Warum kostenlos registrieren?

Nur als registriertes Mitglied hast Du vollen Zugriff auf alle Funktionen unserer Website. So kannst Du eigene Fragen stellen und hast die volle Übersicht über neue interessante Themen im Forum.
Jetzt kostenlos registrieren.

Login


Brauche Hilfe

Warnungen vor Sicherheitslücken und Hilfe beim Enfernen von Viren, Würmern und Trojanern.

Brauche Hilfe

Beitragvon swiss am 13.06.2005, 23:55

Guten Tag,
bin neu in diesem forum und brauche eure hilfe.
wollte den laptop meiner freundin ausmisten und machte bekantschaft
mit trojaner und co.
Danke im voraus für eure Hilfe.
BS = Win XP Pro Sp2

hir der hijackthis log.

Logfile of HijackThis v1.99.1
Scan saved at 23:07:12, on 13.06.2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programme\AVPersonal\AVGUARD.EXE
C:\WINDOWS\System32\Ati2evxx.exe
C:\Programme\AVPersonal\AVWUPSRV.EXE
C:\WINDOWS\system32\drivers\CDAC11BA.EXE
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\Explorer.EXE
C:\Programme\Synaptics\SynTP\SynTPLpr.exe
C:\Programme\Synaptics\SynTP\SynTPEnh.exe
C:\WINDOWS\system32\atiptaxx.exe
C:\WINDOWS\soundman.exe
C:\Programme\Caere\OmniPagePro90\opware32.exe
C:\Programme\QuickTime\qttask.exe
C:\Programme\iTunes\iTunesHelper.exe
C:\WINDOWS\system32\ntvdm.exe
C:\Programme\AVPersonal\AVGNT.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Programme\DayDisplay\DayDisplay.exe
C:\Programme\iPod\bin\iPodService.exe
C:\Programme\CursorXP\CursorXP.exe
C:\Programme\Siemens\Gigaset WLAN Adapter\wlm.exe
C:\PROGRA~1\INCRED~1\bin\IMApp.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Programme\hijackthis\HijackThis.exe
C:\Programme\Internet Explorer\iexplore.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bluewin.ch
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://ie.search.msn.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.ch/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://ie.search.msn.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://ie.search.msn.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page_bak = http://www.google.ch/
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = iexplore
O4 - HKLM\..\Run: [SynTPLpr] C:\Programme\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Programme\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [AtiPTA] atiptaxx.exe
O4 - HKLM\..\Run: [SoundMan] soundman.exe
O4 - HKLM\..\Run: [OmniPage] C:\Programme\Caere\OmniPagePro90\opware32.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Programme\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] C:\Programme\iTunes\iTunesHelper.exe
O4 - HKLM\..\Run: [AVGCtrl] C:\Programme\AVPersonal\AVGNT.EXE /min
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [DayDisplay] C:\Programme\DayDisplay\DayDisplay.exe
O4 - HKCU\..\Run: [IncrediMail] C:\PROGRA~1\INCRED~1\bin\IncMail.exe /c
O4 - HKCU\..\Run: [CursorXP] C:\Programme\CursorXP\CursorXP.exe
O4 - Global Startup: Gigaset WLAN Adapter Monitor.lnk = ?
O8 - Extra context menu item: &Add animation to IncrediMail Style Box - C:\PROGRA~1\INCRED~1\bin\resources\WebMenuImg.htm
O8 - Extra context menu item: Nach Microsoft &Excel exportieren - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Recherchieren - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} (RdxIE Class) - http://software-dl.real.com/267ebc20151 ... xIE601.cab
O23 - Service: AntiVir Service (AntiVirService) - H+BEDV Datentechnik GmbH - C:\Programme\AVPersonal\AVGUARD.EXE
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: AntiVir Update (AVWUpSrv) - H+BEDV Datentechnik GmbH, Germany - C:\Programme\AVPersonal\AVWUPSRV.EXE
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Programme\iPod\bin\iPodService.exe


und noch der escan log.


--------------------------------------------------
-------------------- INFECTED --------------------
--------------------------------------------------

1: Mon Jun 13 21:13:06 2005 => System found infected with BearShare Spyware/Adware ({905d0df2-3a0a-4d94-853c-54a12a745905})! Action taken: No Action Taken.
2: Mon Jun 13 21:13:06 2005 => System found infected with BearShare Spyware/Adware ({9f95f736-0f62-4214-a4b4-caa6738d4c07})! Action taken: No Action Taken.
3: Mon Jun 13 21:13:06 2005 => System found infected with BearShare Spyware/Adware ({558ec983-bedb-9168-b2de-31dbf0ee543e})! Action taken: No Action Taken.
4: Mon Jun 13 21:13:06 2005 => System found infected with BearShare Spyware/Adware ({5f95e1af-2620-4f15-bdf9-7fdce4607e17})! Action taken: No Action Taken.
5: Mon Jun 13 21:13:06 2005 => System found infected with SideFind Spyware/Adware ({10e42047-deb9-4535-a118-b3f6ec39b807})! Action taken: No Action Taken.
6: Mon Jun 13 21:13:06 2005 => System found infected with Lycos Sidesearch Spyware/Adware ({000007C6-17DF-4438-92A4-DE5537471BA3})! Action taken: No Action Taken.
7: Mon Jun 13 21:14:10 2005 => System found infected with BearShare Spyware/Adware (bearshare.lnk)! Action taken: No Action Taken.
8: Mon Jun 13 21:14:12 2005 => System found infected with ISTsvc Spyware/Adware (shortcuts.txt)! Action taken: No Action Taken.
9: Mon Jun 13 21:20:47 2005 => File C:\DOKUME~1\BRIXCA~1\LOKALE~1\TEMPOR~1\Content.IE5\81PDW9GN\1100368376122102[1].zip infected by "Trojan-Downloader.Win32.IstBar.ja" Virus! Action Taken: No Action Taken.
10: Mon Jun 13 21:21:50 2005 => File C:\DOKUME~1\BRIXCA~1\LOKALE~1\TEMPOR~1\Content.IE5\IYW9G2UM\1100358376122102[1].zip infected by "Trojan-Downloader.Win32.IstBar.ja" Virus! Action Taken: No Action Taken.
11: Mon Jun 13 21:21:51 2005 => File C:\DOKUME~1\BRIXCA~1\LOKALE~1\TEMPOR~1\Content.IE5\IYW9G2UM\1818768376122102[1].zip infected by "Trojan-Downloader.Win32.IstBar.ja" Virus! Action Taken: No Action Taken.
12: Mon Jun 13 21:31:29 2005 => File C:\Dokumente und Einstellungen\Brix Catherine\Lokale Einstellungen\Temporary Internet Files\Content.IE5\81PDW9GN\1100368376122102[1].zip infected by "Trojan-Downloader.Win32.IstBar.ja" Virus! Action Taken: No Action Taken.
13: Mon Jun 13 21:32:24 2005 => File C:\Dokumente und Einstellungen\Brix Catherine\Lokale Einstellungen\Temporary Internet Files\Content.IE5\IYW9G2UM\1100358376122102[1].zip infected by "Trojan-Downloader.Win32.IstBar.ja" Virus! Action Taken: No Action Taken.
14: Mon Jun 13 21:32:25 2005 => File C:\Dokumente und Einstellungen\Brix Catherine\Lokale Einstellungen\Temporary Internet Files\Content.IE5\IYW9G2UM\1818768376122102[1].zip infected by "Trojan-Downloader.Win32.IstBar.ja" Virus! Action Taken: No Action Taken.
15: Mon Jun 13 21:35:14 2005 => Scanning Folder: C:\Programme\AVPersonal\INFECTED\*.*

--------------------------------------------------
--------------------- TAGGED ---------------------
--------------------------------------------------

1: Mon Jun 13 21:15:20 2005 => File C:\WINDOWS\NDNuninstall4_85.exe tagged as "not-a-virus:AdWare.NewDotNet". Action Taken: No Action Taken.
2: Mon Jun 13 21:15:20 2005 => File C:\WINDOWS\NDNuninstall5_64.exe tagged as "not-a-virus:AdWare.NewDotNet". Action Taken: No Action Taken.
3: Mon Jun 13 21:15:20 2005 => File C:\WINDOWS\NDNuninstall6_10.exe tagged as "not-a-virus:AdWare.NewDotNet". Action Taken: No Action Taken.
4: Mon Jun 13 21:15:20 2005 => File C:\WINDOWS\NDNuninstall6_22.exe tagged as "not-a-virus:AdWare.NewDotNet". Action Taken: No Action Taken.
5: Mon Jun 13 21:15:48 2005 => File C:\WINDOWS\system32\BO2802040113.dll tagged as "not-a-virus:AdWare.VirtualBouncer.d". Action Taken: No Action Taken.
6: Mon Jun 13 21:18:36 2005 => File C:\WINDOWS\system32\sahagent1015.exe tagged as "not-a-virus:AdWare.Sahat.a". Action Taken: No Action Taken.
7: Mon Jun 13 21:18:43 2005 => File C:\WINDOWS\system32\SHAgentNew.dll tagged as "not-a-virus:AdWare.ShopAtHome.b". Action Taken: No Action Taken.
8: Mon Jun 13 21:18:43 2005 => File C:\WINDOWS\system32\SHAgentNew.dlltmp tagged as "not-a-virus:AdWare.ShopAtHome.b". Action Taken: No Action Taken.
9: Mon Jun 13 21:22:38 2005 => File C:\DOKUME~1\BRIXCA~1\LOKALE~1\TEMPOR~1\Content.IE5\Q3S56J2R\package_MARKETING27[1].exe tagged as "not-a-virus:AdWare.BargainBuddy.n". Action Taken: No Action Taken.
10: Mon Jun 13 21:33:08 2005 => File C:\Dokumente und Einstellungen\Brix Catherine\Lokale Einstellungen\Temporary Internet Files\Content.IE5\Q3S56J2R\package_MARKETING27[1].exe tagged as "not-a-virus:AdWare.BargainBuddy.n". Action Taken: No Action Taken.
11: Mon Jun 13 21:35:19 2005 => File C:\Programme\BearShare\Installer\saveinstwm.exe tagged as "not-a-virus:AdWare.SaveNow.z". Action Taken: No Action Taken.
12: Mon Jun 13 22:01:28 2005 => File C:\WINDOWS\iLycos\ss_webdevaz_setup.exe tagged as "not-a-virus:AdWare.Sidesearch.e". Action Taken: No Action Taken.
13: Mon Jun 13 22:03:27 2005 => File C:\WINDOWS\NDNuninstall4_85.exe tagged as "not-a-virus:AdWare.NewDotNet". Action Taken: No Action Taken.
14: Mon Jun 13 22:03:27 2005 => File C:\WINDOWS\NDNuninstall5_64.exe tagged as "not-a-virus:AdWare.NewDotNet". Action Taken: No Action Taken.
15: Mon Jun 13 22:03:28 2005 => File C:\WINDOWS\NDNuninstall6_10.exe tagged as "not-a-virus:AdWare.NewDotNet". Action Taken: No Action Taken.
16: Mon Jun 13 22:03:28 2005 => File C:\WINDOWS\NDNuninstall6_22.exe tagged as "not-a-virus:AdWare.NewDotNet". Action Taken: No Action Taken.
17: Mon Jun 13 22:12:22 2005 => File C:\WINDOWS\system32\BO2802040113.dll tagged as "not-a-virus:AdWare.VirtualBouncer.d". Action Taken: No Action Taken.
18: Mon Jun 13 22:21:00 2005 => File C:\WINDOWS\system32\sahagent1015.exe tagged as "not-a-virus:AdWare.Sahat.a". Action Taken: No Action Taken.
19: Mon Jun 13 22:21:09 2005 => File C:\WINDOWS\system32\SHAgentNew.dll tagged as "not-a-virus:AdWare.ShopAtHome.b". Action Taken: No Action Taken.
20: Mon Jun 13 22:21:09 2005 => File C:\WINDOWS\system32\SHAgentNew.dlltmp tagged as "not-a-virus:AdWare.ShopAtHome.b". Action Taken: No Action Taken.

--------------------------------------------------
--------------------- ERRORS ---------------------
--------------------------------------------------

1: Mon Jun 13 21:13:04 2005 => ERROR!!! Invalid Entry \SystemRoot\system32\drivers\Wbutton.sys in SYSTEM\CurrentControlSet\Services\Wbutton...
2: Mon Jun 13 21:14:13 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\ModuleUsage" refers to invalid object "C:\WINDOWS\Downloaded Program Files\HDPlugin1015.dll". Action Taken: No Action Taken.
3: Mon Jun 13 21:14:13 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\ModuleUsage" refers to invalid object "C:\WINDOWS\Downloaded Program Files\WebInstall.dll". Action Taken: No Action Taken.
4: Mon Jun 13 21:14:14 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\Programme\McAfee\McAfee Shared Components\Instant Updater\RupDeu.chm". Action Taken: No Action Taken.
5: Mon Jun 13 21:14:14 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\System32\iuctl.dll". Action Taken: No Action Taken.
6: Mon Jun 13 21:14:14 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\Programme\IconForever! Premium\unzdll.dll". Action Taken: No Action Taken.
7: Mon Jun 13 21:14:15 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\Downloaded Program Files\HDPlugin1015.dll". Action Taken: No Action Taken.
8: Mon Jun 13 21:14:15 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\Downloaded Program Files\WebInstall.dll". Action Taken: No Action Taken.
9: Mon Jun 13 21:14:15 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\System32\Macromed\FLASH\swflash.ocx". Action Taken: No Action Taken.
10: Mon Jun 13 21:14:15 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\System32\DIMM.DLL". Action Taken: No Action Taken.
11: Mon Jun 13 21:14:18 2005 => Entry "HKCR\CLSID\{070655DC-6AD9-4BB3-A7F9-78359689FBD7}" refers to invalid object "C:\PROGRA~1\Ahead\Nero\WAVEED~1\LEDMeter.ocx". Action Taken: No Action Taken.
12: Mon Jun 13 21:14:18 2005 => Entry "HKCR\CLSID\{08C8F6D9-969D-11D1-8E02-00C04FB6FECE}" refers to invalid object "C:\Programme\Microsoft Office\Office\PTXT9.DLL". Action Taken: No Action Taken.
13: Mon Jun 13 21:14:18 2005 => Entry "HKCR\CLSID\{08C8F6E4-969D-11D1-8E02-00C04FB6FECE}" refers to invalid object "C:\Programme\Microsoft Office\Office\PRTF9.DLL". Action Taken: No Action Taken.
14: Mon Jun 13 21:14:18 2005 => Entry "HKCR\CLSID\{0c097121-c5d6-47eb-841d-30bff71a71c4}" refers to invalid object "C:\WINDOWS\wt\webdriver\4.1.1\wtmulti.dll". Action Taken: No Action Taken.
15: Mon Jun 13 21:14:19 2005 => Entry "HKCR\CLSID\{2582BD1F-69F7-4C58-ACF7-600DB0AC1BD7}" refers to invalid object "C:\PROGRA~1\Ahead\Nero\WAVEED~1\RECORD~1.OCX". Action Taken: No Action Taken.
16: Mon Jun 13 21:14:20 2005 => Entry "HKCR\CLSID\{29FF67FF-8050-480f-9F30-CC41635F2F9D}" refers to invalid object "ADMWPROX.DLL". Action Taken: No Action Taken.
17: Mon Jun 13 21:14:20 2005 => Entry "HKCR\CLSID\{2AD41D84-3A1B-A192-E47A-B198D175F93E}" refers to invalid object "C:\DOKUME~1\BRIXCA~1\LOKALE~1\Temp\InfoWindow.dll". Action Taken: No Action Taken.
18: Mon Jun 13 21:14:20 2005 => Entry "HKCR\CLSID\{2E0B9289-63D1-04E5-188D-6888C515E518}" refers to invalid object "C:\PROGRA~1\Ahead\Nero\WAVEED~1\LEDMeter.ocx". Action Taken: No Action Taken.
19: Mon Jun 13 21:14:20 2005 => Entry "HKCR\CLSID\{3024E394-2E58-11D3-AAFE-701604C10000}" refers to invalid object "C:\DOKUME~1\BRIXCA~1\LOKALE~1\Temp\fldrview.ocx". Action Taken: No Action Taken.
20: Mon Jun 13 21:14:21 2005 => Entry "HKCR\CLSID\{42A3A9AB-F7B4-40B1-B2AA-F31E35459D4A}" refers to invalid object "C:\PROGRA~1\Ahead\Nero\WAVEED~1\RECORD~1.OCX". Action Taken: No Action Taken.
21: Mon Jun 13 21:14:21 2005 => Entry "HKCR\CLSID\{444D539F-3B4A-47BC-9BBF-3EB64DE615EE}" refers to invalid object "C:\PROGRA~1\Ahead\Nero\WAVEED~1\Axis.ocx". Action Taken: No Action Taken.
22: Mon Jun 13 21:14:22 2005 => Entry "HKCR\CLSID\{51475690-89B8-2ED9-6038-83F3352B0987}" refers to invalid object "C:\Programme\Microsoft Plus!\Speaker Enhancement\SpkrCorr.dll". Action Taken: No Action Taken.
23: Mon Jun 13 21:14:22 2005 => Entry "HKCR\CLSID\{56336BCA-3D8A-11d6-A00B-0050DA18DE71}" refers to invalid object "C:\DOKUME~1\BRIXCA~1\LOKALE~1\Temp\InfoWindow.dll". Action Taken: No Action Taken.
24: Mon Jun 13 21:14:24 2005 => Entry "HKCR\CLSID\{6BFC867D-96E3-FA6A-1CCC-E0EED138D07F}" refers to invalid object "C:\Programme\Microsoft Plus!\Speaker Enhancement\SpkrCorr.dll". Action Taken: No Action Taken.
25: Mon Jun 13 21:14:24 2005 => Entry "HKCR\CLSID\{70B51430-B6CA-11D0-B9B9-00A0C922E750}" refers to invalid object "ADMWPROX.DLL". Action Taken: No Action Taken.
26: Mon Jun 13 21:14:25 2005 => Entry "HKCR\CLSID\{7F23E6E5-0E79-4aee-B723-B1463805D5A9}" refers to invalid object "C:\WINDOWS\wt\webdriver\4.1.1\sound.dll". Action Taken: No Action Taken.
27: Mon Jun 13 21:14:25 2005 => Entry "HKCR\CLSID\{8298d101-f992-43b7-8eca-5052d885b995}" refers to invalid object "ADMWPROX.DLL". Action Taken: No Action Taken.
28: Mon Jun 13 21:14:25 2005 => Entry "HKCR\CLSID\{83D4679F-B6D7-11D2-BF36-00C04FB90A03}" refers to invalid object "C:\PROGRA~1\MESSEN~1\rtcimsp.dll". Action Taken: No Action Taken.
29: Mon Jun 13 21:14:25 2005 => Entry "HKCR\CLSID\{86FC1FD1-BCF3-11D1-B76F-58BB04C10000}" refers to invalid object "D:\RUNTIME\mDxEmul.mom". Action Taken: No Action Taken.
30: Mon Jun 13 21:14:25 2005 => Entry "HKCR\CLSID\{86FC1FD3-BCF3-11D1-B76F-58BB04C10000}" refers to invalid object "D:\RUNTIME\mDxEmul.mom". Action Taken: No Action Taken.
31: Mon Jun 13 21:14:26 2005 => Entry "HKCR\CLSID\{8ECF83A0-1AC9-11D4-8501-00A0CC5D1F63}" refers to invalid object "C:\WINDOWS\wt\webdriver\4.1.1\wtwmplug.ax". Action Taken: No Action Taken.
32: Mon Jun 13 21:14:27 2005 => Entry "HKCR\CLSID\{A047F26D-4602-4aaf-ACE7-F6F2ECEC34F9}" refers to invalid object "C:\WINDOWS\System\FP30WEC.DLL". Action Taken: No Action Taken.
33: Mon Jun 13 21:14:27 2005 => Entry "HKCR\CLSID\{A9E69612-B80D-11D0-B9B9-00A0C922E750}" refers to invalid object "ADMWPROX.DLL". Action Taken: No Action Taken.
34: Mon Jun 13 21:14:27 2005 => Entry "HKCR\CLSID\{AAFE88D1-8D1A-4298-7581-8BC2AAE86C96}" refers to invalid object "C:\WINDOWS\System32\iuctl.dll". Action Taken: No Action Taken.
35: Mon Jun 13 21:14:27 2005 => Entry "HKCR\CLSID\{AB29A544-D6B4-4E36-A1F8-D3E34FC7B00A}" refers to invalid object "C:\WINDOWS\wt\webdriver\4.1.1\wthostctl.dll". Action Taken: No Action Taken.
36: Mon Jun 13 21:14:28 2005 => Entry "HKCR\CLSID\{B9BA256A-075B-49ea-B9E2-7DBC2EF021D5}" refers to invalid object "C:\WINDOWS\wt\webdriver\4.1.1\sound.dll". Action Taken: No Action Taken.
37: Mon Jun 13 21:14:28 2005 => Entry "HKCR\CLSID\{BAE67246-0329-4EB0-84EC-7A52AFB5A901}" refers to invalid object "C:\PROGRA~1\Ahead\Nero\WAVEED~1\LEDMeter.ocx". Action Taken: No Action Taken.
38: Mon Jun 13 21:14:28 2005 => Entry "HKCR\CLSID\{BC5F1E50-5110-11D1-AFF5-006097C9A284}" refers to invalid object "C:\PROGRA~1\MICROS~2\Office\BLNMGRPS.DLL". Action Taken: No Action Taken.
39: Mon Jun 13 21:14:28 2005 => Entry "HKCR\CLSID\{BC5F1E51-5110-11D1-AFF5-006097C9A284}" refers to invalid object "C:\PROGRA~1\MICROS~2\Office\BLNMGRPS.DLL". Action Taken: No Action Taken.
40: Mon Jun 13 21:14:28 2005 => Entry "HKCR\CLSID\{BC5F1E53-5110-11D1-AFF5-006097C9A284}" refers to invalid object "C:\PROGRA~1\MICROS~2\Office\BLNMGRPS.DLL". Action Taken: No Action Taken.
41: Mon Jun 13 21:14:28 2005 => Entry "HKCR\CLSID\{BCD7AC23-9FB7-4E16-9C97-D5225D2567B5}" refers to invalid object "C:\PROGRA~1\Ahead\Nero\WAVEED~1\Axis.ocx". Action Taken: No Action Taken.
42: Mon Jun 13 21:14:29 2005 => Entry "HKCR\CLSID\{CF9DA2A7-997B-8675-9FB6-CF0C28973F9F}" refers to invalid object "C:\Programme\Microsoft Plus!\Speaker Enhancement\SpkrCorr.dll". Action Taken: No Action Taken.
43: Mon Jun 13 21:14:30 2005 => Entry "HKCR\CLSID\{D62B5127-8D03-4175-BA71-E0041595DA4B}" refers to invalid object "C:\WINDOWS\System32\TriacomUD.dll". Action Taken: No Action Taken.
44: Mon Jun 13 21:14:30 2005 => Entry "HKCR\CLSID\{D9812706-90EB-11D2-887A-BD32CB08A467}" refers to invalid object "C:\DOKUME~1\BRIXCA~1\LOKALE~1\Temp\fldrview.ocx". Action Taken: No Action Taken.
45: Mon Jun 13 21:14:30 2005 => Entry "HKCR\CLSID\{D9812707-90EB-11D2-887A-BD32CB08A467}" refers to invalid object "C:\DOKUME~1\BRIXCA~1\LOKALE~1\Temp\fldrview.ocx". Action Taken: No Action Taken.
46: Mon Jun 13 21:14:30 2005 => Entry "HKCR\CLSID\{D98E820F-6ACD-4dc0-921E-9841E3D8B4A7}" refers to invalid object "D:\player\WMMP.EXE". Action Taken: No Action Taken.
47: Mon Jun 13 21:14:31 2005 => Entry "HKCR\CLSID\{E7F74CE1-AF1E-11D3-B9DE-9CA106C10000}" refers to invalid object "C:\DOKUME~1\BRIXCA~1\LOKALE~1\Temp\fldrview.ocx". Action Taken: No Action Taken.
48: Mon Jun 13 21:14:31 2005 => Entry "HKCR\CLSID\{ECFBE6E0-1AC8-11D4-8501-00A0CC5D1F63}" refers to invalid object "C:\WINDOWS\wt\webdriver\4.1.1\wtwmplug.ax". Action Taken: No Action Taken.
49: Mon Jun 13 21:14:31 2005 => Entry "HKCR\CLSID\{ED214C95-2AF4-41F6-38B6-D3C83E6BFD98}" refers to invalid object "C:\WINDOWS\system32\ATPART~1.DLL". Action Taken: No Action Taken.
50: Mon Jun 13 21:14:31 2005 => Entry "HKCR\CLSID\{F27CE930-4CA3-11D1-AFF2-006097C9A284}" refers to invalid object "C:\PROGRA~1\MICROS~2\Office\BLNMGRPS.DLL". Action Taken: No Action Taken.
51: Mon Jun 13 21:14:32 2005 => Entry "HKCR\CLSID\{F42D656E-34AD-11D5-A8E0-00A0CC663B7C}" refers to invalid object "C:\WINDOWS\wt\wtgutils\wtgutils.dll". Action Taken: No Action Taken.
52: Mon Jun 13 21:14:32 2005 => Entry "HKCR\CLSID\{F47CC487-962D-C9D1-EABD-A0B0EEEB656B}" refers to invalid object "C:\Programme\Microsoft Plus!\Speaker Enhancement\SpkrCorr.dll". Action Taken: No Action Taken.
53: Mon Jun 13 21:14:32 2005 => Entry "HKCR\CLSID\{F4C6D6E0-A8FB-4281-BE24-1662D646FE2B}" refers to invalid object "D:\player\WMMP.EXE". Action Taken: No Action Taken.
54: Mon Jun 13 21:14:32 2005 => Entry "HKCR\CLSID\{f612954d-3b0b-4c56-9563-227b7be624b4}" refers to invalid object "ADMWPROX.DLL". Action Taken: No Action Taken.
55: Mon Jun 13 21:14:32 2005 => Entry "HKCR\CLSID\{FA13A9FA-CA9B-11D2-9780-00104B242EA3}" refers to invalid object "C:\WINDOWS\wt\webdriver\4.1.1\webdriver.dll". Action Taken: No Action Taken.
56: Mon Jun 13 21:14:32 2005 => Entry "HKCR\CLSID\{FACF11A2-5095-11D3-A9DE-00C0268E5C48}" refers to invalid object "D:\RUNTIME\mDxEmul.mom". Action Taken: No Action Taken.
57: Mon Jun 13 21:14:32 2005 => Entry "HKCR\CLSID\{FBE840E5-13A5-4cff-B2A9-4D1E64A17FF2}" refers to invalid object "D:\player\WMMP.EXE". Action Taken: No Action Taken.
58: Mon Jun 13 21:14:35 2005 => Entry "HKCR\AcroExch.Microsoft.2" refers to invalid object "{C23CE296-41EA-6509-2CE8-109F7744B76E}". Action Taken: No Action Taken.
59: Mon Jun 13 21:14:35 2005 => Entry "HKCR\ActiveSkin.duzactxctrlPPG1.1" refers to invalid object "{A64301A8-68ED-E782-98E9-BA63119AD606}". Action Taken: No Action Taken.
60: Mon Jun 13 21:14:35 2005 => Entry "HKCR\Adobe.ComCallWrapper.2" refers to invalid object "{990077E2-0308-1830-2A51-18AA6F13D8EC}". Action Taken: No Action Taken.
61: Mon Jun 13 21:14:35 2005 => Entry "HKCR\ADODB.SkinEvent.3" refers to invalid object "{10D69F8E-AA28-FBA2-75E3-035D97BBDD5A}". Action Taken: No Action Taken.
62: Mon Jun 13 21:14:35 2005 => Entry "HKCR\Alg.AlgSetup" refers to invalid object "{27D0BCCC-344D-4287-AF37-0C72C161C14C}". Action Taken: No Action Taken.
63: Mon Jun 13 21:14:35 2005 => Entry "HKCR\Alg.AlgSetup.1" refers to invalid object "{27D0BCCC-344D-4287-AF37-0C72C161C14C}". Action Taken: No Action Taken.
64: Mon Jun 13 21:14:35 2005 => Entry "HKCR\Catsrv.CddbDisc" refers to invalid object "{7A8DC538-E942-2001-B14C-8825807EF7C8}". Action Taken: No Action Taken.
65: Mon Jun 13 21:14:36 2005 => Entry "HKCR\ComPlusMetaData.MsCorHost" refers to invalid object "{727CDF4F-3BA0-11D3-8738-00C04F79ED0D}". Action Taken: No Action Taken.
66: Mon Jun 13 21:14:36 2005 => Entry "HKCR\ComPlusMetaData.MsCorHost.2" refers to invalid object "{727CDF4F-3BA0-11D3-8738-00C04F79ED0D}". Action Taken: No Action Taken.
67: Mon Jun 13 21:14:37 2005 => Entry "HKCR\DIRECT.WizardDataFile.3" refers to invalid object "{48216925-D85E-66DA-8B31-31C29E2DB982}". Action Taken: No Action Taken.
68: Mon Jun 13 21:14:37 2005 => Entry "HKCR\Downloader.IMDownloader" refers to invalid object "{F00F4763-7355-4725-82F7-0DA94A256D46}". Action Taken: No Action Taken.
69: Mon Jun 13 21:14:37 2005 => Entry "HKCR\Downloader.IMDownloader.1" refers to invalid object "{F00F4763-7355-4725-82F7-0DA94A256D46}". Action Taken: No Action Taken.
70: Mon Jun 13 21:14:40 2005 => Entry "HKCR\MailFileAtt" refers to invalid object "{00020D05-0000-0000-C000-000000000046}". Action Taken: No Action Taken.
71: Mon Jun 13 21:14:40 2005 => Entry "HKCR\mapifvbx.object" refers to invalid object "{41116C00-8B90-101B-96CD-00AA003B14FC}". Action Taken: No Action Taken.
72: Mon Jun 13 21:14:40 2005 => Entry "HKCR\mapifvbx.object.1" refers to invalid object "{41116C00-8B90-101B-96CD-00AA003B14FC}". Action Taken: No Action Taken.
73: Mon Jun 13 21:14:44 2005 => Entry "HKCR\OWS.BrowserUI" refers to invalid object "{BDEADE43-C265-11D0-BCED-00A0C90AB50F}". Action Taken: No Action Taken.
74: Mon Jun 13 21:14:44 2005 => Entry "HKCR\OWS.BrowserUI.2" refers to invalid object "{BDEADE43-C265-11D0-BCED-00A0C90AB50F}". Action Taken: No Action Taken.
75: Mon Jun 13 21:14:44 2005 => Entry "HKCR\PhotoBase.Document" refers to invalid object "{F90E7260-9545-11D0-87A0-444553540000}". Action Taken: No Action Taken.
76: Mon Jun 13 21:14:44 2005 => Entry "HKCR\Plenoptic.Plenoptic" refers to invalid object "{607C27E9-AB27-11d3-A116-A0EA50C10801}". Action Taken: No Action Taken.
77: Mon Jun 13 21:14:44 2005 => Entry "HKCR\Plenoptic.Plenoptic.1" refers to invalid object "{607C27E9-AB27-11d3-A116-A0EA50C10801}". Action Taken: No Action Taken.
78: Mon Jun 13 21:14:45 2005 => Entry "HKCR\RTCCore.RTCClient" refers to invalid object "{7a42ea29-a2b7-40c4-b091-f6f024aa89be}". Action Taken: No Action Taken.
79: Mon Jun 13 21:14:45 2005 => Entry "HKCR\RTCCore.RTCClient.1" refers to invalid object "{7a42ea29-a2b7-40c4-b091-f6f024aa89be}". Action Taken: No Action Taken.
80: Mon Jun 13 21:14:46 2005 => Entry "HKCR\SymWriter.pdb" refers to invalid object "{520DC67A-752E-11D3-8D56-00C04F680B2B}". Action Taken: No Action Taken.
81: Mon Jun 13 21:14:48 2005 => Entry "HKCR\WebInstall.WWWInstall" refers to invalid object "{7DBFDA8E-D33B-11D4-9269-00600868E56E}". Action Taken: No Action Taken.
82: Mon Jun 13 21:14:48 2005 => Entry "HKCR\WebInstall.WWWInstall.1" refers to invalid object "{7DBFDA8E-D33B-11D4-9269-00600868E56E}". Action Taken: No Action Taken.
83: Mon Jun 13 21:14:48 2005 => Entry "HKCR\WMPPublsihCntr.WMPPublsihCntr" refers to invalid object "{939438A9-CF0F-44d8-9140-599736F0D3A2}". Action Taken: No Action Taken.
84: Mon Jun 13 21:14:48 2005 => Entry "HKCR\WMPPublsihCntr.WMPPublsihCntr.1" refers to invalid object "{939438A9-CF0F-44d8-9140-599736F0D3A2}". Action Taken: No Action Taken.
85: Mon Jun 13 21:14:49 2005 => Entry "HKCR\ZoomBrowserEX.Document" refers to invalid object "{476A6961-6FF1-11D0-9742-00A0246B6561}". Action Taken: No Action Taken.
86: Mon Jun 13 21:24:31 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\CleverIEHookerJeired.zip is Not Scanned
87: Mon Jun 13 21:24:31 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\CommonName.zip is Not Scanned
88: Mon Jun 13 21:24:31 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\DownloadWare.zip is Not Scanned
89: Mon Jun 13 21:24:31 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\DSOExploit.zip is Not Scanned
90: Mon Jun 13 21:24:31 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\DSOExploit1.zip is Not Scanned
91: Mon Jun 13 21:24:31 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\DSOExploit10.zip is Not Scanned
92: Mon Jun 13 21:24:32 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\DSOExploit11.zip is Not Scanned
93: Mon Jun 13 21:24:32 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\DSOExploit12.zip is Not Scanned
94: Mon Jun 13 21:24:32 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\DSOExploit13.zip is Not Scanned
95: Mon Jun 13 21:24:32 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\DSOExploit14.zip is Not Scanned
96: Mon Jun 13 21:24:32 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\DSOExploit2.zip is Not Scanned
97: Mon Jun 13 21:24:32 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\DSOExploit3.zip is Not Scanned
98: Mon Jun 13 21:24:32 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\DSOExploit4.zip is Not Scanned
99: Mon Jun 13 21:24:32 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\DSOExploit5.zip is Not Scanned
100: Mon Jun 13 21:24:32 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\DSOExploit6.zip is Not Scanned
101: Mon Jun 13 21:24:32 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\DSOExploit7.zip is Not Scanned
102: Mon Jun 13 21:24:32 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\DSOExploit8.zip is Not Scanned
103: Mon Jun 13 21:24:32 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\DSOExploit9.zip is Not Scanned
104: Mon Jun 13 21:24:33 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\DyFuCA.zip is Not Scanned
105: Mon Jun 13 21:24:33 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\DyFuCA1.zip is Not Scanned
106: Mon Jun 13 21:24:33 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\DyFuCAInternetOptimizer.zip is Not Scanned
107: Mon Jun 13 21:24:33 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\eUniverseIncrediFind.zip is Not Scanned
108: Mon Jun 13 21:24:33 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\eUniverseIncrediFind1.zip is Not Scanned
109: Mon Jun 13 21:24:33 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\FunWebProducts.zip is Not Scanned
110: Mon Jun 13 21:24:33 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\GAINGator.zip is Not Scanned
111: Mon Jun 13 21:24:33 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\GAINGator1.zip is Not Scanned
112: Mon Jun 13 21:24:34 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\GAINGator10.zip is Not Scanned
113: Mon Jun 13 21:24:35 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\GAINGator11.zip is Not Scanned
114: Mon Jun 13 21:24:37 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\GAINGator2.zip is Not Scanned
115: Mon Jun 13 21:24:37 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\GAINGator3.zip is Not Scanned
116: Mon Jun 13 21:24:37 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\GAINGator4.zip is Not Scanned
117: Mon Jun 13 21:24:37 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\GAINGator5.zip is Not Scanned
118: Mon Jun 13 21:24:37 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\GAINGator6.zip is Not Scanned
119: Mon Jun 13 21:24:38 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\GAINGator7.zip is Not Scanned
120: Mon Jun 13 21:24:38 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\GAINGator8.zip is Not Scanned
121: Mon Jun 13 21:24:38 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\GAINGator9.zip is Not Scanned
122: Mon Jun 13 21:24:38 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\Hotbar.zip is Not Scanned
123: Mon Jun 13 21:24:38 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\Hotbar1.zip is Not Scanned
124: Mon Jun 13 21:24:38 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\Hotbar10.zip is Not Scanned
125: Mon Jun 13 21:24:38 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\Hotbar11.zip is Not Scanned
126: Mon Jun 13 21:24:38 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\Hotbar12.zip is Not Scanned
127: Mon Jun 13 21:24:38 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\Hotbar13.zip is Not Scanned
128: Mon Jun 13 21:24:38 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\Hotbar2.zip is Not Scanned
129: Mon Jun 13 21:24:38 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\Hotbar3.zip is Not Scanned
130: Mon Jun 13 21:24:38 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\Hotbar4.zip is Not Scanned
131: Mon Jun 13 21:24:38 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\Hotbar5.zip is Not Scanned
132: Mon Jun 13 21:24:38 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\Hotbar6.zip is Not Scanned
133: Mon Jun 13 21:24:39 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\Hotbar7.zip is Not Scanned
134: Mon Jun 13 21:24:39 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\Hotbar8.zip is Not Scanned
135: Mon Jun 13 21:24:39 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\Hotbar9.zip is Not Scanned
136: Mon Jun 13 21:24:39 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechPowerScan.zip is Not Scanned
137: Mon Jun 13 21:24:39 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechPowerScan1.zip is Not Scanned
138: Mon Jun 13 21:24:39 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSideFind.zip is Not Scanned
139: Mon Jun 13 21:24:39 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSideFind1.zip is Not Scanned
140: Mon Jun 13 21:24:40 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSideFind10.zip is Not Scanned
141: Mon Jun 13 21:24:40 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSideFind11.zip is Not Scanned
142: Mon Jun 13 21:24:40 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSideFind12.zip is Not Scanned
143: Mon Jun 13 21:24:40 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSideFind13.zip is Not Scanned
144: Mon Jun 13 21:24:40 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSideFind14.zip is Not Scanned
145: Mon Jun 13 21:24:40 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSideFind15.zip is Not Scanned
146: Mon Jun 13 21:24:40 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSideFind16.zip is Not Scanned
147: Mon Jun 13 21:24:40 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSideFind17.zip is Not Scanned
148: Mon Jun 13 21:24:40 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSideFind18.zip is Not Scanned
149: Mon Jun 13 21:24:40 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSideFind19.zip is Not Scanned
150: Mon Jun 13 21:24:40 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSideFind2.zip is Not Scanned
151: Mon Jun 13 21:24:40 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSideFind20.zip is Not Scanned
152: Mon Jun 13 21:24:41 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSideFind21.zip is Not Scanned
153: Mon Jun 13 21:24:41 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSideFind22.zip is Not Scanned
154: Mon Jun 13 21:24:41 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSideFind23.zip is Not Scanned
155: Mon Jun 13 21:24:41 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSideFind24.zip is Not Scanned
156: Mon Jun 13 21:24:41 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSideFind25.zip is Not Scanned
157: Mon Jun 13 21:24:41 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSideFind26.zip is Not Scanned
158: Mon Jun 13 21:24:41 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSideFind27.zip is Not Scanned
159: Mon Jun 13 21:24:41 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSideFind28.zip is Not Scanned
160: Mon Jun 13 21:24:41 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSideFind29.zip is Not Scanned
161: Mon Jun 13 21:24:42 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSideFind3.zip is Not Scanned
162: Mon Jun 13 21:24:42 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSideFind30.zip is Not Scanned
163: Mon Jun 13 21:24:42 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSideFind4.zip is Not Scanned
164: Mon Jun 13 21:24:42 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSideFind5.zip is Not Scanned
165: Mon Jun 13 21:24:42 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSideFind6.zip is Not Scanned
166: Mon Jun 13 21:24:42 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSideFind7.zip is Not Scanned
167: Mon Jun 13 21:24:42 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSideFind8.zip is Not Scanned
168: Mon Jun 13 21:24:42 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\ISearchTechSideFind9.zip is Not Scanned
169: Mon Jun 13 21:24:43 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\KeenValueeUniverseMyFreeCursors.zip is Not Scanned
170: Mon Jun 13 21:24:43 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\MyWayMyBar.zip is Not Scanned
171: Mon Jun 13 21:24:43 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\MyWayMyBar1.zip is Not Scanned
172: Mon Jun 13 21:24:43 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\Roings.zip is Not Scanned
173: Mon Jun 13 21:24:43 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\WhenUSearch.zip is Not Scanned
174: Mon Jun 13 21:24:43 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\WhenUSearch1.zip is Not Scanned
175: Mon Jun 13 21:24:43 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\WhenUSearch2.zip is Not Scanned
176: Mon Jun 13 21:24:43 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\WhenUSearch3.zip is Not Scanned
177: Mon Jun 13 21:24:43 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\WhenUSearch4.zip is Not Scanned
178: Mon Jun 13 21:24:43 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\WhenUSearch5.zip is Not Scanned
179: Mon Jun 13 21:24:44 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\WildTangent.zip is Not Scanned
180: Mon Jun 13 21:24:44 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\WildTangent1.zip is Not Scanned
181: Mon Jun 13 21:24:44 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\WildTangent10.zip is Not Scanned
182: Mon Jun 13 21:24:44 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\WildTangent11.zip is Not Scanned
183: Mon Jun 13 21:24:44 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\WildTangent12.zip is Not Scanned
184: Mon Jun 13 21:24:45 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\WildTangent13.zip is Not Scanned
185: Mon Jun 13 21:24:45 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\WildTangent14.zip is Not Scanned
186: Mon Jun 13 21:24:45 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\WildTangent15.zip is Not Scanned
187: Mon Jun 13 21:24:45 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\WildTangent16.zip is Not Scanned
188: Mon Jun 13 21:24:45 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\WildTangent17.zip is Not Scanned
189: Mon Jun 13 21:24:45 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\WildTangent18.zip is Not Scanned
190: Mon Jun 13 21:24:45 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\WildTangent19.zip is Not Scanned
191: Mon Jun 13 21:24:46 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\WildTangent2.zip is Not Scanned
192: Mon Jun 13 21:24:46 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\WildTangent20.zip is Not Scanned
193: Mon Jun 13 21:24:47 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\WildTangent22.zip is Not Scanned
194: Mon Jun 13 21:24:47 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\WildTangent23.zip is Not Scanned
195: Mon Jun 13 21:24:47 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\WildTangent24.zip is Not Scanned
196: Mon Jun 13 21:24:47 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\WildTangent25.zip is Not Scanned
197: Mon Jun 13 21:24:47 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\WildTangent26.zip is Not Scanned
198: Mon Jun 13 21:24:48 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\WildTangent27.zip is Not Scanned
199: Mon Jun 13 21:24:48 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\WildTangent28.zip is Not Scanned
200: Mon Jun 13 21:24:48 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\WildTangent29.zip is Not Scanned
201: Mon Jun 13 21:24:48 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\WildTangent3.zip is Not Scanned
202: Mon Jun 13 21:24:48 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\WildTangent30.zip is Not Scanned
203: Mon Jun 13 21:24:48 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\WildTangent31.zip is Not Scanned
204: Mon Jun 13 21:24:48 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\WildTangent32.zip is Not Scanned
205: Mon Jun 13 21:24:48 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\WildTangent33.zip is Not Scanned
206: Mon Jun 13 21:24:48 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\WildTangent34.zip is Not Scanned
207: Mon Jun 13 21:24:48 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\WildTangent5.zip is Not Scanned
208: Mon Jun 13 21:24:48 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\WildTangent6.zip is Not Scanned
209: Mon Jun 13 21:24:49 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\WildTangent7.zip is Not Scanned
210: Mon Jun 13 21:24:49 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\WildTangent8.zip is Not Scanned
211: Mon Jun 13 21:24:49 2005 => Result: ERROR!!! File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Spybot - Search & Destroy\Recovery\WildTangent9.zip is Not Scanned
212: Mon Jun 13 22:23:16 2005 => Result: ERROR!!! File E:\software\aawsepersonal.exe is Not Scanned

--------------------------------------------------
------------- FILES ADDED TO DELETE --------------
--------------------------------------------------

1: C:\DOKUME~1\BRIXCA~1\LOKALE~1\TEMPOR~1\Content.IE5\81PDW9GN\1100368376122102[1].zip => Trojan-Downloader.Win32.IstBar.ja
2: C:\DOKUME~1\BRIXCA~1\LOKALE~1\TEMPOR~1\Content.IE5\IYW9G2UM\1100358376122102[1].zip => Trojan-Downloader.Win32.IstBar.ja
3: C:\DOKUME~1\BRIXCA~1\LOKALE~1\TEMPOR~1\Content.IE5\IYW9G2UM\1818768376122102[1].zip => Trojan-Downloader.Win32.IstBar.ja
4: C:\Dokumente und Einstellungen\Brix Catherine\Lokale Einstellungen\Temporary Internet Files\Content.IE5\81PDW9GN\1100368376122102[1].zip => Trojan-Downloader.Win32.IstBar.ja
5: C:\Dokumente und Einstellungen\Brix Catherine\Lokale Einstellungen\Temporary Internet Files\Content.IE5\IYW9G2UM\1100358376122102[1].zip => Trojan-Downloader.Win32.IstBar.ja
6: C:\Dokumente und Einstellungen\Brix Catherine\Lokale Einstellungen\Temporary Internet Files\Content.IE5\IYW9G2UM\1818768376122102[1].zip => Trojan-Downloader.Win32.IstBar.ja

--------------------------------------------------
-------------------- Statistik -------------------
--------------------------------------------------

Mon Jun 13 22:23:18 2005 => Total Objects Scanned: 58400
Mon Jun 13 22:23:18 2005 => Total Virus(es) Found: 41
Mon Jun 13 22:23:18 2005 => Total Errors: 212
Mon Jun 13 22:23:18 2005 => Virus Database Date: 2005/06/13
Mon Jun 13 22:23:18 2005 => Virus Database Count: 134470
Mon Jun 13 22:45:11 2005 => Total Objects Scanned: 58400
Mon Jun 13 22:45:11 2005 => Total Virus(es) Found: 41
Mon Jun 13 22:45:12 2005 => Total Errors: 212
Danke Mr.Smoke
swiss
 
Beiträge: 36
Registriert: 13.06.2005, 23:12
Wohnort: Schweiz ( Biel/Bienne )


Beitragvon Nikita am 14.06.2005, 16:56

#öffne das HijackThis-->> Button "scan" -->> Häkchen setzen -->> Button "Fix checked" -->> PC neustarten

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://ie.search.msn.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://ie.search.msn.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://ie.search.msn.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

O4 - HKCU\..\Run: [IncrediMail] C:\PROGRA~1\INCRED~1\bin\IncMail.exe /c
O4 - HKCU\..\Run: [CursorXP] C:\Programme\CursorXP\CursorXP.exe
O8 - Extra context menu item: &Add animation to IncrediMail Style Box - C:\PROGRA~1\INCRED~1\bin\resources\WebMenuImg.htm

PC neustarten

------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------

•KillBox
http://bilder.informationsarchiv.net/Ni ... illBox.zip
Anleitung: (bebildert)
http://nikita.eddys-domain.de/killbox.html

•Delete File on Reboot <--anhaken

und klicke auf das rote Kreuz,
wenn gefragt wird, ob "Do you want to reboot? "----> klicke auf "no",und kopiere das naechste rein, erst beim letzten auf "yes"

C:\Dokumente und Einstellungen\Brix Catherine\Lokale Einstellungen\Temporary Internet Files\Content.IE5\81PDW9GN\1100368376122102[1].zip
C:\Dokumente und Einstellungen\Brix Catherine\Lokale Einstellungen\Temporary Internet Files\Content.IE5\Q3S56J2R\package_MARKETING27[1].exe
C:\WINDOWS\Downloaded Program Files\WebInstall.dll
C:\WINDOWS\NDNuninstall4_85.exe
C:\WINDOWS\NDNuninstall5_64.exe
C:\WINDOWS\NDNuninstall6_10.exe
C:\WINDOWS\NDNuninstall6_22.exe
C:\WINDOWS\system32\BO2802040113.dll
C:\WINDOWS\system32\sahagent1015.exe
C:\WINDOWS\system32\SHAgentNew.dll
C:\WINDOWS\system32\SHAgentNew.dlltmp
C:\Programme\BearShare\Installer\saveinstwm.exe
C:\WINDOWS\iLycos\ss_webdevaz_setup.exe

PC neustarten

CCleaner--> loesche alle *temp-Datein
http://nikita.eddys-domain.de/IE.html

Bild


•Ad-aware SE Personal 1.05 Updated

http://nikita.eddys-domain.de/antispywaretools.html
Laden--> Updaten-->Konfigurieren
http://nikita.eddys-domain.de/adaware.html
#VOR jedem Scanvorgang das Programm Updaten!
waehrend des Scanvorganges müssen ALLE sonstige
Anwendungen beendet werden und alle Browserfenster müssen
geschlossen sein!
scannen-->PC neustarten--> noch mal scannen--> poste das Log vom Scann
Nikita
Moderator
 
Beiträge: 11478
Registriert: 07.12.2003, 16:53
Wohnort: Lissabon

brauche hilfe

Beitragvon swiss am 14.06.2005, 18:42

hallo nikita
zuerst vielen dank für deine schnelle antwort!
habe alle deine tipps durchgegührt führte zum erfolg.

danke

mfg mr. smoke :D

hier noch die logfiles


Ad-Aware SE Build 1.06r1
Logfile Created on:mardi, 14. juin 2005 18:07:46
Created with Ad-Aware SE Personal, free for private use.
Using definitions file:SE1R50 13.06.2005
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

References detected during the scan:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
MRU List(TAC index:0):1 total references
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Definition File:
=========================
Definitions File Loaded:
Reference Number : SE1R50 13.06.2005
Internal build : 58
File location : C:\Programme\Lavasoft\Ad-Aware SE Personal\defs.ref
File size : 481146 Bytes
Total size : 1456012 Bytes
Signature data size : 1427935 Bytes
Reference data size : 27565 Bytes
Signatures total : 40456
CSI Fingerprints total : 904
CSI data size : 31134 Bytes
Target categories : 15
Target families : 692


Memory + processor status:
==========================
Number of processors : 1
Processor architecture : Intel Pentium IV
Memory available:22 %
Total physical memory:261552 kb
Available physical memory:55248 kb
Total page file size:632516 kb
Available on page file:458060 kb
Total virtual memory:2097024 kb
Available virtual memory:2037232 kb
OS:Microsoft Windows XP Professional Service Pack 2 (Build 2600)

Ad-Aware SE Settings
===========================
Set : Search for negligible risk entries
Set : Safe mode (always request confirmation)
Set : Scan active processes
Set : Scan registry
Set : Deep-scan registry
Set : Scan my IE Favorites for banned URLs
Set : Scan within archives
Set : Scan my Hosts file

Extended Ad-Aware SE Settings
===========================
Set : Unload recognized processes & modules during scan
Set : Scan registry for all users instead of current user only
Set : Always try to unload modules before deletion
Set : During removal, unload Explorer and IE if necessary
Set : Let Windows remove files in use at next reboot
Set : Delete quarantined objects after restoring
Set : Include basic Ad-Aware settings in log file
Set : Include additional Ad-Aware settings in log file
Set : Include reference summary in log file
Set : Include alternate data stream details in log file
Set : Play sound at scan completion if scan locates critical objects


14.06.2005 18:07:46 - Scan started. (Full System Scan)

MRU List Object Recognized!
Location: : C:\Dokumente und Einstellungen\Brix Catherine\recent
Description : list of recently opened documents


Listing running processes
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

#:1 [smss.exe]
FilePath : \SystemRoot\System32\
ProcessID : 552
ThreadCreationTime : 14.06.2005 16:06:14
BasePriority : Normal


#:2 [csrss.exe]
FilePath : \??\C:\WINDOWS\system32\
ProcessID : 608
ThreadCreationTime : 14.06.2005 16:06:17
BasePriority : Normal


#:3 [winlogon.exe]
FilePath : \??\C:\WINDOWS\system32\
ProcessID : 632
ThreadCreationTime : 14.06.2005 16:06:18
BasePriority : High


#:4 [services.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 680
ThreadCreationTime : 14.06.2005 16:06:18
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Betriebssystem Microsoft® Windows®
CompanyName : Microsoft Corporation
FileDescription : Anwendung für Dienste und Controller
InternalName : services.exe
LegalCopyright : © Microsoft Corporation. Alle Rechte vorbehalten.
OriginalFilename : services.exe

#:5 [lsass.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 692
ThreadCreationTime : 14.06.2005 16:06:18
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : LSA Shell (Export Version)
InternalName : lsass.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : lsass.exe

#:6 [svchost.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 844
ThreadCreationTime : 14.06.2005 16:06:19
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe

#:7 [svchost.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 900
ThreadCreationTime : 14.06.2005 16:06:20
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe

#:8 [svchost.exe]
FilePath : C:\WINDOWS\System32\
ProcessID : 940
ThreadCreationTime : 14.06.2005 16:06:20
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe

#:9 [svchost.exe]
FilePath : C:\WINDOWS\System32\
ProcessID : 1048
ThreadCreationTime : 14.06.2005 16:06:20
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe

#:10 [svchost.exe]
FilePath : C:\WINDOWS\System32\
ProcessID : 1144
ThreadCreationTime : 14.06.2005 16:06:21
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe

#:11 [spoolsv.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 1360
ThreadCreationTime : 14.06.2005 16:06:23
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Spooler SubSystem App
InternalName : spoolsv.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : spoolsv.exe

#:12 [avguard.exe]
FilePath : C:\Programme\AVPersonal\
ProcessID : 1444
ThreadCreationTime : 14.06.2005 16:06:25
BasePriority : Normal


#:13 [ati2evxx.exe]
FilePath : C:\WINDOWS\System32\
ProcessID : 1456
ThreadCreationTime : 14.06.2005 16:06:25
BasePriority : Normal


#:14 [avwupsrv.exe]
FilePath : C:\Programme\AVPersonal\
ProcessID : 1468
ThreadCreationTime : 14.06.2005 16:06:25
BasePriority : Normal


#:15 [cdac11ba.exe]
FilePath : C:\WINDOWS\system32\drivers\
ProcessID : 1488
ThreadCreationTime : 14.06.2005 16:06:25
BasePriority : Normal
FileVersion : 4.20.020
ProductVersion : 4.20.020 Windows NT 2002/12/10
ProductName : SafeCast Windows NT
CompanyName : Macrovision
FileDescription : Macrovision RTS Service
InternalName : CDANTSRV
LegalCopyright : Copyright (c) 1998-2002 Macrovision Corp.
OriginalFilename : CDANTSRV.EXE
Comments : StringFileInfo: U.S. English

#:16 [svchost.exe]
FilePath : C:\WINDOWS\System32\
ProcessID : 1676
ThreadCreationTime : 14.06.2005 16:06:25
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe

#:17 [alg.exe]
FilePath : C:\WINDOWS\System32\
ProcessID : 1996
ThreadCreationTime : 14.06.2005 16:06:27
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Application Layer Gateway Service
InternalName : ALG.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : ALG.exe

#:18 [explorer.exe]
FilePath : C:\WINDOWS\
ProcessID : 1088
ThreadCreationTime : 14.06.2005 16:06:38
BasePriority : Normal
FileVersion : 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 6.00.2900.2180
ProductName : Betriebssystem Microsoft® Windows®
CompanyName : Microsoft Corporation
FileDescription : Windows Explorer
InternalName : explorer
LegalCopyright : © Microsoft Corporation. Alle Rechte vorbehalten.
OriginalFilename : EXPLORER.EXE

#:19 [syntplpr.exe]
FilePath : C:\Programme\Synaptics\SynTP\
ProcessID : 1528
ThreadCreationTime : 14.06.2005 16:06:40
BasePriority : Normal
FileVersion : 5.7.1 02Aug01
ProductVersion : 5.7.1 02Aug01
ProductName : Progressive Touch
CompanyName : Synaptics, Inc.
FileDescription : TouchPad Driver Helper Application
InternalName : SynTPLpr
LegalCopyright : Copyright (C) Synaptics, Inc. 1996-2001
OriginalFilename : SynTPLpr.exe

#:20 [syntpenh.exe]
FilePath : C:\Programme\Synaptics\SynTP\
ProcessID : 1700
ThreadCreationTime : 14.06.2005 16:06:40
BasePriority : Normal
FileVersion : 5.7.1 02Aug01
ProductVersion : 5.7.1 02Aug01
ProductName : Progressive Touch
CompanyName : Synaptics, Inc.
FileDescription : Synaptics TouchPad Enhancements
InternalName : Scrolleroo
LegalCopyright : Copyright (C) Synaptics, Inc. 1996-2001
OriginalFilename : SynTPEnh.exe

#:21 [atiptaxx.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 1940
ThreadCreationTime : 14.06.2005 16:06:41
BasePriority : Normal
FileVersion : 6.13.10.2529
ProductVersion : 6.13.10.2529
ProductName : ATI Desktop Component
CompanyName : ATI Technologies, Inc.
FileDescription : ATI Desktop Control Panel
InternalName : Atiptaxx.exe
LegalCopyright : Copyright (C) 1998-2001 ATI Technologies Inc.
OriginalFilename : Atiptaxx.exe

#:22 [soundman.exe]
FilePath : C:\WINDOWS\
ProcessID : 1960
ThreadCreationTime : 14.06.2005 16:06:41
BasePriority : Normal
FileVersion : 4.1
ProductVersion : 4.1
ProductName : Avance Sound Effect Manager v.4.1
CompanyName : Avance Logic, Inc.
FileDescription : Avance Sound Effect Manager
InternalName : SoundMan
LegalCopyright : Copyright (c) 2000-2001 Avance Logic, Inc.
OriginalFilename : SoundMan.exe
Comments : Avance Sound Effect Control Panel

#:23 [opware32.exe]
FilePath : C:\Programme\Caere\OmniPagePro90\
ProcessID : 1980
ThreadCreationTime : 14.06.2005 16:06:41
BasePriority : Normal
FileVersion : 9.0
ProductVersion : 9.0
ProductName : OmniPage Pro
CompanyName : Caere Corporation
FileDescription : OCR Aware (32-bit)
InternalName : Opware32.exe
LegalCopyright : Copyright © 1995-1998 Caere Corporation
OriginalFilename : Opware32.exe

#:24 [qttask.exe]
FilePath : C:\Programme\QuickTime\
ProcessID : 2044
ThreadCreationTime : 14.06.2005 16:06:41
BasePriority : Normal
FileVersion : 6.5.1
ProductVersion : QuickTime 6.5.1
ProductName : QuickTime
CompanyName : Apple Computer, Inc.
InternalName : QuickTime Task
LegalCopyright : © Apple Computer, Inc. 2001-2004
OriginalFilename : QTTask.exe

#:25 [ituneshelper.exe]
FilePath : C:\Programme\iTunes\
ProcessID : 236
ThreadCreationTime : 14.06.2005 16:06:41
BasePriority : Normal
FileVersion : 4.7.0.42
ProductVersion : 4.7.0.42
ProductName : iTunes
CompanyName : Apple Computer, Inc.
FileDescription : iTunesHelper Module
InternalName : iTunesHelper
LegalCopyright : © 2003-2004 Apple Computer, Inc. All Rights Reserved.
OriginalFilename : iTunesHelper.exe

#:26 [avgnt.exe]
FilePath : C:\Programme\AVPersonal\
ProcessID : 228
ThreadCreationTime : 14.06.2005 16:06:42
BasePriority : Normal


#:27 [ntvdm.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 260
ThreadCreationTime : 14.06.2005 16:06:42
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Betriebssystem Microsoft® Windows®
CompanyName : Microsoft Corporation
FileDescription : NTVDM.EXE
InternalName : NTVDM.EXE
LegalCopyright : © Microsoft Corporation. Alle Rechte vorbehalten.
OriginalFilename : NTVDM.EXE

#:28 [ctfmon.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 396
ThreadCreationTime : 14.06.2005 16:06:42
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : CTF Loader
InternalName : CTFMON
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : CTFMON.EXE

#:29 [daydisplay.exe]
FilePath : C:\Programme\DayDisplay\
ProcessID : 728
ThreadCreationTime : 14.06.2005 16:06:43
BasePriority : Normal
FileVersion : 1.4.0.0
ProductVersion : 1.40
ProductName : DayDisplay
CompanyName : aborange.de - Mathias Müller
FileDescription : DayDisplay - Taskbar-Kalender
InternalName : DayDisplay
LegalCopyright : © 2002-2003 by Mathias Müller
OriginalFilename : DayDisplay.exe

#:30 [ipodservice.exe]
FilePath : C:\Programme\iPod\bin\
ProcessID : 428
ThreadCreationTime : 14.06.2005 16:06:43
BasePriority : Normal
FileVersion : 4.7.0.42
ProductVersion : 4.7.0.42
ProductName : iTunes
CompanyName : Apple Computer, Inc.
FileDescription : iPodService Module
InternalName : iPodService
LegalCopyright : © 2003-2004 Apple Computer, Inc. All Rights Reserved.
OriginalFilename : iPodService.exe

#:31 [wlm.exe]
FilePath : C:\Programme\Siemens\Gigaset WLAN Adapter\
ProcessID : 480
ThreadCreationTime : 14.06.2005 16:06:45
BasePriority : Normal
FileVersion : 3, 3, 4, 52
ProductVersion : 1, 0, 0, 1
ProductName : Wireless LAN Monitor Utility
CompanyName : ATMEL
FileDescription : Wireless LAN Monitor Utility
InternalName : WlanMonitor
LegalCopyright : Copyright © 2002
OriginalFilename : WlanMonitor.exe
Comments : Wireless LAN Monitor Utility

#:32 [wuauclt.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 3528
ThreadCreationTime : 14.06.2005 16:07:11
BasePriority : Normal
FileVersion : 5.4.3790.2182 built by: srv03_rtm(ntvbl04)
ProductVersion : 5.4.3790.2182
ProductName : Betriebssystem Microsoft® Windows®
CompanyName : Microsoft Corporation
FileDescription : Automatische Updates
InternalName : wuauclt.exe
LegalCopyright : © Microsoft Corporation. Alle Rechte vorbehalten.
OriginalFilename : wuauclt.exe

#:33 [wmiprvse.exe]
FilePath : C:\WINDOWS\System32\wbem\
ProcessID : 3812
ThreadCreationTime : 14.06.2005 16:07:16
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : WMI
InternalName : Wmiprvse.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : Wmiprvse.exe

#:34 [ad-aware.exe]
FilePath : C:\Programme\Lavasoft\Ad-Aware SE Personal\
ProcessID : 2204
ThreadCreationTime : 14.06.2005 16:07:31
BasePriority : Normal
FileVersion : 6.2.0.236
ProductVersion : SE 106
ProductName : Lavasoft Ad-Aware SE
CompanyName : Lavasoft Sweden
FileDescription : Ad-Aware SE Core application
InternalName : Ad-Aware.exe
LegalCopyright : Copyright © Lavasoft AB Sweden
OriginalFilename : Ad-Aware.exe
Comments : All Rights Reserved

Memory scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 1


Started registry scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Registry Scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 1


Started deep registry scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Deep registry scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 1


Started Tracking Cookie scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»


Tracking cookie scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 1



Deep scanning and examining files (C:)
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Disk Scan Result for C:\
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 1


Deep scanning and examining files (E:)
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Disk Scan Result for E:\
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 1


Scanning Hosts file......
Hosts file location:"C:\WINDOWS\system32\drivers\etc\hosts".
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Hosts file scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
2 entries scanned.
New critical objects:0
Objects found so far: 1




Performing conditional scans...
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Conditional scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 1

18:19:56 Scan Complete

Summary Of This Scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Total scanning time:00:12:09.599
Objects scanned:102673
Objects identified:0
Objects ignored:0
New critical objects:0

Logfile of HijackThis v1.99.1
Scan saved at 18:32:03, on 14.06.2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programme\AVPersonal\AVGUARD.EXE
C:\WINDOWS\System32\Ati2evxx.exe
C:\Programme\AVPersonal\AVWUPSRV.EXE
C:\WINDOWS\system32\drivers\CDAC11BA.EXE
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Programme\Synaptics\SynTP\SynTPLpr.exe
C:\Programme\Synaptics\SynTP\SynTPEnh.exe
C:\WINDOWS\system32\atiptaxx.exe
C:\WINDOWS\soundman.exe
C:\Programme\Caere\OmniPagePro90\opware32.exe
C:\Programme\QuickTime\qttask.exe
C:\Programme\iTunes\iTunesHelper.exe
C:\Programme\AVPersonal\AVGNT.EXE
C:\WINDOWS\system32\ntvdm.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Programme\DayDisplay\DayDisplay.exe
C:\Programme\iPod\bin\iPodService.exe
C:\Programme\Siemens\Gigaset WLAN Adapter\wlm.exe
C:\Programme\Mozilla Firefox\firefox.exe
C:\Programme\hijackthis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bluewin.ch
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.ch/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page_bak = http://www.google.ch/
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = iexplore
O4 - HKLM\..\Run: [SynTPLpr] C:\Programme\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Programme\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [AtiPTA] atiptaxx.exe
O4 - HKLM\..\Run: [SoundMan] soundman.exe
O4 - HKLM\..\Run: [OmniPage] C:\Programme\Caere\OmniPagePro90\opware32.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Programme\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] C:\Programme\iTunes\iTunesHelper.exe
O4 - HKLM\..\Run: [AVGCtrl] C:\Programme\AVPersonal\AVGNT.EXE /min
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [DayDisplay] C:\Programme\DayDisplay\DayDisplay.exe
O4 - HKCU\..\Run: [ccleaner] "C:\Programme\CCleaner\ccleaner.exe" /AUTO
O4 - Global Startup: Gigaset WLAN Adapter Monitor.lnk = ?
O8 - Extra context menu item: Nach Microsoft &Excel exportieren - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Recherchieren - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} (RdxIE Class) - http://software-dl.real.com/267ebc20151 ... xIE601.cab
O23 - Service: AntiVir Service (AntiVirService) - H+BEDV Datentechnik GmbH - C:\Programme\AVPersonal\AVGUARD.EXE
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: AntiVir Update (AVWUpSrv) - H+BEDV Datentechnik GmbH, Germany - C:\Programme\AVPersonal\AVWUPSRV.EXE
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Programme\iPod\bin\iPodService.exe

hoffe nun sieht es gut aus
swiss
 
Beiträge: 36
Registriert: 13.06.2005, 23:12
Wohnort: Schweiz ( Biel/Bienne )

Beitragvon Nikita am 14.06.2005, 19:09

alles gute fuer dich + PC ;)
Nikita
Moderator
 
Beiträge: 11478
Registriert: 07.12.2003, 16:53
Wohnort: Lissabon

brauche hilfe

Beitragvon swiss am 14.06.2005, 20:29

hallo nikita

herzlichen DANK für deine hilfe !!!


mfg
mr. smoke
swiss
 
Beiträge: 36
Registriert: 13.06.2005, 23:12
Wohnort: Schweiz ( Biel/Bienne )



Ähnliche Themen


Zurück zu Online- und PC-Sicherheit

Wer ist online?

Mitglieder in diesem Forum: 0 Mitglieder und 0 Gäste