WINDOWS\System32\svchost.exe
Sat Feb 12 12:44:28 2005 => Scanning File D:\WINDOWS\system32\svchost.exe
Sat Feb 12 12:44:28 2005 => Scanning File D:\WINDOWS\System32\locator.exe
Sat Feb 12 12:44:28 2005 => Scanning File D:\WINDOWS\system32\svchost.exe
Sat Feb 12 12:44:28 2005 => Scanning File D:\WINDOWS\System32\rsvp.exe
Sat Feb 12 12:44:28 2005 => Scanning File D:\WINDOWS\system32\lsass.exe
Sat Feb 12 12:44:28 2005 => Scanning File D:\WINDOWS\SYSTEM32\DRIVERS\SAVRT.SYS
Sat Feb 12 12:44:28 2005 => Scanning File D:\WINDOWS\SYSTEM32\DRIVERS\SAVRTPEL.SYS
Sat Feb 12 12:44:28 2005 => Scanning File D:\PROGRA~1\GEMEIN~1\SYMANT~1\SCRIPT~1\SBServ.exe
Sat Feb 12 12:44:28 2005 => Scanning File D:\WINDOWS\System32\SCardSvr.exe
Sat Feb 12 12:44:28 2005 => Scanning File D:\WINDOWS\System32\SCardSvr.exe
Sat Feb 12 12:44:28 2005 => Scanning File D:\WINDOWS\System32\svchost.exe
Sat Feb 12 12:44:28 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\secdrv.sys
Sat Feb 12 12:44:28 2005 => Scanning File D:\WINDOWS\System32\svchost.exe
Sat Feb 12 12:44:28 2005 => Scanning File D:\WINDOWS\system32\svchost.exe
Sat Feb 12 12:44:28 2005 => Scanning File D:\WINDOWS\System32\svchost.exe
Sat Feb 12 12:44:28 2005 => Scanning File D:\WINDOWS\System32\svchost.exe
Sat Feb 12 12:44:28 2005 => Scanning File D:\PROGRA~1\GEMEIN~1\SYMANT~1\SNDSrvc.exe
Sat Feb 12 12:44:28 2005 => Scanning File D:\WINDOWS\System32\drivers\splitter.sys
Sat Feb 12 12:44:28 2005 => Scanning File D:\WINDOWS\system32\spoolsv.exe
Sat Feb 12 12:44:28 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\sr.sys
Sat Feb 12 12:44:29 2005 => Scanning File D:\WINDOWS\System32\svchost.exe
Sat Feb 12 12:44:29 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\srv.sys
Sat Feb 12 12:44:29 2005 => Scanning File D:\WINDOWS\System32\svchost.exe
Sat Feb 12 12:44:29 2005 => Scanning File D:\WINDOWS\System32\svchost.exe
Sat Feb 12 12:44:29 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\swenum.sys
Sat Feb 12 12:44:29 2005 => Scanning File D:\WINDOWS\System32\drivers\swmidi.sys
Sat Feb 12 12:44:29 2005 => Scanning File D:\WINDOWS\System32\dllhost.exe
Sat Feb 12 12:44:29 2005 => Scanning File D:\WINDOWS\SYSTEM32\DRIVERS\SYMDNS.SYS
Sat Feb 12 12:44:29 2005 => Scanning File D:\PROGRAMME\SYMANTEC\SYMEVENT.SYS
Sat Feb 12 12:44:29 2005 => Scanning File D:\WINDOWS\SYSTEM32\DRIVERS\SYMFW.SYS
Sat Feb 12 12:44:29 2005 => Scanning File D:\WINDOWS\SYSTEM32\DRIVERS\SYMIDS.SYS
Sat Feb 12 12:44:29 2005 => Scanning File D:\PROGRA~1\GEMEIN~1\SYMANT~1\SYMCDATA\IDSDEFS\20041123.015\SYMIDSCO.SYS
Sat Feb 12 12:44:29 2005 => Scanning File D:\WINDOWS\SYSTEM32\DRIVERS\SYMNDIS.SYS
Sat Feb 12 12:44:29 2005 => Scanning File D:\WINDOWS\SYSTEM32\DRIVERS\SYMREDRV.SYS
Sat Feb 12 12:44:29 2005 => Scanning File D:\WINDOWS\SYSTEM32\DRIVERS\SYMTDI.SYS
Sat Feb 12 12:44:29 2005 => Scanning File D:\PROGRA~1\GEMEIN~1\SYMANT~1\SECURI~1\SymWSC.exe
Sat Feb 12 12:44:29 2005 => Scanning File D:\WINDOWS\System32\drivers\sysaudio.sys
Sat Feb 12 12:44:29 2005 => Scanning File D:\WINDOWS\system32\smlogsvc.exe
Sat Feb 12 12:44:29 2005 => Scanning File D:\WINDOWS\System32\svchost.exe
Sat Feb 12 12:44:29 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\tcpip.sys
Sat Feb 12 12:44:30 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\termdd.sys
Sat Feb 12 12:44:30 2005 => Scanning File D:\WINDOWS\System32\svchost.exe
Sat Feb 12 12:44:30 2005 => Scanning File D:\WINDOWS\System32\svchost.exe
Sat Feb 12 12:44:30 2005 => Scanning File D:\WINDOWS\System32\tlntsvr.exe
Sat Feb 12 12:44:30 2005 => Scanning File D:\WINDOWS\system32\svchost.exe
Sat Feb 12 12:44:30 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\update.sys
Sat Feb 12 12:44:30 2005 => Scanning File D:\WINDOWS\System32\svchost.exe
Sat Feb 12 12:44:30 2005 => Scanning File D:\WINDOWS\System32\svchost.exe
Sat Feb 12 12:44:30 2005 => Scanning File D:\WINDOWS\System32\ups.exe
Sat Feb 12 12:44:30 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\usbhub.sys
Sat Feb 12 12:44:30 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\usbuhci.sys
Sat Feb 12 12:44:30 2005 => Scanning File D:\WINDOWS\System32\drivers\vga.sys
Sat Feb 12 12:44:30 2005 => Scanning File D:\WINDOWS\System32\vssvc.exe
Sat Feb 12 12:44:30 2005 => Scanning File D:\WINDOWS\System32\svchost.exe
Sat Feb 12 12:44:30 2005 => Scanning File D:\WINDOWS\System32\DRIVERS\wanarp.sys
Sat Feb 12 12:44:30 2005 => Scanning File D:\WINDOWS\System32\drivers\wdmaud.sys
Sat Feb 12 12:44:30 2005 => Scanning File D:\WINDOWS\System32\svchost.exe
Sat Feb 12 12:44:30 2005 => Scanning File D:\WINDOWS\system32\svchost.exe
Sat Feb 12 12:44:30 2005 => Scanning File D:\WINDOWS\System32\svchost.exe
Sat Feb 12 12:44:30 2005 => Scanning File D:\WINDOWS\System32\svchost.exe
Sat Feb 12 12:44:30 2005 => Scanning File D:\WINDOWS\System32\wbem\wmiapsrv.exe
Sat Feb 12 12:44:30 2005 => Scanning File D:\WINDOWS\system32\svchost.exe
Sat Feb 12 12:44:30 2005 => Scanning File D:\WINDOWS\System32\svchost.exe

Sat Feb 12 12:44:30 2005 => Scanning HKLM\SYSTEM\CurrentControlSet\Services\VxD

Sat Feb 12 12:44:30 2005 => ***** Scanning System32 Folders *****
Sat Feb 12 12:44:30 2005 => Scanning D:\WINDOWS Directory
Sat Feb 12 12:44:30 2005 => Scanning Folder: D:\WINDOWS\*.*
Sat Feb 12 12:44:30 2005 => Scanning File D:\WINDOWS\system.ini [**]
Sat Feb 12 12:44:30 2005 => Scanning File D:\WINDOWS\win.ini [**]
Sat Feb 12 12:44:30 2005 => Scanning File D:\WINDOWS\_default.pif
Sat Feb 12 12:44:30 2005 => Scanning File D:\WINDOWS\explorer.scf [**]
Sat Feb 12 12:44:30 2005 => Scanning File D:\WINDOWS\msdfmap.ini [**]
Sat Feb 12 12:44:30 2005 => Scanning File D:\WINDOWS\twain.dll
Sat Feb 12 12:44:30 2005 => Scanning File D:\WINDOWS\twain_32.dll
Sat Feb 12 12:44:30 2005 => Scanning File D:\WINDOWS\twunk_16.exe
Sat Feb 12 12:44:30 2005 => Scanning File D:\WINDOWS\twunk_32.exe
Sat Feb 12 12:44:31 2005 => Scanning File D:\WINDOWS\winhelp.exe
Sat Feb 12 12:44:31 2005 => Scanning File D:\WINDOWS\fpuninst.exe
Sat Feb 12 12:44:32 2005 => Scanning File D:\WINDOWS\wmprfDEU.prx [**]
Sat Feb 12 12:44:32 2005 => Scanning File D:\WINDOWS\clock.avi [**]
Sat Feb 12 12:44:32 2005 => Scanning File D:\WINDOWS\vmmreg32.dll
Sat Feb 12 12:44:32 2005 => Scanning File D:\WINDOWS\explorer.exe
Sat Feb 12 12:44:32 2005 => Scanning File D:\WINDOWS\regedit.exe
Sat Feb 12 12:44:32 2005 => Scanning File D:\WINDOWS\hh.exe
Sat Feb 12 12:44:32 2005 => Scanning File D:\WINDOWS\winhlp32.exe
Sat Feb 12 12:44:32 2005 => Scanning File D:\WINDOWS\setuplog.txt [**]
Sat Feb 12 12:44:32 2005 => Scanning File D:\WINDOWS\setupact.log [**]
Sat Feb 12 12:44:32 2005 => Scanning File D:\WINDOWS\setuperr.log [**]
Sat Feb 12 12:44:32 2005 => Scanning File D:\WINDOWS\setupapi.log [**]
Sat Feb 12 12:44:32 2005 => Scanning File D:\WINDOWS\{5C19535E-1E5E-43AA-96B5-CE1CBC9345BB}.dat [**]
Sat Feb 12 12:44:32 2005 => Scanning File D:\WINDOWS\ntbtlog.txt [**]
Sat Feb 12 12:44:32 2005 => Scanning File D:\WINDOWS\LUINSTALL.LOG [**]
Sat Feb 12 12:44:32 2005 => Scanning File D:\WINDOWS\WISO.INI [**]
Sat Feb 12 12:44:32 2005 => Scanning File D:\WINDOWS\nsw.log [**]
Sat Feb 12 12:44:32 2005 => Scanning File D:\WINDOWS\REGEDIT.COM
Sat Feb 12 12:44:32 2005 => Scanning File D:\WINDOWS\R.COM
Sat Feb 12 12:44:32 2005 => Scanning File D:\WINDOWS\NOTEPAD.EXE
Sat Feb 12 12:44:32 2005 => Scanning File D:\WINDOWS\TASKMAN.EXE
Sat Feb 12 12:44:32 2005 => Scanning File D:\WINDOWS\regopt.log [**]
Sat Feb 12 12:44:32 2005 => Scanning File D:\WINDOWS\ODBCINST.INI [**]
Sat Feb 12 12:44:32 2005 => Scanning File D:\WINDOWS\ocgen.log [**]
Sat Feb 12 12:44:32 2005 => Scanning File D:\WINDOWS\FaxSetup.log [**]
Sat Feb 12 12:44:32 2005 => Scanning File D:\WINDOWS\iis6.log [**]
Sat Feb 12 12:44:32 2005 => Scanning File D:\WINDOWS\comsetup.log [**]
Sat Feb 12 12:44:32 2005 => Scanning File D:\WINDOWS\ntdtcsetup.log [**]
Sat Feb 12 12:44:32 2005 => Scanning File D:\WINDOWS\tsoc.log [**]
Sat Feb 12 12:44:32 2005 => Scanning File D:\WINDOWS\msmqinst.log [**]
Sat Feb 12 12:44:32 2005 => Scanning File D:\WINDOWS\imsins.log [**]
Sat Feb 12 12:44:32 2005 => Scanning File D:\WINDOWS\msgsocm.log [**]
Sat Feb 12 12:44:32 2005 => Scanning File D:\WINDOWS\tabletoc.log [**]
Sat Feb 12 12:44:32 2005 => Scanning File D:\WINDOWS\ocmsn.log [**]
Sat Feb 12 12:44:32 2005 => Scanning File D:\WINDOWS\netfxocm.log [**]
Sat Feb 12 12:44:32 2005 => Scanning File D:\WINDOWS\Sti_Trace.log [**]
Sat Feb 12 12:44:32 2005 => Scanning File D:\WINDOWS\wiaservc.log [**]
Sat Feb 12 12:44:33 2005 => Scanning File D:\WINDOWS\wiadebug.log [**]
Sat Feb 12 12:44:33 2005 => Scanning File D:\WINDOWS\Blaue Spitzen 16.bmp [**]
Sat Feb 12 12:44:33 2005 => Scanning File D:\WINDOWS\Seifenblase.bmp [**]
Sat Feb 12 12:44:33 2005 => Scanning File D:\WINDOWS\Kaffeetasse.bmp [**]
Sat Feb 12 12:44:33 2005 => Scanning File D:\WINDOWS\Feder.bmp [**]
Sat Feb 12 12:44:33 2005 => Scanning File D:\WINDOWS\Angler.bmp [**]
Sat Feb 12 12:44:33 2005 => Scanning File D:\WINDOWS\Granit.bmp [**]
Sat Feb 12 12:44:33 2005 => Scanning File D:\WINDOWS\Präriewind.bmp [**]
Sat Feb 12 12:44:33 2005 => Scanning File D:\WINDOWS\Rhododendron.bmp [**]
Sat Feb 12 12:44:33 2005 => Scanning File D:\WINDOWS\Fächer.bmp [**]
Sat Feb 12 12:44:33 2005 => Scanning File D:\WINDOWS\Santa Fe-Stuck.bmp [**]
Sat Feb 12 12:44:33 2005 => Scanning File D:\WINDOWS\Zapotek.bmp [**]
Sat Feb 12 12:44:33 2005 => Scanning File D:\WINDOWS\DtcInstall.log [**]
Sat Feb 12 12:44:33 2005 => Scanning File D:\WINDOWS\vb.ini [**]
Sat Feb 12 12:44:33 2005 => Scanning File D:\WINDOWS\vbaddin.ini [**]
Sat Feb 12 12:44:33 2005 => Scanning File D:\WINDOWS\sessmgr.setup.log [**]
Sat Feb 12 12:44:33 2005 => Scanning File D:\WINDOWS\desktop.ini [**]
Sat Feb 12 12:44:33 2005 => Scanning File D:\WINDOWS\winnt.bmp [**]
Sat Feb 12 12:44:33 2005 => Scanning File D:\WINDOWS\winnt256.bmp [**]
Sat Feb 12 12:44:33 2005 => Scanning File D:\WINDOWS\WindowsShell.Manifest [**]
Sat Feb 12 12:44:33 2005 => Scanning File D:\WINDOWS\Windows Update.log [**]
Sat Feb 12 12:44:33 2005 => Scanning File D:\WINDOWS\OEWABLog.txt [**]
Sat Feb 12 12:44:33 2005 => Scanning File D:\WINDOWS\WMSysPrx.prx [**]
Sat Feb 12 12:44:33 2005 => Scanning File D:\WINDOWS\control.ini [**]
Sat Feb 12 12:44:33 2005 => Scanning File D:\WINDOWS\bootstat.dat [**]
Sat Feb 12 12:44:33 2005 => Scanning File D:\WINDOWS\REGLOCS.OLD [**]
Sat Feb 12 12:44:33 2005 => Scanning File D:\WINDOWS\SchedLgU.Txt [**]
Sat Feb 12 12:44:33 2005 => Scanning File D:\WINDOWS\0.log [**]
Sat Feb 12 12:44:33 2005 => Scanning File D:\WINDOWS\ODBC.INI [**]
Sat Feb 12 12:44:33 2005 => Scanning File D:\WINDOWS\Unnero.exe
Sat Feb 12 12:44:33 2005 => Scanning File D:\WINDOWS\Unnero.cfg [**]
Sat Feb 12 12:44:33 2005 => Scanning File D:\WINDOWS\UNINST32.EXE
Sat Feb 12 12:44:33 2005 => Scanning File D:\WINDOWS\CPATR10.UNI [**]
Sat Feb 12 12:44:33 2005 => Scanning File D:\WINDOWS\{1398E967-11F6-4EC3-B29F-19527B0010AA}.dat [**]
Sat Feb 12 12:44:33 2005 => Scanning File D:\WINDOWS\SYMEVENT.LOG [**]
Sat Feb 12 12:44:33 2005 => Scanning D:\WINDOWS\System32 Directory
Sat Feb 12 12:44:34 2005 => Scanning Folder: D:\WINDOWS\System32\*.*
Sat Feb 12 12:44:34 2005 => Scanning File D:\WINDOWS\System32\bootvid.dll
Sat Feb 12 12:44:34 2005 => Scanning File D:\WINDOWS\System32\kdcom.dll
Sat Feb 12 12:44:34 2005 => Scanning File D:\WINDOWS\System32\c_1252.nls [**]
Sat Feb 12 12:44:34 2005 => Scanning File D:\WINDOWS\System32\c_437.nls [**]
Sat Feb 12 12:44:34 2005 => Scanning File D:\WINDOWS\System32\l_intl.nls [**]
Sat Feb 12 12:44:34 2005 => Scanning File D:\WINDOWS\System32\lz32.dll
Sat Feb 12 12:44:34 2005 => Scanning File D:\WINDOWS\System32\olecli32.dll
Sat Feb 12 12:44:34 2005 => Scanning File D:\WINDOWS\System32\olecnv32.dll
Sat Feb 12 12:44:34 2005 => Scanning File D:\WINDOWS\System32\olesvr32.dll
Sat Feb 12 12:44:34 2005 => Scanning File D:\WINDOWS\System32\olethk32.dll
Sat Feb 12 12:44:34 2005 => Scanning File D:\WINDOWS\System32\version.dll
Sat Feb 12 12:44:34 2005 => Scanning File D:\WINDOWS\System32\mpr.dll
Sat Feb 12 12:44:34 2005 => Scanning File D:\WINDOWS\System32\msasn1.dll
Sat Feb 12 12:44:34 2005 => Scanning File D:\WINDOWS\System32\csrss.exe
Sat Feb 12 12:44:34 2005 => Scanning File D:\WINDOWS\System32\unicode.nls [**]
Sat Feb 12 12:44:34 2005 => Scanning File D:\WINDOWS\System32\sorttbls.nls [**]
Sat Feb 12 12:44:34 2005 => Scanning File D:\WINDOWS\System32\vga.dll
Sat Feb 12 12:44:34 2005 => Scanning File D:\WINDOWS\System32\nddeapi.dll
Sat Feb 12 12:44:34 2005 => Scanning File D:\WINDOWS\System32\profmap.dll
Sat Feb 12 12:44:34 2005 => Scanning File D:\WINDOWS\System32\ws2_32.dll
Sat Feb 12 12:44:34 2005 => Scanning File D:\WINDOWS\System32\ws2help.dll
Sat Feb 12 12:44:34 2005 => Scanning File D:\WINDOWS\System32\ctype.nls [**]
Sat Feb 12 12:44:34 2005 => Scanning File D:\WINDOWS\System32\sortkey.nls [**]
Sat Feb 12 12:44:34 2005 => Scanning File D:\WINDOWS\System32\kbdus.dll
Sat Feb 12 12:44:34 2005 => Scanning File D:\WINDOWS\System32\odbcint.dll
Sat Feb 12 12:44:34 2005 => Scanning File D:\WINDOWS\System32\sfc.dll
Sat Feb 12 12:44:34 2005 => Scanning File D:\WINDOWS\System32\wintrust.dll
Sat Feb 12 12:44:34 2005 => Scanning File D:\WINDOWS\System32\services.exe
Sat Feb 12 12:44:34 2005 => Scanning File D:\WINDOWS\System32\cryptdll.dll
Sat Feb 12 12:44:34 2005 => Scanning File D:\WINDOWS\System32\samsrv.dll
Sat Feb 12 12:44:34 2005 => Scanning File D:\WINDOWS\System32\ntdsapi.dll
Sat Feb 12 12:44:34 2005 => Scanning File D:\WINDOWS\System32\msprivs.dll
Sat Feb 12 12:44:34 2005 => Scanning File D:\WINDOWS\System32\wdigest.dll
Sat Feb 12 12:44:34 2005 => Scanning File D:\WINDOWS\System32\winscard.dll
Sat Feb 12 12:44:34 2005 => Scanning File D:\WINDOWS\System32\netevent.dll
Sat Feb 12 12:44:34 2005 => Scanning File D:\WINDOWS\System32\svchost.exe
Sat Feb 12 12:44:34 2005 => Scanning File D:\WINDOWS\System32\mswsock.dll
Sat Feb 12 12:44:34 2005 => Scanning File D:\WINDOWS\System32\wshtcpip.dll
Sat Feb 12 12:44:34 2005 => Scanning File D:\WINDOWS\System32\winrnr.dll
Sat Feb 12 12:44:34 2005 => Scanning File D:\WINDOWS\System32\rasadhlp.dll
Sat Feb 12 12:44:35 2005 => Scanning File D:\WINDOWS\System32\rtutils.dll
Sat Feb 12 12:44:35 2005 => Scanning File D:\WINDOWS\System32\wdmaud.drv
Sat Feb 12 12:44:35 2005 => Scanning File D:\WINDOWS\System32\dnsrslvr.dll
Sat Feb 12 12:44:35 2005 => Scanning File D:\WINDOWS\System32\lmhsvc.dll
Sat
Kernbohrer
 
Beiträge: 3
Registriert: 11.02.2005, 20:14

Beitragvon Nikita am 12.02.2005, 16:18

Hallo@Kernbohrer

escan: und ganz unten steht die zusammenfassung, diese auch hier posten

Lade: FindIt.zip--> posten, bitte
http://bilder.informationsarchiv.net/Nikitas_Tools/
Lade, entpacke und klicke auf: "find.bat" [ignoriere : File not found messages]
<DOS oeffnet sich -->warte den Scan ab --> es oeffnet sich der Texteditor --> und poste den Text von output.txt.

Please download DllCompare from here
http://www.atribune.org/downloads/DllCompare.exe
<klick: Locate.com button.
wenn der Scan beendet ist
<klick:Compare button
<klick: und erstelle das Log--->bitte posten

#Ad-aware SE Personal 1.05 Updated
http://fileforum.betanews.com/detail/965718306/1
Laden--> Updaten-->scannen-->PC neustarten--> noch mal scannen--> poste das Log vom Scann

CWShredder 2.12 [2004-12-13]
http://www.majorgeeks.com/download3019.html
Log-->"make Report"
Nikita
Moderator
 
Beiträge: 11478
Registriert: 07.12.2003, 16:53
Wohnort: Lissabon

Beitragvon Kernbohrer am 14.02.2005, 17:34

@Nikita:

Danke...aber meine Nerven liegen blank...ich formatiere und setzte XP nochmal neu auf....

Trotzdem vielen Dank!!!


Kernbohrer
Kernbohrer
 
Beiträge: 3
Registriert: 11.02.2005, 20:14



Ähnliche Themen


Zurück zu Online- und PC-Sicherheit

Wer ist online?

Mitglieder in diesem Forum: 0 Mitglieder und 0 Gäste