Adware Betterinternet

Warnungen vor Sicherheitslücken und Hilfe beim Enfernen von Viren, Würmern und Trojanern.

Adware Betterinternet

Beitragvon MiKie am 01.08.2005, 14:27

Hallo !!!!
Beim Lesen in diesem Forum ist mir aufgefallen, dass der Beitrag bzw. das Problem von Rauron mit meinem fast kompatibel ist.
Deshalb meine Frage: kann ich den Lösungsweg von Nikita, Beitrag 7264, analog anwenden oder gibt es doch noch etwas zu beachten. Meine HijackThis.log:
Logfile of HijackThis v1.99.1
Scan saved at 12:19:49, on 01.08.2005
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programme\Gemeinsame Dateien\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\Explorer.exe
C:\PROGRA~1\NORTON~1\NORTON~2\GHOSTS~2.EXE
C:\Programme\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
C:\Programme\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe
c:\windows\system32\dzamsk.exe
C:\WINDOWS\System32\svchost.exe
C:\Programme\Teledat 320\Awatch.exe
C:\WINDOWS\System32\P2P Networking\P2P Networking.exe
C:\Programme\Common files\SearchUpgrader\SearchUpgrader.exe
C:\Programme\Gemeinsame Dateien\Symantec Shared\ccApp.exe
C:\Programme\Norton SystemWorks\Norton Ghost\GhostStartTrayApp.exe
C:\program files\altnet\points manager\points manager.exe
C:\Programme\Gemeinsame Dateien\CMEII\CMESys.exe
C:\Programme\HP\HP Software Update\HPWuSchd.exe
C:\Programme\HP\hpcoretech\hpcmpmgr.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Programme\HP\Digital Imaging\bin\hpqtra08.exe
C:\Programme\Gemeinsame Dateien\GMT\GMT.exe
C:\PROGRA~2\Altnet\DOWNLO~1\asm.exe
C:\WINDOWS\System32\HPZipm12.exe
C:\WINDOWS\System32\wuauclt.exe
C:\PROGRA~1\MESSEN~1\msmsgs.exe
C:\PROGRA~2\Altnet\DOWNLO~1\adm4005.exe
C:\Dokumente und Einstellungen\Standard\Lokale Einstellungen\Temp\Temporäres Verzeichnis 2 für hijackthis.zip\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.de/0SEDEDE/SAOS01
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.t-online.de/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.t-online.de
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page_bak = http://www.t-online.de/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\SYSTEM\blank.htm
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer von T-Online
R3 - URLSearchHook: (no name) - {00D6A7E7-4A97-456f-848A-3B75BF7554D7} - (no file)
F2 - REG:system.ini: Shell=Explorer.exe C:\WINDOWS\Nail.exe
O2 - BHO: (no name) - {302A3240-4805-4a34-97D7-1645A0B08410} - (no file)
O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Programme\Norton SystemWorks\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Programme\Norton SystemWorks\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [AWatch] "C:\Programme\Teledat 320\Awatch.exe"
O4 - HKLM\..\Run: [P2P Networking] C:\WINDOWS\System32\P2P Networking\P2P Networking.exe /AUTOSTART
O4 - HKLM\..\Run: [SearchUpgrader] C:\Programme\Common files\SearchUpgrader\SearchUpgrader.exe
O4 - HKLM\..\Run: [ccApp] "C:\Programme\Gemeinsame Dateien\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [ccRegVfy] "C:\Programme\Gemeinsame Dateien\Symantec Shared\ccRegVfy.exe"
O4 - HKLM\..\Run: [GhostStartTrayApp] C:\Programme\Norton SystemWorks\Norton Ghost\GhostStartTrayApp.exe
O4 - HKLM\..\Run: [SSC_UserPrompt] C:\Programme\Gemeinsame Dateien\Symantec Shared\Security Center\UsrPrmpt.exe
O4 - HKLM\..\Run: [AltnetPointsManager] c:\program files\altnet\points manager\points manager.exe -s
O4 - HKLM\..\Run: [CMESys] "C:\Programme\Gemeinsame Dateien\CMEII\CMESys.exe"
O4 - HKLM\..\Run: [farmmext] C:\WINDOWS\farmmext.exe
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [HP Software Update] "C:\Programme\HP\HP Software Update\HPWuSchd.exe"
O4 - HKLM\..\Run: [HP Component Manager] "C:\Programme\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [lecafs] c:\windows\system32\dzamsk.exe r
O4 - HKLM\..\RunServices: [GhostStartService] C:\PROGRA~1\NORTON~1\NORTON~2\GHOSTS~2.EXE
O4 - HKLM\..\RunOnce: [0006 - C:\Dokumente und Einstellungen\Standard\Startmenü\Programme\hp deskjet 816C series v3.0] C:\WINDOWS\SYSTEM32\command.com /c rmdir "C:\Dokumente und Einstellungen\Standard\Startmenü\Programme\hp deskjet 816C series v3.0"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Programme\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: Add selected links to Link Container - C:\PROGRA~1\FIREWA~1\WEBFIL~1\System\Scripts\off_collector_sel.htm
O8 - Extra context menu item: Nach Microsoft &Excel exportieren - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Show domain links - C:\PROGRA~1\FIREWA~1\WEBFIL~1\System\Scripts\off_domain_links.htm
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\MESSEN~1\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\MESSEN~1\MSMSGS.EXE
O12 - Plugin for .mid: C:\Programme\Internet Explorer\PLUGINS\npqtplugin.dll
O12 - Plugin for .wav: C:\Programme\Internet Explorer\PLUGINS\npqtplugin.dll
O14 - IERESET.INF: START_PAGE_URL=http://www.t-online.de
O16 - DPF: {1D6711C8-7154-40BB-8380-3DEA45B69CBF} (Web P2P Installer) -
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/Shar ... vSniff.cab
O16 - DPF: {54823A9D-6BAE-11D5-B519-0050BA2413EB} (ChkDVDCtl Class) - http://www.gocyberlink.com/winxp/CheckDVD.cab
O16 - DPF: {B1953AD6-C50E-11D3-B020-00A0C9251384} (O2C-Player (ELECO Software GmbH)) - http://www.o2c.de/download/O2CPlayer.CAB
O16 - DPF: {F0BC061F-DAF9-4533-8011-53BCB4C10307} (Installations Assistent) - http://install.power-url.de/InstallationsAssistent.ocx
O17 - HKLM\System\CCS\Services\Tcpip\..\{7A6E01DE-873A-4B8F-A1A5-B96D0FD641D7}: NameServer = 192.168.123.252,192.168.123.253
O17 - HKLM\System\CCS\Services\Tcpip\..\{C6B56B90-8394-4FB5-9B69-E2BA1C9FB6F6}: NameServer = 217.237.151.33 217.237.149.225
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Programme\Gemeinsame Dateien\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation Service (ccPwdSvc) - Symantec Corporation - C:\Programme\Gemeinsame Dateien\Symantec Shared\ccPwdSvc.exe
O23 - Service: GhostStartService - Symantec Corporation - C:\PROGRA~1\NORTON~1\NORTON~2\GHOSTS~2.EXE
O23 - Service: Norton AntiVirus Auto-Protect-Dienst (navapsvc) - Symantec Corporation - C:\Programme\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\Programme\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\GEMEIN~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Programme\Gemeinsame Dateien\Symantec Shared\SNDSrvc.exe
O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe
O23 - Service: System Startup Service (SvcProc) - Unknown owner - C:\WINDOWS\svcproc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Programme\Gemeinsame Dateien\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: TSMService - T-Systems Nova, Berkom - C:\Programme\T-DSL SpeedManager\tsmsvc.exe

Vielen Dank für eure Mühe !!!!
MiKie
 
Beiträge: 6
Registriert: 01.08.2005, 13:21
Wohnort: Berlin


Beitragvon Holy Marcell am 01.08.2005, 15:03

Ach lass das mal das kriegen wir auch so hin:
============================

Deinstalliere über die software:

~P2P-Networking
~SearchUpgrader (wenn vorhanden ansonsten bescheidsagen)
~Altnet Peer to Peer pointsmanagr

============================dann:

Hijack This Starten ==> Button: Noone of the above just start the programm ==> Button Scan ==> Die Checkbox vor folgenden Einträgen Aktiviren ==> Button Fix Checked ==> Neustart

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\SYSTEM\blank.htm

R3 - URLSearchHook: (no name) - {00D6A7E7-4A97-456f-848A-3B75BF7554D7} - (no file)

F2 - REG:system.ini: Shell=Explorer.exe C:\WINDOWS\Nail.exe

O2 - BHO: (no name) - {302A3240-4805-4a34-97D7-1645A0B08410} - (no file)

O4 - HKLM\..\Run: [SearchUpgrader] C:\Programme\Common files\SearchUpgrader\SearchUpgrader.exe

O4 - HKLM\..\Run: [AltnetPointsManager] c:\program files\altnet\points manager\points manager.exe -s

O4 - HKLM\..\Run: [CMESys] "C:\Programme\Gemeinsame Dateien\CMEII\CMESys.exe

O4 - HKLM\..\Run: [farmmext] C:\WINDOWS\farmmext.exe

O4 - HKLM\..\Run: [lecafs] c:\windows\system32\dzamsk.exe r

O4 - HKLM\..\RunOnce: [0006 - C:\Dokumente und Einstellungen\Standard\Startmenü\Programme\hp deskjet 816C series v3.0] C:\WINDOWS\SYSTEM32\command.com /c rmdir "C:\Dokumente und Einstellungen\Standard\Startmenü\Programme\hp deskjet 816C series v3.0" (Wenn du den nicht kennst)

O16 - DPF: {1D6711C8-7154-40BB-8380-3DEA45B69CBF} (Web P2P Installer) -

O16 - DPF: {F0BC061F-DAF9-4533-8011-53BCB4C10307} (Installations Assistent) - http://install.power-url.de/InstallationsAssistent.ocx

==============================

Lösche folgende Dateien/Ordner mit der Killbox und "Delte on Reboot":
http://nikita.eddys-domain.de/killbox.html

C:\Programme\Gemeinsame Dateien\CMEII\CMESys.exe

C:\Programme\Gemeinsame Dateien\GMT\GMT.exe

C:\PROGRA~2\Altnet\DOWNLO~1\adm4005.exe

C:\WINDOWS\SYSTEM\blank.htm

C:\WINDOWS\Nail.exe

==============================

So dann neues HJT-log posten bitte.
Holy Marcell
 

Adware Beterrinternet

Beitragvon MiKie am 01.08.2005, 18:53

Hey Computer-Freaks !!!
Vorab: Habe mein bestes gegeben!!!!
Konnte Searchupgrader in der Software nicht finden,ansonsten alles paletti.
Hier meine HJT-log:
Logfile of HijackThis v1.99.1
Scan saved at 18:42:01, on 01.08.2005
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programme\Gemeinsame Dateien\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\Explorer.exe
C:\PROGRA~1\NORTON~1\NORTON~2\GHOSTS~2.EXE
C:\Programme\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
C:\Programme\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe
C:\WINDOWS\System32\svchost.exe
c:\windows\system32\dthlxa.exe
C:\Programme\Teledat 320\Awatch.exe
C:\Programme\Gemeinsame Dateien\Symantec Shared\ccApp.exe
C:\Programme\Norton SystemWorks\Norton Ghost\GhostStartTrayApp.exe
C:\Programme\Gemeinsame Dateien\Symantec Shared\Security Center\UsrPrmpt.exe
C:\Programme\HP\HP Software Update\HPWuSchd.exe
C:\Programme\HP\hpcoretech\hpcmpmgr.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Programme\HP\Digital Imaging\bin\hpqtra08.exe
C:\WINDOWS\System32\wuauclt.exe
C:\PROGRA~1\MESSEN~1\msmsgs.exe
C:\WINDOWS\System32\HPZipm12.exe
C:\WINDOWS\System32\wuauclt.exe
C:\Dokumente und Einstellungen\Standard\Lokale Einstellungen\Temp\Temporäres Verzeichnis 5 für hijackthis.zip\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.de/0SEDEDE/SAOS01
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.t-online.de/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.t-online.de
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page_bak = http://www.t-online.de/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer von T-Online
F2 - REG:system.ini: Shell=Explorer.exe C:\WINDOWS\Nail.exe
O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Programme\Norton SystemWorks\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Programme\Norton SystemWorks\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [AWatch] "C:\Programme\Teledat 320\Awatch.exe"
O4 - HKLM\..\Run: [ccApp] "C:\Programme\Gemeinsame Dateien\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [ccRegVfy] "C:\Programme\Gemeinsame Dateien\Symantec Shared\ccRegVfy.exe"
O4 - HKLM\..\Run: [GhostStartTrayApp] C:\Programme\Norton SystemWorks\Norton Ghost\GhostStartTrayApp.exe
O4 - HKLM\..\Run: [SSC_UserPrompt] C:\Programme\Gemeinsame Dateien\Symantec Shared\Security Center\UsrPrmpt.exe
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [HP Software Update] "C:\Programme\HP\HP Software Update\HPWuSchd.exe"
O4 - HKLM\..\Run: [HP Component Manager] "C:\Programme\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [losjiu] c:\windows\system32\dthlxa.exe r
O4 - HKLM\..\RunServices: [GhostStartService] C:\PROGRA~1\NORTON~1\NORTON~2\GHOSTS~2.EXE
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Programme\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: Add selected links to Link Container - C:\PROGRA~1\FIREWA~1\WEBFIL~1\System\Scripts\off_collector_sel.htm
O8 - Extra context menu item: Nach Microsoft &Excel exportieren - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Show domain links - C:\PROGRA~1\FIREWA~1\WEBFIL~1\System\Scripts\off_domain_links.htm
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\MESSEN~1\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\MESSEN~1\MSMSGS.EXE
O12 - Plugin for .mid: C:\Programme\Internet Explorer\PLUGINS\npqtplugin.dll
O12 - Plugin for .wav: C:\Programme\Internet Explorer\PLUGINS\npqtplugin.dll
O14 - IERESET.INF: START_PAGE_URL=http://www.t-online.de
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/Shar ... vSniff.cab
O16 - DPF: {54823A9D-6BAE-11D5-B519-0050BA2413EB} (ChkDVDCtl Class) - http://www.gocyberlink.com/winxp/CheckDVD.cab
O16 - DPF: {B1953AD6-C50E-11D3-B020-00A0C9251384} (O2C-Player (ELECO Software GmbH)) - http://www.o2c.de/download/O2CPlayer.CAB
O17 - HKLM\System\CCS\Services\Tcpip\..\{7A6E01DE-873A-4B8F-A1A5-B96D0FD641D7}: NameServer = 192.168.123.252,192.168.123.253
O17 - HKLM\System\CCS\Services\Tcpip\..\{C6B56B90-8394-4FB5-9B69-E2BA1C9FB6F6}: NameServer = 217.237.151.33 217.237.149.225
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Programme\Gemeinsame Dateien\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation Service (ccPwdSvc) - Symantec Corporation - C:\Programme\Gemeinsame Dateien\Symantec Shared\ccPwdSvc.exe
O23 - Service: GhostStartService - Symantec Corporation - C:\PROGRA~1\NORTON~1\NORTON~2\GHOSTS~2.EXE
O23 - Service: Norton AntiVirus Auto-Protect-Dienst (navapsvc) - Symantec Corporation - C:\Programme\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\Programme\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\GEMEIN~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Programme\Gemeinsame Dateien\Symantec Shared\SNDSrvc.exe
O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe
O23 - Service: System Startup Service (SvcProc) - Unknown owner - C:\WINDOWS\svcproc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Programme\Gemeinsame Dateien\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: TSMService - T-Systems Nova, Berkom - C:\Programme\T-DSL SpeedManager\tsmsvc.exe

Hoffe, dass ein Teilerfolg erreicht werden konnte. Gruß MIKie
MiKie
 
Beiträge: 6
Registriert: 01.08.2005, 13:21
Wohnort: Berlin

Beitragvon Holy Marcell am 01.08.2005, 19:05

Hallo auf yeden fall können wir einen erfolg verzeichen^^; ich denke du hast verbesserungen/schnellerungen an deinem PC gemerkt:
========================================

Bitte lösche noch folgende Dateien sofern du sie nicht kennst:

c:\windows\system32\dthlxa.exe

c:\windows\nail.exe

========================================
Der Serchupgrader ist auch im HJT nicht mehr zu finden; Wunderbar
==============================

Mache bitte einen Escan und poste das Logfile hier:
http://nikita.eddys-domain.de/escan.html

==============================
Holy Marcell
 

Adware Betterinternet

Beitragvon MiKie am 02.08.2005, 21:52

Hallo ! Habe den Escan durchgeführt.
Das Ergebnis:
Di Aug 02 19:52:11 2005 => ******************************************************************
Di Aug 02 19:52:11 2005 => eScan for Windows.
Di Aug 02 19:52:11 2005 => Copyright © 2004-2005, MicroWorld Technologies Inc.
Di Aug 02 19:52:11 2005 => Support: support@mwti.net
Di Aug 02 19:52:11 2005 => Web: http://www.mwti.net
Di Aug 02 19:52:11 2005 => ******************************************************************
Di Aug 02 19:52:11 2005 => Version 1.26
Di Aug 02 19:52:11 2005 => LogFile: C:\PROGRA~1\eScan\Log\02080000.log
Di Aug 02 19:52:11 2005 =>
Di Aug 02 19:52:11 2005 => Heuristics: On
Di Aug 02 19:52:11 2005 => Packed files: On
Di Aug 02 19:52:11 2005 => System areas: On
Di Aug 02 19:52:11 2005 => Archived files: On
Di Aug 02 19:52:11 2005 => Calculate Analysis: On
Di Aug 02 19:52:11 2005 => Action specified in case of an infection: Automatic
Di Aug 02 19:52:11 2005 =>
Di Aug 02 19:54:04 2005 => ***** Checking system areas *****
Di Aug 02 19:55:45 2005 =>
Di Aug 02 19:55:45 2005 => ***** Checking selected directories and files *****
Di Aug 02 19:55:45 2005 => Scanning File C:\MSDOS.SYS
Di Aug 02 19:55:45 2005 => Scanning File C:\CONFIG.SYS
Di Aug 02 19:55:45 2005 => Scanning File C:\LOGO.SYS
Di Aug 02 19:55:45 2005 => Scanning File C:\io.sys
Di Aug 02 19:55:45 2005 => Scanning File C:\swconf.dat
Di Aug 02 19:55:45 2005 => Scanning File C:\TDSLCheck.txt
Di Aug 02 19:55:45 2005 => Scanning File C:\IWATCH.TXT
Di Aug 02 19:55:46 2005 => Scanning File C:\eScan 2003 Anti-Virus.zip
Di Aug 02 19:55:46 2005 => Scanning File C:\AUTOEXEC.BAT
Di Aug 02 19:55:46 2005 => C:\hiberfil.sys ***** File having Size Restriction *****
Di Aug 02 19:55:46 2005 => Scanning File C:\BOOTSECT.DOS
Di Aug 02 19:55:46 2005 => Scanning File C:\gdiplus.dll
Di Aug 02 19:55:46 2005 => Scanning File C:\ntldr
Di Aug 02 19:55:46 2005 => Scanning File C:\bootfont.bin
Di Aug 02 19:55:46 2005 => Scanning File C:\dirref.ini
Di Aug 02 19:55:46 2005 => Scanning File C:\ntdetect.com
Di Aug 02 19:55:46 2005 => Scanning File C:\boot.ini
Di Aug 02 19:55:46 2005 => Scanning File C:\23990098.$$$
Di Aug 02 19:55:46 2005 => Scanning File C:\TO_InstallLog.txt
Di Aug 02 19:55:46 2005 => Scanning File C:\log.txt
Di Aug 02 19:55:46 2005 => Scanning File C:\BITWARE\BFCP.DLL
Di Aug 02 19:55:46 2005 => Scanning File C:\BITWARE\UNINST.EXE
Di Aug 02 19:55:47 2005 => Scanning File C:\BITWARE\BITPHONE.INI
Di Aug 02 19:55:47 2005 => Scanning File C:\BITWARE\UNINST.INF
Di Aug 02 19:55:47 2005 => Scanning File C:\BITWARE\MORE20.WAV
Di Aug 02 19:55:47 2005 => Scanning File C:\FOUND.000\FILE0000.CHK
Di Aug 02 19:55:47 2005 => Scanning File C:\FOUND.000\FILE0001.CHK
Di Aug 02 19:55:47 2005 => Scanning File C:\FOUND.001\FILE0000.CHK
Di Aug 02 19:55:47 2005 => Scanning File C:\FOUND.001\FILE0001.CHK
Di Aug 02 19:55:47 2005 => Scanning File C:\FOUND.001\FILE0002.CHK
Di Aug 02 19:55:47 2005 => Scanning File C:\WINDOWS\ADDLFNPR.REG
Di Aug 02 19:55:47 2005 => Scanning File C:\WINDOWS\DOSSTART.BAT
Di Aug 02 19:55:47 2005 => Scanning File C:\WINDOWS\MSDOS.SYS
Di Aug 02 19:55:47 2005 => Scanning File C:\WINDOWS\KWD205i.ini
Di Aug 02 19:55:47 2005 => Scanning File C:\WINDOWS\AVMSND16.INI
Di Aug 02 19:55:47 2005 => Scanning File C:\WINDOWS\REGULOCS.OLD
Di Aug 02 19:55:47 2005 => Scanning File C:\WINDOWS\tonlinst.ini
Di Aug 02 19:55:47 2005 => Scanning File C:\WINDOWS\opuc.dll
Di Aug 02 19:55:47 2005 => Scanning File C:\WINDOWS\TOSO30.ISU
Di Aug 02 19:55:47 2005 => Scanning File C:\WINDOWS\TOEM.ISU
Di Aug 02 19:55:48 2005 => Scanning File C:\WINDOWS\smdat32m.sys
Di Aug 02 19:55:48 2005 => Scanning File C:\WINDOWS\TOOB200.ISU
Di Aug 02 19:55:48 2005 => Scanning File C:\WINDOWS\TOSO40.ISU
Di Aug 02 19:55:48 2005 => Scanning File C:\WINDOWS\SUPPORT.TXT
Di Aug 02 19:55:48 2005 => C:\WINDOWS\RUNHELP.CAB ***** File having Scanning Restriction *****
Di Aug 02 19:55:48 2005 => Scanning File C:\WINDOWS\JAUTOEXP.DAT
Di Aug 02 19:55:48 2005 => Scanning File C:\WINDOWS\hpomdl03.dat
Di Aug 02 19:55:48 2005 => Scanning File C:\WINDOWS\CLSPACK.EXE
Di Aug 02 19:55:48 2005 => Scanning File C:\WINDOWS\command.LNK
Di Aug 02 19:55:48 2005 => Scanning File C:\WINDOWS\LnkStub.dat
Di Aug 02 19:55:48 2005 => Scanning File C:\WINDOWS\bootstat.dat
Di Aug 02 19:55:48 2005 => Scanning File C:\WINDOWS\REGLOCS.OLD
Di Aug 02 19:55:48 2005 => Scanning File C:\WINDOWS\REGCARDS.OLD
Di Aug 02 19:55:48 2005 => Scanning File C:\WINDOWS\JVIEW.EXE
Di Aug 02 19:55:48 2005 => Scanning File C:\WINDOWS\avmadd32.log
Di Aug 02 19:55:48 2005 => Scanning File C:\WINDOWS\0.log
Di Aug 02 19:55:48 2005 => Scanning File C:\WINDOWS\SETDEBUG.EXE
Di Aug 02 19:55:48 2005 => Scanning File C:\WINDOWS\winsbak.reg
Di Aug 02 19:55:49 2005 => Scanning File C:\WINDOWS\winsbak2.reg
Di Aug 02 19:55:49 2005 => Scanning File C:\WINDOWS\avmw2k.log
Di Aug 02 19:55:49 2005 => Scanning File C:\WINDOWS\netflix.ico
Di Aug 02 19:55:49 2005 => Scanning File C:\WINDOWS\WJVIEW.EXE
Di Aug 02 19:55:49 2005 => Scanning File C:\WINDOWS\readme.ico
Di Aug 02 19:55:49 2005 => Scanning File C:\WINDOWS\BACKGRND.GIF
Di Aug 02 19:55:49 2005 => Scanning File C:\WINDOWS\CLOUD.GIF
Di Aug 02 19:55:49 2005 => Scanning File C:\WINDOWS\HLPBELL.GIF
Di Aug 02 19:55:49 2005 => Scanning File C:\WINDOWS\HLPCD.GIF
Di Aug 02 19:55:49 2005 => Scanning File C:\WINDOWS\HLPGLOBE.GIF
Di Aug 02 19:55:49 2005 => Scanning File C:\WINDOWS\HLPLOGO.GIF
Di Aug 02 19:55:49 2005 => Scanning File C:\WINDOWS\HLPSTEP1.GIF
Di Aug 02 19:55:49 2005 => Scanning File C:\WINDOWS\HLPSTEP2.GIF
Di Aug 02 19:55:49 2005 => Scanning File C:\WINDOWS\HLPSTEP3.GIF
Di Aug 02 19:55:49 2005 => Scanning File C:\WINDOWS\WINLOGO.GIF
Di Aug 02 19:55:49 2005 => Scanning File C:\WINDOWS\HTMLHELP.HTM
Di Aug 02 19:55:49 2005 => Scanning File C:\WINDOWS\README.HTM
Di Aug 02 19:55:49 2005 => Scanning File C:\WINDOWS\DC50.INI
Di Aug 02 19:55:49 2005 => Scanning File C:\WINDOWS\HPSETUP.INI
Di Aug 02 19:55:49 2005 => Scanning File C:\WINDOWS\abiuninst.htm
Di Aug 02 19:55:49 2005 => Scanning File C:\WINDOWS\avmenum32.log
Di Aug 02 19:55:49 2005 => Scanning File C:\WINDOWS\SIREGIST.LOG
Di Aug 02 19:55:49 2005 => Scanning File C:\WINDOWS\AVM_cpdi.clr
Di Aug 02 19:55:50 2005 => Scanning File C:\WINDOWS\Tonlinst.old
Di Aug 02 19:55:50 2005 => Scanning File C:\WINDOWS\twaintec.ini
Di Aug 02 19:55:50 2005 => Scanning File C:\WINDOWS\earnmoney.ico
Di Aug 02 19:55:50 2005 => Scanning File C:\WINDOWS\Active Setup Log.txt
Di Aug 02 19:55:50 2005 => Scanning File C:\WINDOWS\shop.ico
Di Aug 02 19:55:50 2005 => Scanning File C:\WINDOWS\SYMINST.LOG
Di Aug 02 19:55:50 2005 => Scanning File C:\WINDOWS\DirectTVIcon.ico
Di Aug 02 19:55:50 2005 => Scanning File C:\WINDOWS\1STBOOT.BMP
Di Aug 02 19:55:50 2005 => Scanning File C:\WINDOWS\Kreise.bmp
Di Aug 02 19:55:50 2005 => Scanning File C:\WINDOWS\Wellen.bmp
Di Aug 02 19:55:50 2005 => Scanning File C:\WINDOWS\Streifen.bmp
Di Aug 02 19:55:50 2005 => Scanning File C:\WINDOWS\Kacheln.bmp
Di Aug 02 19:55:50 2005 => Scanning File C:\WINDOWS\Setup.bmp
Di Aug 02 19:55:50 2005 => Scanning File C:\WINDOWS\Wolken.bmp
Di Aug 02 19:55:50 2005 => Scanning File C:\WINDOWS\tiscali_it_2.ico
Di Aug 02 19:55:50 2005 => Scanning File C:\WINDOWS\Readme.txt
Di Aug 02 19:55:50 2005 => Scanning File C:\WINDOWS\xpsp1hfm.log
Di Aug 02 19:55:50 2005 => Scanning File C:\WINDOWS\UNWISE.EXE
Di Aug 02 19:55:51 2005 => Scanning File C:\WINDOWS\Norton Utilities.log
Di Aug 02 19:55:51 2005 => Scanning File C:\WINDOWS\SYMEVENT.LOG
Di Aug 02 19:55:51 2005 => Scanning File C:\WINDOWS\KB823980.log
Di Aug 02 19:55:51 2005 => Scanning File C:\WINDOWS\d3dx.dat
Di Aug 02 19:55:51 2005 => Scanning File C:\WINDOWS\IsUninst.exe
Di Aug 02 19:55:51 2005 => Scanning File C:\WINDOWS\CDPLAYER.EXE
Di Aug 02 19:55:51 2005 => Scanning File C:\WINDOWS\{1662C714-7163-4224-8D2A-3EC0B8A9A33C}.dat
Di Aug 02 19:55:51 2005 => Scanning File C:\WINDOWS\{FF58C97E-8EC8-419F-8FF3-6A98A9533E0A}.dat
Di Aug 02 19:55:52 2005 => Scanning File C:\WINDOWS\{159B7ABC-963A-46A4-BF7C-1296778C4749}.dat
Di Aug 02 19:55:52 2005 => Scanning File C:\WINDOWS\{D2138827-134F-4AE4-9A4F-9249E6BB534E}.dat
Di Aug 02 19:55:52 2005 => Scanning File C:\WINDOWS\imsins.BAK
Di Aug 02 19:55:52 2005 => Scanning File C:\WINDOWS\{37C9C92D-7382-4401-86A2-2358ED98A479}.dat
Di Aug 02 19:55:52 2005 => Scanning File C:\WINDOWS\{D12E5B2E-5856-407E-A01B-425CC28A231E}.dat
Di Aug 02 19:55:52 2005 => Scanning File C:\WINDOWS\KB828035.log
Di Aug 02 19:55:52 2005 => Scanning File C:\WINDOWS\imsins.log
Di Aug 02 19:55:52 2005 => Scanning File C:\WINDOWS\Directx.log
Di Aug 02 19:55:52 2005 => Scanning File C:\WINDOWS\WINUPD.ICO
Di Aug 02 19:55:52 2005 => Scanning File C:\WINDOWS\PI.EXE
Di Aug 02 19:55:52 2005 => Scanning File C:\WINDOWS\max4.ini
Di Aug 02 19:55:52 2005 => Scanning File C:\WINDOWS\unin0407.exe
Di Aug 02 19:55:52 2005 => Scanning File C:\WINDOWS\Unnero.exe
Di Aug 02 19:55:53 2005 => Scanning File C:\WINDOWS\Unnero.cfg
Di Aug 02 19:55:53 2005 => Scanning File C:\WINDOWS\MSBATCH.INF
Di Aug 02 19:55:53 2005 => Scanning File C:\WINDOWS\CEKHIHI.ini
Di Aug 02 19:55:53 2005 => Scanning File C:\WINDOWS\Wald.bmp
Di Aug 02 19:55:53 2005 => Scanning File C:\WINDOWS\Metall.bmp
Di Aug 02 19:55:53 2005 => Scanning File C:\WINDOWS\Maschen.bmp
Di Aug 02 19:55:53 2005 => Scanning File C:\WINDOWS\CoverDes.INI
Di Aug 02 19:55:53 2005 => Scanning File C:\WINDOWS\farmmext.ini
Di Aug 02 19:55:53 2005 => Scanning File C:\WINDOWS\bbcauto.INI
Di Aug 02 19:55:53 2005 => Scanning File C:\WINDOWS\AVM_itdi.clr
Di Aug 02 19:55:53 2005 => Scanning File C:\WINDOWS\AWMODEM.INF
Di Aug 02 19:55:53 2005 => Scanning File C:\WINDOWS\smdat32a.sys
Di Aug 02 19:55:53 2005 => Scanning File C:\WINDOWS\preInsln.exe
Di Aug 02 19:55:53 2005 => Result: File C:\WINDOWS\preInsln.exe with not-a-virus:AdWare.BiSpy.o No Action Taken!
Di Aug 02 19:55:53 2005 => Scanning File C:\WINDOWS\msoffice.ini
Di Aug 02 19:55:53 2005 => Scanning File C:\WINDOWS\wininit.ini
Di Aug 02 19:55:53 2005 => Scanning File C:\WINDOWS\F-Agobot.log
Di Aug 02 19:55:54 2005 => Scanning File C:\WINDOWS\ntbtlog.txt
Di Aug 02 19:55:54 2005 => Scanning File C:\WINDOWS\CMRGUNST.INI
Di Aug 02 19:55:54 2005 => Scanning File C:\WINDOWS\KB828741.log
Di Aug 02 19:55:54 2005 => Scanning File C:\WINDOWS\CMRGDB01.INI
Di Aug 02 19:55:54 2005 => Scanning File C:\WINDOWS\impborl.dll
Di Aug 02 19:55:54 2005 => Scanning File C:\WINDOWS\SETVER.EXE
Di Aug 02 19:55:54 2005 => Scanning File C:\WINDOWS\SYSTEM.INI
Di Aug 02 19:55:54 2005 => Scanning File C:\WINDOWS\HWINFO.DAT
Di Aug 02 19:55:54 2005 => Scanning File C:\WINDOWS\flashax.exe
Di Aug 02 19:55:54 2005 => Scanning File C:\WINDOWS\eReg.dat
Di Aug 02 19:55:55 2005 => Scanning File C:\WINDOWS\SYSTEM.CB
Di Aug 02 19:55:55 2005 => Scanning File C:\WINDOWS\MKDEMSG.LOG
Di Aug 02 19:55:55 2005 => Scanning File C:\WINDOWS\MKDEWE.TRN
Di Aug 02 19:55:55 2005 => Scanning File C:\WINDOWS\NDISLOG.TXT
Di Aug 02 19:55:55 2005 => Scanning File C:\WINDOWS\hpoins03.dat
Di Aug 02 19:55:55 2005 => Scanning File C:\WINDOWS\HPDSKJET.P00
Di Aug 02 19:55:55 2005 => Scanning File C:\WINDOWS\setupapi.log
Di Aug 02 19:55:55 2005 => Scanning File C:\WINDOWS\Q329048.log
Di Aug 02 19:55:55 2005 => Scanning File C:\WINDOWS\SchedLog.Txt
Di Aug 02 19:55:55 2005 => Scanning File C:\WINDOWS\ModemCpl.txt
Di Aug 02 19:55:55 2005 => Scanning File C:\WINDOWS\HAMPANEL.EXE
Di Aug 02 19:55:55 2005 => Scanning File C:\WINDOWS\HAMRMCPL
Di Aug 02 19:55:55 2005 => Scanning File C:\WINDOWS\HAMRMDEV.EXE
Di Aug 02 19:55:55 2005 => Scanning File C:\WINDOWS\LightDriver.LOG
Di Aug 02 19:55:55 2005 => Scanning File C:\WINDOWS\Strohmatte.bmp
Di Aug 02 19:55:55 2005 => Scanning File C:\WINDOWS\Kugeln.bmp
Di Aug 02 19:55:55 2005 => Scanning File C:\WINDOWS\Ägypten.bmp
Di Aug 02 19:55:55 2005 => Scanning File C:\WINDOWS\Hahnentritt.bmp
Di Aug 02 19:55:55 2005 => Scanning File C:\WINDOWS\Dreiecke.bmp
Di Aug 02 19:55:55 2005 => Scanning File C:\WINDOWS\Blaue Noppen.bmp
Di Aug 02 19:55:56 2005 => Scanning File C:\WINDOWS\Schwarzes Geflecht.bmp
Di Aug 02 19:55:56 2005 => Scanning File C:\WINDOWS\Rote Steine.bmp
Di Aug 02 19:55:56 2005 => Scanning File C:\WINDOWS\Goldgeflecht.bmp
Di Aug 02 19:55:56 2005 => Scanning File C:\WINDOWS\Sandstein.bmp
Di Aug 02 19:55:56 2005 => Scanning File C:\WINDOWS\Channelbildschirmschoner.SCR
Di Aug 02 19:55:56 2005 => Scanning File C:\WINDOWS\WindowsUpdate.log
Di Aug 02 19:55:56 2005 => Scanning File C:\WINDOWS\Sti_Trace.log
Di Aug 02 19:55:56 2005 => Scanning File C:\WINDOWS\Sti_Event.log
Di Aug 02 19:55:56 2005 => Scanning File C:\WINDOWS\wiaservc.log
Di Aug 02 19:55:56 2005 => Scanning File C:\WINDOWS\brndlog.txt
Di Aug 02 19:55:56 2005 => Scanning File C:\WINDOWS\WMSysPr9.prx
Di Aug 02 19:55:56 2005 => Scanning File C:\WINDOWS\wmsetup10.log
Di Aug 02 19:55:56 2005 => Scanning File C:\WINDOWS\GatorPatch.log
Di Aug 02 19:55:56 2005 => Scanning File C:\WINDOWS\folder.htt
Di Aug 02 19:55:56 2005 => Scanning File C:\WINDOWS\OEWABLog.txt
Di Aug 02 19:55:56 2005 => Scanning File C:\WINDOWS\WMSysPrx.prx
Di Aug 02 19:55:56 2005 => Scanning File C:\WINDOWS\{CCD6374F-2016-41B9-9805-EA257E239A10}.dat
Di Aug 02 19:55:56 2005 => Scanning File C:\WINDOWS\willy.ini
Di Aug 02 19:55:56 2005 => Scanning File C:\WINDOWS\brndlog.bak
Di Aug 02 19:55:56 2005 => Scanning File C:\WINDOWS\ssdpcache.txt
Di Aug 02 19:55:56 2005 => Scanning File C:\WINDOWS\16x16.ico
Di Aug 02 19:55:57 2005 => Scanning File C:\WINDOWS\vorlagen[vgg-10004,1].exe
Di Aug 02 19:55:57 2005 => Scanning File C:\WINDOWS\GatorPdpSetup.log
Di Aug 02 19:55:57 2005 => Scanning File C:\WINDOWS\AUTOLNCH.REG
Di Aug 02 19:55:57 2005 => Scanning File C:\WINDOWS\LUINSTALL.LOG
Di Aug 02 19:55:57 2005 => Scanning File C:\WINDOWS\32x32.ico
Di Aug 02 19:55:57 2005 => Scanning File C:\WINDOWS\favicon[1].ico
Di Aug 02 19:55:57 2005 => Scanning File C:\WINDOWS\IsUn0407.exe
Di Aug 02 19:55:58 2005 => Scanning File C:\WINDOWS\routenplaner[rai-10103,1].exe
Di Aug 02 19:55:58 2005 => Scanning File C:\WINDOWS\Bolger.dll_tobedeleted
Di Aug 02 19:55:59 2005 => Result: File C:\WINDOWS\Bolger.dll_tobedeleted with not-a-virus:AdWare.BetterInternet No Action Taken!
Di Aug 02 19:55:59 2005 => Scanning File C:\WINDOWS\REGEDIT.COM
Di Aug 02 19:55:59 2005 => Scanning File C:\WINDOWS\ESCAN.LOG
Di Aug 02 19:55:59 2005 => Scanning File C:\WINDOWS\vjnkne.exe
Di Aug 02 19:55:59 2005 => Result: File C:\WINDOWS\vjnkne.exe with not-a-virus:AdWare.BetterInternet.l No Action Taken!
Di Aug 02 19:55:59 2005 => Scanning File C:\WINDOWS\wininitlog.old
Di Aug 02 19:55:59 2005 => Scanning File C:\WINDOWS\ttfCache
Di Aug 02 19:55:59 2005 => Scanning File C:\WINDOWS\wplog.txt
Di Aug 02 19:55:59 2005 => Scanning File C:\WINDOWS\unvise32qt.exe
Di Aug 02 19:55:59 2005 => Scanning File C:\WINDOWS\bbcbkqinc.exe
Di Aug 02 19:55:59 2005 => Result: File C:\WINDOWS\bbcbkqinc.exe with not-a-virus:AdWare.BetterInternet.j No Action Taken!
Di Aug 02 19:55:59 2005 => Scanning File C:\WINDOWS\KB842773.log
Di Aug 02 19:55:59 2005 => Scanning File C:\WINDOWS\Aolunins.exe
Di Aug 02 19:56:00 2005 => Scanning File C:\WINDOWS\Q323255.log
Di Aug 02 19:56:00 2005 => Scanning File C:\WINDOWS\hh.exe
Di Aug 02 19:56:00 2005 => Scanning File C:\WINDOWS\mHotkey.reg
Di Aug 02 19:56:00 2005 => Scanning File C:\WINDOWS\UninstIt.exe
Di Aug 02 19:56:00 2005 => Scanning File C:\WINDOWS\mHotkey.exe
Di Aug 02 19:56:00 2005 => Scanning File C:\WINDOWS\Faultlog.txt
Di Aug 02 19:56:00 2005 => Scanning File C:\WINDOWS\Creatix HaM Data Fax Voice.log
Di Aug 02 19:56:00 2005 => Scanning File C:\WINDOWS\mrun32.isu
Di Aug 02 19:56:00 2005 => Scanning File C:\WINDOWS\Q329390.log
Di Aug 02 19:56:00 2005 => Scanning File C:\WINDOWS\Q329115.log
Di Aug 02 19:56:01 2005 => Scanning File C:\WINDOWS\winstart.bat
Di Aug 02 19:56:01 2005 => Scanning File C:\WINDOWS\tmpcpyis.bat
Di Aug 02 19:56:01 2005 => Scanning File C:\WINDOWS\tmpdelis.bat
Di Aug 02 19:56:01 2005 => Scanning File C:\WINDOWS\xobglu16.dll
Di Aug 02 19:56:01 2005 => Scanning File C:\WINDOWS\MAILINST.LOG
Di Aug 02 19:56:01 2005 => Scanning File C:\WINDOWS\INST_TSP.LOG
Di Aug 02 19:56:01 2005 => Scanning File C:\WINDOWS\frights.log
Di Aug 02 19:56:01 2005 => Scanning File C:\WINDOWS\escan.dbf
Di Aug 02 19:56:01 2005 => Scanning File C:\WINDOWS\mailremv.log
Di Aug 02 19:56:01 2005 => Scanning File C:\WINDOWS\inst_tsp.exe
Di Aug 02 19:56:01 2005 => Scanning File C:\WINDOWS\WSSPORD.DAT
Di Aug 02 19:56:01 2005 => Scanning File C:\WINDOWS\wmsetup.log
Di Aug 02 19:56:01 2005 => Scanning File C:\WINDOWS\reg.prm
Di Aug 02 19:56:01 2005 => Scanning File C:\WINDOWS\QTFont.qfn
Di Aug 02 19:56:02 2005 => Scanning File C:\WINDOWS\QTFont.for
Di Aug 02 19:56:02 2005 => Scanning File C:\WINDOWS\COM+.log
Di Aug 02 19:56:02 2005 => Scanning File C:\WINDOWS\xobglu32.dll
Di Aug 02 19:56:02 2005 => Scanning File C:\WINDOWS\MemoDvx.INI
Di Aug 02 19:56:02 2005 => Scanning File C:\WINDOWS\Q329170.log
Di Aug 02 19:56:02 2005 => Scanning File C:\WINDOWS\WINNT32.LOG
Di Aug 02 19:56:02 2005 => Scanning File C:\WINDOWS\WSUTIL.EXE
Di Aug 02 19:56:02 2005 => Scanning File C:\WINDOWS\AVMNDI.LOG
Di Aug 02 19:56:02 2005 => Scanning File C:\WINDOWS\avm.log
Di Aug 02 19:56:02 2005 => Scanning File C:\WINDOWS\Q817606.log
Di Aug 02 19:56:02 2005 => Scanning File C:\WINDOWS\Q329441.log
Di Aug 02 19:56:02 2005 => Scanning File C:\WINDOWS\Q811630.log
Di Aug 02 19:56:02 2005 => Scanning File C:\WINDOWS\Q810577.log
Di Aug 02 19:56:02 2005 => Scanning File C:\WINDOWS\KB823559.log
Di Aug 02 19:56:02 2005 => Scanning File C:\WINDOWS\Q329834.log
Di Aug 02 19:56:02 2005 => Scanning File C:\WINDOWS\uninst.exe
Di Aug 02 19:56:03 2005 => Scanning File C:\WINDOWS\KB835732.log
Di Aug 02 19:56:03 2005 => Scanning File C:\WINDOWS\WININIT.BAK
Di Aug 02 19:56:03 2005 => Scanning File C:\WINDOWS\wsdu.log
Di Aug 02 19:56:03 2005 => Scanning File C:\WINDOWS\setupact.log
Di Aug 02 19:56:03 2005 => Scanning File C:\WINDOWS\setuperr.log
Di Aug 02 19:56:03 2005 => Scanning File C:\WINDOWS\svcpack.log
Di Aug 02 19:56:03 2005 => Scanning File C:\WINDOWS\Q810833.log
Di Aug 02 19:56:03 2005 => Scanning File C:\WINDOWS\FaxSetup.log
Di Aug 02 19:56:03 2005 => Scanning File C:\WINDOWS\mqw9xmig.log
Di Aug 02 19:56:03 2005 => Scanning File C:\WINDOWS\commigrate.log
Di Aug 02 19:56:03 2005 => Scanning File C:\WINDOWS\sporder.exe
Di Aug 02 19:56:04 2005 => Scanning File C:\WINDOWS\upgrade.htm
Di Aug 02 19:56:04 2005 => Scanning File C:\WINDOWS\upgrade.txt
Di Aug 02 19:56:04 2005 => Scanning File C:\WINDOWS\PCPHOTO.INI
Di Aug 02 19:56:04 2005 => Scanning File C:\WINDOWS\sporder.dll
Di Aug 02 19:56:04 2005 => Scanning File C:\WINDOWS\start.exe
Di Aug 02 19:56:04 2005 => Scanning File C:\WINDOWS\killproc.exe
Di Aug 02 19:56:04 2005 => Scanning File C:\WINDOWS\win.ini
Di Aug 02 19:56:04 2005 => Scanning File C:\WINDOWS\explorer.exe
Di Aug 02 19:56:04 2005 => Scanning File C:\WINDOWS\regedit.exe
Di Aug 02 19:56:05 2005 => Scanning File C:\WINDOWS\_default.pif
Di Aug 02 19:56:05 2005 => Scanning File C:\WINDOWS\explorer.scf
Di Aug 02 19:56:05 2005 => Scanning File C:\WINDOWS\msdfmap.ini
Di Aug 02 19:56:05 2005 => Scanning File C:\WINDOWS\TWAIN.DLL
Di Aug 02 19:56:05 2005 => Scanning File C:\WINDOWS\TWAIN_32.DLL
Di Aug 02 19:56:05 2005 => Scanning File C:\WINDOWS\TWUNK_16.EXE
Di Aug 02 19:56:05 2005 => Scanning File C:\WINDOWS\TWUNK_32.EXE
Di Aug 02 19:56:05 2005 => Scanning File C:\WINDOWS\winhelp.exe
Di Aug 02 19:56:05 2005 => Scanning File C:\WINDOWS\winhlp32.exe
Di Aug 02 19:56:05 2005 => Scanning File C:\WINDOWS\wmprfDEU.prx
Di Aug 02 19:56:05 2005 => Scanning File C:\WINDOWS\clock.avi
Di Aug 02 19:56:05 2005 => Scanning File C:\WINDOWS\vmmreg32.dll
Di Aug 02 19:56:05 2005 => Scanning File C:\WINDOWS\setuplog.txt
Di Aug 02 19:56:05 2005 => Scanning File C:\WINDOWS\SET3.tmp
Di Aug 02 19:56:05 2005 => C:\WINDOWS\setupapi.log.0.old ***** File having Size Restriction *****
Di Aug 02 19:56:05 2005 => Scanning File C:\WINDOWS\KB834707-IE6-20040929.115007.log
Di Aug 02 19:56:05 2005 => Scanning File C:\WINDOWS\SET7.tmp
Di Aug 02 19:56:05 2005 => Scanning File C:\WINDOWS\NOTEPAD.EXE
Di Aug 02 19:56:05 2005 => Scanning File C:\WINDOWS\TASKMAN.EXE
Di Aug 02 19:56:05 2005 => Scanning File C:\WINDOWS\regopt.log
Di Aug 02 19:56:06 2005 => Scanning File C:\WINDOWS\ODBCINST.INI
Di Aug 02 19:56:06 2005 => Scanning File C:\WINDOWS\ocgen.log
Di Aug 02 19:56:06 2005 => Scanning File C:\WINDOWS\iis6.log
Di Aug 02 19:56:06 2005 => Scanning File C:\WINDOWS\comsetup.log
Di Aug 02 19:56:06 2005 => Scanning File C:\WINDOWS\ntdtcsetup.log
Di Aug 02 19:56:06 2005 => Scanning File C:\WINDOWS\tsoc.log
Di Aug 02 19:56:06 2005 => Scanning File C:\WINDOWS\msmqinst.log
Di Aug 02 19:56:06 2005 => Scanning File C:\WINDOWS\msgsocm.log
Di Aug 02 19:56:06 2005 => Scanning File C:\WINDOWS\ocmsn.log
Di Aug 02 19:56:06 2005 => Scanning File C:\WINDOWS\avmcoins.log
Di Aug 02 19:56:06 2005 => Scanning File C:\WINDOWS\wiadebug.log
Di Aug 02 19:56:06 2005 => Scanning File C:\WINDOWS\Blaue Spitzen 16.bmp
Di Aug 02 19:56:06 2005 => Scanning File C:\WINDOWS\Seifenblase.bmp
Di Aug 02 19:56:06 2005 => Scanning File C:\WINDOWS\Kaffeetasse.bmp
Di Aug 02 19:56:06 2005 => Scanning File C:\WINDOWS\Feder.bmp
Di Aug 02 19:56:06 2005 => Scanning File C:\WINDOWS\Angler.bmp
Di Aug 02 19:56:06 2005 => Scanning File C:\WINDOWS\Granit.bmp
Di Aug 02 19:56:06 2005 => Scanning File C:\WINDOWS\Präriewind.bmp
Di Aug 02 19:56:06 2005 => Scanning File C:\WINDOWS\Rhododendron.bmp
Di Aug 02 19:56:06 2005 => Scanning File C:\WINDOWS\Fächer.bmp
Di Aug 02 19:56:06 2005 => Scanning File C:\WINDOWS\Santa Fe-Stuck.bmp
Di Aug 02 19:56:06 2005 => Scanning File C:\WINDOWS\Zapotek.bmp
Di Aug 02 19:56:06 2005 => Scanning File C:\WINDOWS\DtcInstall.log
Di Aug 02 19:56:07 2005 => Scanning File C:\WINDOWS\vb.ini
Di Aug 02 19:56:07 2005 => Scanning File C:\WINDOWS\vbaddin.ini
Di Aug 02 19:56:07 2005 => Scanning File C:\WINDOWS\sessmgr.setup.log
Di Aug 02 19:56:07 2005 => Scanning File C:\WINDOWS\desktop.ini
Di Aug 02 19:56:07 2005 => Scanning File C:\WINDOWS\winnt.bmp
Di Aug 02 19:56:07 2005 => Scanning File C:\WINDOWS\winnt256.bmp
Di Aug 02 19:56:07 2005 => Scanning File C:\WINDOWS\WindowsShell.Manifest
Di Aug 02 19:56:07 2005 => Scanning File C:\WINDOWS\Windows Update.log
Di Aug 02 19:56:07 2005 => Scanning File C:\WINDOWS\control.ini
Di Aug 02 19:56:07 2005 => Scanning File C:\WINDOWS\WAVEMIX.INI
Di Aug 02 19:56:07 2005 => Scanning File C:\WINDOWS\HTMLHELP.INI
Di Aug 02 19:56:07 2005 => Scanning File C:\WINDOWS\NETDET.INI
Di Aug 02 19:56:07 2005 => Scanning File C:\WINDOWS\IOS.INI
Di Aug 02 19:56:07 2005 => Scanning File C:\WINDOWS\SCANREG.INI
Di Aug 02 19:56:07 2005 => Scanning File C:\WINDOWS\POWERPNT.INI
Di Aug 02 19:56:07 2005 => Scanning File C:\WINDOWS\ODBC.INI
Di Aug 02 19:56:07 2005 => Scanning File C:\WINDOWS\QTW.INI
Di Aug 02 19:56:07 2005 => Scanning File C:\WINDOWS\WINFILE.INI
Di Aug 02 19:56:07 2005 => Scanning File C:\WINDOWS\TELEPHON.INI
Di Aug 02 19:56:07 2005 => Scanning File C:\WINDOWS\CFOS.INI
Di Aug 02 19:56:07 2005 => Scanning File C:\WINDOWS\AUTORUN.INI
Di Aug 02 19:56:07 2005 => Scanning File C:\WINDOWS\progman.ini
Di Aug 02 19:56:08 2005 => Scanning File C:\WINDOWS\PROTOCOL.INI
Di Aug 02 19:56:08 2005 => Scanning File C:\WINDOWS\mdm.ini
Di Aug 02 19:56:08 2005 => Scanning File C:\WINDOWS\mrun32.ini
Di Aug 02 19:56:08 2005 => Scanning File C:\WINDOWS\COMMAND\SCANDISK.INI
Di Aug 02 19:56:08 2005 => Scanning File C:\WINDOWS\COMMAND\EBD\AUTOEXEC.BAT
Di Aug 02 19:56:08 2005 => Scanning File C:\WINDOWS\COMMAND\EBD\CONFIG.SYS
Di Aug 02 19:56:08 2005 => C:\WINDOWS\COMMAND\EBD\EBD.CAB ***** File having Scanning Restriction *****
Di Aug 02 19:56:08 2005 => Scanning File C:\WINDOWS\COMMAND\EBD\FIXIT.BAT
Di Aug 02 19:56:08 2005 => Scanning File C:\WINDOWS\COMMAND\EBD\IO.SYS
Di Aug 02 19:56:08 2005 => Scanning File C:\WINDOWS\COMMAND\EBD\KEYB.COM
Di Aug 02 19:56:08 2005 => Scanning File C:\WINDOWS\COMMAND\EBD\README.TXT
Di Aug 02 19:56:08 2005 => Scanning File C:\WINDOWS\COMMAND\EBD\SETRAMD.BAT
Di Aug 02 19:56:08 2005 => Scanning File C:\WINDOWS\SYSTEM\WINASPI.DLL
Di Aug 02 19:56:08 2005 => Scanning File C:\WINDOWS\SYSTEM\WING.DLL
Di Aug 02 19:56:08 2005 => Scanning File C:\WINDOWS\SYSTEM\WING32.DLL
Di Aug 02 19:56:08 2005 => Scanning File C:\WINDOWS\SYSTEM\WINGDE.DLL
Di Aug 02 19:56:08 2005 => Scanning File C:\WINDOWS\SYSTEM\WINGDIB.DRV
Di Aug 02 19:56:08 2005 => Scanning File C:\WINDOWS\SYSTEM\WINGPAL.WND
Di Aug 02 19:56:08 2005 => Scanning File C:\WINDOWS\SYSTEM\DVA.386
Di Aug 02 19:56:08 2005 => Scanning File C:\WINDOWS\SYSTEM\WIN32S.INI
Di Aug 02 19:56:08 2005 => Scanning File C:\WINDOWS\SYSTEM\WOWPOST.BAK
Di Aug 02 19:56:08 2005 => Scanning File C:\WINDOWS\SYSTEM\WOWPOST.EXE
Di Aug 02 19:56:08 2005 => Scanning File C:\WINDOWS\SYSTEM\WINASPI.BAK
Di Aug 02 19:56:09 2005 => Scanning File C:\WINDOWS\SYSTEM\OLE2.REG
Di Aug 02 19:56:09 2005 => Scanning File C:\WINDOWS\SYSTEM\AVMNDI.DLL
Di Aug 02 19:56:09 2005 => Scanning File C:\WINDOWS\SYSTEM\COOL.DLL
Di Aug 02 19:56:09 2005 => Scanning File C:\WINDOWS\SYSTEM\SMBIOS.DAT
Di Aug 02 19:56:09 2005 => Scanning File C:\WINDOWS\SYSTEM\SMBIOS.EPS
Di Aug 02 19:56:09 2005 => Scanning File C:\WINDOWS\SYSTEM\NCONN16.DLL
Di Aug 02 19:56:09 2005 => Scanning File C:\WINDOWS\SYSTEM\OLE2CONV.DLL
Di Aug 02 19:56:09 2005 => C:\WINDOWS\SYSTEM\JAVAPERM.HLP ***** File having Scanning Restriction *****
Di Aug 02 19:56:09 2005 => C:\WINDOWS\SYSTEM\JAVASEC.HLP ***** File having Scanning Restriction *****
Di Aug 02 19:56:09 2005 => Scanning File C:\WINDOWS\SYSTEM\MEMBG.HTM
Di Aug 02 19:56:09 2005 => Scanning File C:\WINDOWS\SYSTEM\INSTCM.INF
Di Aug 02 19:56:09 2005 => Scanning File C:\WINDOWS\SYSTEM\DLCNDI.DLL
Di Aug 02 19:56:09 2005 => Scanning File C:\WINDOWS\SYSTEM\msmouse.old
Di Aug 02 19:56:09 2005 => Scanning File C:\WINDOWS\SYSTEM\PDBROWSE.BMP
Di Aug 02 19:56:09 2005 => Scanning File C:\WINDOWS\SYSTEM\CTL3D.DLL
Di Aug 02 19:56:09 2005 => Scanning File C:\WINDOWS\SYSTEM\CTL3DV2.DLL
Di Aug 02 19:56:09 2005 => Scanning File C:\WINDOWS\SYSTEM\RICHED.DLL
Di Aug 02 19:56:09 2005 => Scanning File C:\WINDOWS\SYSTEM\PROTMAN.DOS
Di Aug 02 19:56:09 2005 => Scanning File C:\WINDOWS\SYSTEM\CONTROL.INF
Di Aug 02 19:56:09 2005 => Scanning File C:\WINDOWS\SYSTEM\WINALI.INI
Di Aug 02 19:56:09 2005 => Scanning File C:\WINDOWS\SYSTEM\WINALX.INI
Di Aug 02 19:56:09 2005 => Scanning File C:\WINDOWS\SYSTEM\THREED.VBX
Di Aug 02 19:56:09 2005 => Scanning File C:\WINDOWS\SYSTEM\SPBANNER.WMF
Di Aug 02 19:56:09 2005 => Scanning File C:\WINDOWS\SYSTEM\TBM2134.TMP
Di Aug 02 19:56:09 2005 => Scanning File C:\WINDOWS\SYSTEM\CHARSET.DAT
Di Aug 02 19:56:09 2005 => Scanning File C:\WINDOWS\SYSTEM\CARDS.DLL
Di Aug 02 19:56:10 2005 => Scanning File C:\WINDOWS\SYSTEM\TBM2146.TMP
Di Aug 02 19:56:10 2005 => Scanning File C:\WINDOWS\SYSTEM\TBM2155.TMP
Di Aug 02 19:56:10 2005 => Scanning File C:\WINDOWS\SYSTEM\TBM2161.TMP
Di Aug 02 19:56:10 2005 => Scanning File C:\WINDOWS\SYSTEM\folder.htt
Di Aug 02 19:56:10 2005 => Scanning File C:\WINDOWS\SYSTEM\desktop.ini
Di Aug 02 19:56:10 2005 => Scanning File C:\WINDOWS\SYSTEM\NVARCH16.DLL
Di Aug 02 19:56:10 2005 => Scanning File C:\WINDOWS\SYSTEM\NVMODE.DLL
Di Aug 02 19:56:10 2005 => Scanning File C:\WINDOWS\SYSTEM\Desktop anzeigen.scf
Di Aug 02 19:56:10 2005 => Scanning File C:\WINDOWS\SYSTEM\Goldene Ära.scr.disabled
Di Aug 02 19:56:10 2005 => Scanning File C:\WINDOWS\SYSTEM\Faszinierende Kreaturen.scr.disabled
Di Aug 02 19:56:10 2005 => Scanning File C:\WINDOWS\SYSTEM\Unterwasser.scr.disabled
Di Aug 02 19:56:10 2005 => Scanning File C:\WINDOWS\SYSTEM\nscompat.tlb
Di Aug 02 19:56:10 2005 => Scanning File C:\WINDOWS\SYSTEM\amcompat.tlb
Di Aug 02 19:56:10 2005 => Scanning File C:\WINDOWS\SYSTEM\wmpscheme.xml
Di Aug 02 19:56:10 2005 => Scanning File C:\WINDOWS\SYSTEM\aolndi.dll
Di Aug 02 19:56:10 2005 => Scanning File C:\WINDOWS\SYSTEM\ODBCINST.CNT
Di Aug 02 19:56:10 2005 => C:\WINDOWS\SYSTEM\ODBCINST.HLP ***** File having Scanning Restriction *****
Di Aug 02 19:56:10 2005 => Scanning File C:\WINDOWS\SYSTEM\ODBCJET.CNT
Di Aug 02 19:56:10 2005 => C:\WINDOWS\SYSTEM\ODBCJET.HLP ***** File having Scanning Restriction *****
Di Aug 02 19:56:10 2005 => Scanning File C:\WINDOWS\SYSTEM\master.hpi
Di Aug 02 19:56:10 2005 => Scanning File C:\WINDOWS\SYSTEM\inc.hpi
Di Aug 02 19:56:10 2005 => Scanning File C:\WINDOWS\SYSTEM\hpf816g0.pdf
Di Aug 02 19:56:10 2005 => Scanning File C:\WINDOWS\SYSTEM\BC450RTL.DLL
Di Aug 02 19:56:11 2005 => Scanning File C:\WINDOWS\SYSTEM\MFCOLEUI.DLL
Di Aug 02 19:56:11 2005 => Scanning File C:\WINDOWS\SYSTEM\AVMCLASS.DLL
Di Aug 02 19:56:11 2005 => Scanning File C:\WINDOWS\SYSTEM\OLE2PROX.DLL
Di Aug 02 19:56:11 2005 => Scanning File C:\WINDOWS\SYSTEM\MFC250.DLL
Di Aug 02 19:56:11 2005 => Scanning File C:\WINDOWS\SYSTEM\setup.inf
Di Aug 02 19:56:11 2005 => Scanning File C:\WINDOWS\SYSTEM\stdole.tlb
Di Aug 02 19:56:11 2005 => Scanning File C:\WINDOWS\SYSTEM\AVICAP.DLL
Di Aug 02 19:56:11 2005 => Scanning File C:\WINDOWS\SYSTEM\AVIFILE.DLL
Di Aug 02 19:56:11 2005 => Scanning File C:\WINDOWS\SYSTEM\COMMDLG.DLL
Di Aug 02 19:56:11 2005 => Scanning File C:\WINDOWS\SYSTEM\LZEXPAND.DLL
Di Aug 02 19:56:11 2005 => Scanning File C:\WINDOWS\SYSTEM\KEYBOARD.DRV
Di Aug 02 19:56:11 2005 => Scanning File C:\WINDOWS\SYSTEM\MCIAVI.DRV
Di Aug 02 19:56:11 2005 => Scanning File C:\WINDOWS\SYSTEM\MCISEQ.DRV
Di Aug 02 19:56:11 2005 => Scanning File C:\WINDOWS\SYSTEM\MCIWAVE.DRV
Di Aug 02 19:56:11 2005 => Scanning File C:\WINDOWS\SYSTEM\MMSYSTEM.DLL
Di Aug 02 19:56:11 2005 => Scanning File C:\WINDOWS\SYSTEM\MMTASK.TSK
Di Aug 02 19:56:11 2005 => Scanning File C:\WINDOWS\SYSTEM\MOUSE.DRV
Di Aug 02 19:56:11 2005 => Scanning File C:\WINDOWS\SYSTEM\MSVIDEO.DLL
Di Aug 02 19:56:11 2005 => Scanning File C:\WINDOWS\SYSTEM\OLECLI.DLL
Di Aug 02 19:56:11 2005 => Scanning File C:\WINDOWS\SYSTEM\OLESVR.DLL
Di Aug 02 19:56:11 2005 => Scanning File C:\WINDOWS\SYSTEM\SHELL.DLL
Di Aug 02 19:56:11 2005 => Scanning File C:\WINDOWS\SYSTEM\SOUND.DRV
Di Aug 02 19:56:11 2005 => Scanning File C:\WINDOWS\SYSTEM\SYSTEM.DRV
Di Aug 02 19:56:11 2005 => Scanning File C:\WINDOWS\SYSTEM\TAPI.DLL
Di Aug 02 19:56:11 2005 => Scanning File C:\WINDOWS\SYSTEM\TIMER.DRV
Di Aug 02 19:56:11 2005 => Scanning File C:\WINDOWS\SYSTEM\VER.DLL
Di Aug 02 19:56:12 2005 => Scanning File C:\WINDOWS\SYSTEM\VGA.DRV
Di Aug 02 19:56:12 2005 => Scanning File C:\WINDOWS\SYSTEM\WFWNET.DRV
Di Aug 02 19:56:12 2005 => Scanning File C:\WINDOWS\SYSTEM\WINSPOOL.DRV
Di Aug 02 19:56:12 2005 => Scanning File C:\WINDOWS\SYSTEM\capi20.dll
Di Aug 02 19:56:12 2005 => Scanning File C:\WINDOWS\SYSTEM\capi.dll
Di Aug 02 19:56:12 2005 => Scanning File C:\WINDOWS\SYSTEM\Dschungel.scr.disabled
Di Aug 02 19:56:12 2005 => Scanning File C:\WINDOWS\SYSTEM\Natur.scr.disabled
Di Aug 02 19:56:12 2005 => Scanning File C:\WINDOWS\SYSTEM\Sport.scr.disabled
Di Aug 02 19:56:12 2005 => Scanning File C:\WINDOWS\SYSTEM\Reisen.scr.disabled
Di Aug 02 19:56:12 2005 => Scanning File C:\WINDOWS\SYSTEM\Computer-Innenleben.scr.disabled
Di Aug 02 19:56:12 2005 => Scanning File C:\WINDOWS\SYSTEM\Weltraum.scr.disabled
Di Aug 02 19:56:12 2005 => Scanning File C:\WINDOWS\SYSTEM\Mysterium.scr.disabled
Di Aug 02 19:56:12 2005 => Scanning File C:\WINDOWS\SYSTEM\Baseball.scr.disabled
Di Aug 02 19:56:12 2005 => Scanning File C:\WINDOWS\SYSTEM\Die 60er Jahre (USA).scr.disabled
Di Aug 02 19:56:12 2005 => Scanning File C:\WINDOWS\SYSTEM\Leonardo da Vinci.scr.disabled
Di Aug 02 19:56:13 2005 => Scanning File C:\WINDOWS\SYSTEM\COMPOBJ.DLL
Di Aug 02 19:56:13 2005 => Scanning File C:\WINDOWS\SYSTEM\OLE2.DLL
Di Aug 02 19:56:13 2005 => Scanning File C:\WINDOWS\SYSTEM\OLE2DISP.DLL
Di Aug 02 19:56:13 2005 => Scanning File C:\WINDOWS\SYSTEM\OLE2NLS.DLL
Di Aug 02 19:56:13 2005 => Scanning File C:\WINDOWS\SYSTEM\STORAGE.DLL
Di Aug 02 19:56:13 2005 => Scanning File C:\WINDOWS\SYSTEM\TRUN32I.EXE
Di Aug 02 19:56:13 2005 => Scanning File C:\WINDOWS\SYSTEM\TYPELIB.DLL
Di Aug 02 19:56:13 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\OOBEINFO.INI
Di Aug 02 19:56:13 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\ISPSHELL.HTM
Di Aug 02 19:56:13 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\REGSHELL.HTM
Di Aug 02 19:56:13 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\OEMEULA.TXT
Di Aug 02 19:56:13 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\DSKSHELL.HTM
Di Aug 02 19:56:13 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\MSOBSHEL.HTM
Di Aug 02 19:56:13 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\MSNSETUP\MMSOBSHE.CSS
Di Aug 02 19:56:13 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\MSNSETUP\MBADPID.HTM
Di Aug 02 19:56:13 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\MSNSETUP\MCONGRAT.HTM
Di Aug 02 19:56:14 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\MSNSETUP\MCONNECT.HTM
Di Aug 02 19:56:14 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\MSNSETUP\MEULA.HTM
Di Aug 02 19:56:14 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\MSNSETUP\MEULAWAR.HTM
Di Aug 02 19:56:14 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\MSNSETUP\MINSTALL.HTM
Di Aug 02 19:56:14 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\MSNSETUP\MLAN.HTM
Di Aug 02 19:56:14 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\MSNSETUP\MPID.HTM
Di Aug 02 19:56:14 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\MSNSETUP\MREGISTE.HTM
Di Aug 02 19:56:14 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\MSNSETUP\MREGKB.HTM
Di Aug 02 19:56:14 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\MSNSETUP\MREGKBCM.HTM
Di Aug 02 19:56:14 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\MSNSETUP\MSTART.HTM
Di Aug 02 19:56:14 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\MSNSETUP\MTAPI.HTM
Di Aug 02 19:56:14 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\MSNSETUP\MTEMPLAT.HTM
Di Aug 02 19:56:14 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\MSNSETUP\MUSEMODE.HTM
Di Aug 02 19:56:15 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\MSNSETUP\MUSERINF.HTM
Di Aug 02 19:56:15 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\SETUP\OOBESTYL.CSS
Di Aug 02 19:56:15 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\SETUP\BADEULA.HTM
Di Aug 02 19:56:15 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\SETUP\BADPKEY.HTM
Di Aug 02 19:56:15 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\SETUP\DIALUP.HTM
Di Aug 02 19:56:15 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\SETUP\DRDYISP.HTM
Di Aug 02 19:56:15 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\SETUP\DRDYMIG.HTM
Di Aug 02 19:56:15 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\SETUP\DRDYOEM.HTM
Di Aug 02 19:56:15 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\SETUP\DRDYREF.HTM
Di Aug 02 19:56:15 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\SETUP\FINI.HTM
Di Aug 02 19:56:15 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\SETUP\ICS.HTM
Di Aug 02 19:56:15 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\SETUP\ISP.HTM
Di Aug 02 19:56:15 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\SETUP\ISPWAIT.HTM
Di Aug 02 19:56:15 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\SETUP\KEYBD.HTM
Di Aug 02 19:56:15 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\SETUP\KEYBDCMT.HTM
Di Aug 02 19:56:15 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\SETUP\MIGDIAL.HTM
Di Aug 02 19:56:15 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\SETUP\MIGLIST.HTM
Di Aug 02 19:56:16 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\SETUP\MIGPAGE.HTM
Di Aug 02 19:56:16 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\SETUP\NEWEULA.HTM
Di Aug 02 19:56:16 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\SETUP\OEMPRIV.HTM
Di Aug 02 19:56:16 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\SETUP\PRODKEY.HTM
Di Aug 02 19:56:16 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\SETUP\PRVCYMS.HTM
Di Aug 02 19:56:16 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\SETUP\REFDIAL.HTM
Di Aug 02 19:56:16 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\SETUP\REG1.HTM
Di Aug 02 19:56:16 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\SETUP\REG3.HTM
Di Aug 02 19:56:16 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\SETUP\REGDIAL.HTM
Di Aug 02 19:56:16 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\SETUP\TIMEZONE.HTM
Di Aug 02 19:56:16 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\SETUP\WELCOME.HTM
Di Aug 02 19:56:16 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\REGSETUP\REGSTYL.CSS
Di Aug 02 19:56:16 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\REGSETUP\RDRDYREG.HTM
Di Aug 02 19:56:16 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\REGSETUP\REGDONE.HTM
Di Aug 02 19:56:16 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\REGSETUP\REGRMND.HTM
Di Aug 02 19:56:16 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\REGSETUP\ROEMPRIV.HTM
Di Aug 02 19:56:17 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\REGSETUP\RPRVCYMS.HTM
Di Aug 02 19:56:17 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\REGSETUP\RREGDIAL.HTM
Di Aug 02 19:56:17 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\REGSETUP\RUSRINFO.HTM
Di Aug 02 19:56:17 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\BALL_ANI.GIF
Di Aug 02 19:56:17 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\BGLEFTDO.GIF
Di Aug 02 19:56:17 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\BGLEFTUP.GIF
Di Aug 02 19:56:17 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\BGND1024.GIF
Di Aug 02 19:56:17 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\BGND800.GIF
Di Aug 02 19:56:17 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\BGPHONE1.GIF
Di Aug 02 19:56:17 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\BGRIGHTD.GIF
Di Aug 02 19:56:17 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\BLACK.GIF
Di Aug 02 19:56:17 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\BLUEPIX.GIF
Di Aug 02 19:56:17 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\CFGANI.GIF
Di Aug 02 19:56:17 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\CLICK.GIF
Di Aug 02 19:56:17 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\CLICKL.GIF
Di Aug 02 19:56:17 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\CLICKR.GIF
Di Aug 02 19:56:17 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\COA.GIF
Di Aug 02 19:56:17 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\CON_ANI.GIF
Di Aug 02 19:56:17 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\CON_OFF.GIF
Di Aug 02 19:56:17 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\CONFETTI.GIF
Di Aug 02 19:56:17 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\CONGRATS.GIF
Di Aug 02 19:56:17 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\DEFAULT.GIF
Di Aug 02 19:56:17 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\DEFAULTL.GIF
Di Aug 02 19:56:17 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\DEFAULTR.GIF
Di Aug 02 19:56:17 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\DIAL_ANI.GIF
Di Aug 02 19:56:17 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\DIAL_OFF.GIF
Di Aug 02 19:56:17 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\DIALING.GIF
Di Aug 02 19:56:17 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\DIALTONE.GIF
Di Aug 02 19:56:17 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\DIALUP.GIF
Di Aug 02 19:56:17 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\DISABLDL.GIF
Di Aug 02 19:56:17 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\DISABLDR.GIF
Di Aug 02 19:56:17 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\DISABLED.GIF
Di Aug 02 19:56:17 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\FLAG.GIF
Di Aug 02 19:56:17 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\FLAGANI.GIF
Di Aug 02 19:56:17 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\GRADIENT.GIF
Di Aug 02 19:56:17 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\HOVER.GIF
Di Aug 02 19:56:17 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\HOVERL.GIF
Di Aug 02 19:56:17 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\HOVERR.GIF
Di Aug 02 19:56:17 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\LFTCLK.GIF
Di Aug 02 19:56:18 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\LFTCLKW.GIF
Di Aug 02 19:56:18 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\LFTDEF.GIF
Di Aug 02 19:56:18 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\LFTDEFW.GIF
Di Aug 02 19:56:18 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\LFTDSLD.GIF
Di Aug 02 19:56:18 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\LFTDSLDW.GIF
Di Aug 02 19:56:18 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\LFTHVR.GIF
Di Aug 02 19:56:18 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\LFTHVRW.GIF
Di Aug 02 19:56:18 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\MSNIALOG.GIF
Di Aug 02 19:56:18 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\MSNIAOLD.GIF
Di Aug 02 19:56:18 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\MSNLOGO.GIF
Di Aug 02 19:56:18 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\MSNWTRMK.GIF
Di Aug 02 19:56:18 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\NEG_ANI.GIF
Di Aug 02 19:56:18 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\NEG_OFF.GIF
Di Aug 02 19:56:18 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\OEMLOGO.GIF
Di Aug 02 19:56:18 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\OFFTBAMX.GIF
Di Aug 02 19:56:18 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\OFFTBDSC.GIF
Di Aug 02 19:56:18 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\OFFTBJCB.GIF
Di Aug 02 19:56:18 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\OFFTBMC.GIF
Di Aug 02 19:56:18 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\OFFTBVSA.GIF
Di Aug 02 19:56:18 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\ONTBAMX.GIF
Di Aug 02 19:56:18 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\ONTBDSC.GIF
Di Aug 02 19:56:18 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\ONTBJCB.GIF
Di Aug 02 19:56:18 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\ONTBMC.GIF
Di Aug 02 19:56:18 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\ONTBVSA.GIF
Di Aug 02 19:56:18 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\PASSPORT.GIF
Di Aug 02 19:56:18 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\REGISTER.GIF
Di Aug 02 19:56:18 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\RHTCLK.GIF
Di Aug 02 19:56:18 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\RHTCLKW.GIF
Di Aug 02 19:56:18 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\RHTDEF.GIF
Di Aug 02 19:56:18 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\RHTDEFW.GIF
Di Aug 02 19:56:18 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\RHTDSLD.GIF
Di Aug 02 19:56:18 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\RHTDSLDW.GIF
Di Aug 02 19:56:18 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\RHTHVR.GIF
Di Aug 02 19:56:18 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\RHTHVRW.GIF
Di Aug 02 19:56:18 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\TABAMEX.GIF
Di Aug 02 19:56:19 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\TABDISCO.GIF
Di Aug 02 19:56:19 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\TABMC.GIF
Di Aug 02 19:56:19 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\TABVISA.GIF
Di Aug 02 19:56:19 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\WATERMRK.GIF
Di Aug 02 19:56:19 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\WATRMRK2.GIF
Di Aug 02 19:56:19 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\WM_KEY.GIF
Di Aug 02 19:56:19 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\WM_PC.GIF
Di Aug 02 19:56:19 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\WM_PENCL.GIF
Di Aug 02 19:56:19 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\WM_PHONE.GIF
Di Aug 02 19:56:19 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\WM_PPORT.GIF
Di Aug 02 19:56:19 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\YLLWBAR.GIF
Di Aug 02 19:56:19 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\BGAMEX.JPG
Di Aug 02 19:56:19 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\BGCC.JPG
Di Aug 02 19:56:19 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\BGDISCOV.JPG
Di Aug 02 19:56:19 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\BGJCB.JPG
Di Aug 02 19:56:19 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\BGMC.JPG
Di Aug 02 19:56:19 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\BGVISA.JPG
Di Aug 02 19:56:19 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\CNNCTERR.JPG
Di Aug 02 19:56:19 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\CONNECT.JPG
Di Aug 02 19:56:19 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\DIALTONE.JPG
Di Aug 02 19:56:19 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\DRPSHDW.JPG
Di Aug 02 19:56:19 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\ERROR.JPG
Di Aug 02 19:56:19 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\EULA.JPG
Di Aug 02 19:56:19 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\HNDSHAKE.JPG
Di Aug 02 19:56:19 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\INSTALLD.JPG
Di Aug 02 19:56:19 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\LOGO.JPG
Di Aug 02 19:56:19 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\MSN.JPG
Di Aug 02 19:56:19 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\PID.JPG
Di Aug 02 19:56:19 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\PK.JPG
Di Aug 02 19:56:19 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\REG.JPG
Di Aug 02 19:56:19 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\START.JPG
Di Aug 02 19:56:19 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\STATBACK.JPG
Di Aug 02 19:56:19 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\STATBAR.JPG
Di Aug 02 19:56:19 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\TAPI.JPG
Di Aug 02 19:56:19 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\TOOBUSY.JPG
Di Aug 02 19:56:19 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\IMAGES\WATERMRK.JPG
Di Aug 02 19:56:20 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\HTML\MOUSE\MOUSE.HTM
Di Aug 02 19:56:20 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\HTML\MOUSE\MOUSE_A.HTM
Di Aug 02 19:56:20 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\HTML\MOUSE\MOUSE_B.HTM
Di Aug 02 19:56:20 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\HTML\MOUSE\MOUSE_C.HTM
Di Aug 02 19:56:20 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\HTML\MOUSE\MOUSE_D.HTM
Di Aug 02 19:56:20 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\HTML\MOUSE\MOUSE_E.HTM
Di Aug 02 19:56:20 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\HTML\MOUSE\MOUSE_F.HTM
Di Aug 02 19:56:20 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\HTML\MOUSE\MOUSE_G.HTM
Di Aug 02 19:56:20 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\HTML\MOUSE\MOUSE_H.HTM
Di Aug 02 19:56:20 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\HTML\MOUSE\MOUSE_I.HTM
Di Aug 02 19:56:20 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\HTML\MOUSE\MOUSE_J.HTM
Di Aug 02 19:56:20 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\HTML\MOUSE\MOUSE_K.HTM
Di Aug 02 19:56:20 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\HTML\MOUSE\IMAGES\BUT1_DWN.GIF
Di Aug 02 19:56:20 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\HTML\MOUSE\IMAGES\BUT1_IDL.GIF
Di Aug 02 19:56:20 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\HTML\MOUSE\IMAGES\BUT1_UP.GIF
Di Aug 02 19:56:20 2005 => Scanning File C:\WINDOWS\SYSTEM\OOBE\HTML\
Ich hoffe, dass ich noch richtig liege.
Gruß MiKie
MiKie
 
Beiträge: 6
Registriert: 01.08.2005, 13:21
Wohnort: Berlin

Beitragvon Holy Marcell am 02.08.2005, 21:57

nicht ganz 0.o du musst noch die schritte 13-15 in der anleitung durchführen;mache das bitte noch.
Holy Marcell
 

Adware betterinternet

Beitragvon MiKie am 02.08.2005, 23:31

Hallo !
Welche Schritte verbergen sich hinter 13-15 ?
Gruß MiKie
MiKie
 
Beiträge: 6
Registriert: 01.08.2005, 13:21
Wohnort: Berlin

Beitragvon Holy Marcell am 03.08.2005, 11:38

13. ) dann wähle: file + open escan-log

folgendes Fenster wird sich öffnen: dort wähle MWAV.LOG

Bild

14. ) setze alle Häkchen

Bild

15. ) Kopiere den Inhalt ab (rechtsklick - auf die weisse Fensteroberflaeche--> copy Result und füge ihn in den Thread ein (rechte Maustaste: einfügen), den du in einem Hilfe-Forum eröffnet hast.
Holy Marcell
 

Beitragvon MiKie am 03.08.2005, 12:32

Hey !
Tut mir Leid, aber ich habe etwas den Faden verloren.
Wie komme ich zu Schritt 13?
Sind die einzelnen Schritte im Forum abrufbar und wie kann ich sie aufrufen?
Sorry, für meine lange Leitung.
Gruß MiKie
MiKie
 
Beiträge: 6
Registriert: 01.08.2005, 13:21
Wohnort: Berlin

Beitragvon Holy Marcell am 03.08.2005, 13:09

mach nochmal alles nach der anleitung:

http://nikita.eddys-domain.de/escan.html
Holy Marcell
 

Beitragvon MiKie am 04.08.2005, 21:58

Hallo !
Ich versuche den Link zu öffnen, aber jedesmal werde ich vom Internet Explorer hinausgeworfen. Woran liegt es ?

Gruß MiKie
MiKie
 
Beiträge: 6
Registriert: 01.08.2005, 13:21
Wohnort: Berlin


Zurück zu Online- und PC-Sicherheit

Wer ist online?

Mitglieder in diesem Forum: 0 Mitglieder und 0 Gäste