Ich habe eine Art Spyware gefunden auf meinem Pc und bräuchte dringend Hilfe. Ich hab das escan program durchlaufen lassen und habe mal hier alles kopiert. Ich bitte um schnellst mögliche Hilfe von euch, Danke schon im Vorraus. MfG hatus
--------------------------------------------------
-------------------- INFECTED --------------------
--------------------------------------------------
1: Tue Dec 06 11:16:01 2005 => Offending file found: C:\WINDOWS\system32\mydll.dll
2: Tue Dec 06 11:16:01 2005 => System found infected with advsearch Spyware/Adware (mydll.dll)! Action taken: No Action Taken.
3: Tue Dec 06 11:16:01 2005 => Offending file found: C:\DOKUME~1\Assalieh\LOKALE~1\Temp\iadhide3.dll
4: Tue Dec 06 11:16:01 2005 => System found infected with whenu.savenow Spyware/Adware (iadhide3.dll)! Action taken: No Action Taken.
5: Tue Dec 06 11:16:19 2005 => Offending file found: C:\Dokumente und Einstellungen\Assalieh\Lokale Einstellungen\temp\iadhide3.dll
6: Tue Dec 06 11:16:19 2005 => System found infected with whenu.savenow Spyware/Adware (iadhide3.dll)! Action taken: No Action Taken.
7: Tue Dec 06 11:16:21 2005 => Offending file found: C:\Dokumente und Einstellungen\Assalieh\Lokale Einstellungen\temp\nis\support\helpmsi\external\disable.dll
8: Tue Dec 06 11:16:21 2005 => System found infected with clientman Spyware/Adware (disable.dll)! Action taken: No Action Taken.
9: Tue Dec 06 11:16:22 2005 => Offending file found: C:\Dokumente und Einstellungen\Assalieh\Lokale Einstellungen\temporary internet files\content.ie5\j5xghlm8\common[1].js
10: Tue Dec 06 11:16:22 2005 => System found infected with whenu.savenow Spyware/Adware (common[1].js)! Action taken: No Action Taken.
11: Tue Dec 06 11:16:23 2005 => Offending file found: C:\Dokumente und Einstellungen\Assalieh\Lokale Einstellungen\temporary internet files\content.ie5\qqmpsipp\common[1].js
12: Tue Dec 06 11:16:23 2005 => System found infected with whenu.savenow Spyware/Adware (common[1].js)! Action taken: No Action Taken.
13: Tue Dec 06 11:16:23 2005 => Offending file found: C:\Dokumente und Einstellungen\Assalieh\Lokale Einstellungen\temporary internet files\content.ie5\qqmpsipp\show_ads[2].js
14: Tue Dec 06 11:16:23 2005 => System found infected with whenu.savenow Spyware/Adware (show_ads[2].js)! Action taken: No Action Taken.
15: Tue Dec 06 11:16:23 2005 => Offending file found: C:\Dokumente und Einstellungen\Assalieh\Lokale Einstellungen\temporary internet files\content.ie5\wxyncpqf\common[1].js
16: Tue Dec 06 11:16:23 2005 => System found infected with whenu.savenow Spyware/Adware (common[1].js)! Action taken: No Action Taken.
17: Tue Dec 06 11:16:24 2005 => Offending file found: C:\Dokumente und Einstellungen\Assalieh\Lokale Einstellungen\temporary internet files\content.ie5\wxyncpqf\ticker[1].js
18: Tue Dec 06 11:16:24 2005 => System found infected with whenu.savenow Spyware/Adware (ticker[1].js)! Action taken: No Action Taken.
19: Tue Dec 06 11:16:24 2005 => Offending file found: C:\Dokumente und Einstellungen\Assalieh\Lokale Einstellungen\temporary internet files\content.ie5\yd4do1wl\common[1].js
20: Tue Dec 06 11:16:24 2005 => System found infected with whenu.savenow Spyware/Adware (common[1].js)! Action taken: No Action Taken.
21: Tue Dec 06 11:16:25 2005 => Offending file found: C:\Dokumente und Einstellungen\Assalieh\Lokale Einstellungen\Temporary Internet Files\content.ie5\j5xghlm8\common[1].js
22: Tue Dec 06 11:16:25 2005 => System found infected with whenu.savenow Spyware/Adware (common[1].js)! Action taken: No Action Taken.
23: Tue Dec 06 11:16:25 2005 => Offending file found: C:\Dokumente und Einstellungen\Assalieh\Lokale Einstellungen\Temporary Internet Files\content.ie5\qqmpsipp\common[1].js
24: Tue Dec 06 11:16:25 2005 => System found infected with whenu.savenow Spyware/Adware (common[1].js)! Action taken: No Action Taken.
25: Tue Dec 06 11:16:25 2005 => Offending file found: C:\Dokumente und Einstellungen\Assalieh\Lokale Einstellungen\Temporary Internet Files\content.ie5\qqmpsipp\show_ads[2].js
26: Tue Dec 06 11:16:25 2005 => System found infected with whenu.savenow Spyware/Adware (show_ads[2].js)! Action taken: No Action Taken.
27: Tue Dec 06 11:16:25 2005 => Offending file found: C:\Dokumente und Einstellungen\Assalieh\Lokale Einstellungen\Temporary Internet Files\content.ie5\wxyncpqf\common[1].js
28: Tue Dec 06 11:16:25 2005 => System found infected with whenu.savenow Spyware/Adware (common[1].js)! Action taken: No Action Taken.
29: Tue Dec 06 11:16:25 2005 => Offending file found: C:\Dokumente und Einstellungen\Assalieh\Lokale Einstellungen\Temporary Internet Files\content.ie5\wxyncpqf\ticker[1].js
30: Tue Dec 06 11:16:25 2005 => System found infected with whenu.savenow Spyware/Adware (ticker[1].js)! Action taken: No Action Taken.
31: Tue Dec 06 11:16:25 2005 => Offending file found: C:\Dokumente und Einstellungen\Assalieh\Lokale Einstellungen\Temporary Internet Files\content.ie5\yd4do1wl\common[1].js
32: Tue Dec 06 11:16:25 2005 => System found infected with whenu.savenow Spyware/Adware (common[1].js)! Action taken: No Action Taken.
33: Tue Dec 06 11:16:27 2005 => Offending file found: C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\symantec\common client\settings.dat
34: Tue Dec 06 11:16:27 2005 => System found infected with cydoor.topicks.a Spyware/Adware (settings.dat)! Action taken: No Action Taken.
35: Tue Dec 06 11:16:32 2005 => Offending file found: C:\Dokumente und Einstellungen\All Users\Desktop\ebay.url
36: Tue Dec 06 11:16:32 2005 => System found infected with ezula Spyware/Adware (ebay.url)! Action taken: No Action Taken.
37: Tue Dec 06 11:16:32 2005 => System found infected with cws.therealsearch Spyware/Adware (waol.exe)! Action taken: No Action Taken.
38: Tue Dec 06 11:16:32 2005 => System found infected with cws.therealsearch Spyware/Adware (waol.exe)! Action taken: No Action Taken.
39: Tue Dec 06 11:18:43 2005 => File C:\WINDOWS\system32\wiwshost.exe infected by "Email-Worm.Win32.Bagle.cg" Virus! Action Taken: No Action Taken.
40: Tue Dec 06 11:19:39 2005 => File C:\DOKUME~1\Assalieh\LOKALE~1\Temp\Temporäres Verzeichnis 1 für Beach.zip\1212.exe infected by "Email-Worm.Win32.Bagle.cg" Virus! Action Taken: No Action Taken.
41: Tue Dec 06 11:22:53 2005 => File C:\Dokumente und Einstellungen\Assalieh\Lokale Einstellungen\Temp\Temporäres Verzeichnis 1 für Beach.zip\1212.exe infected by "Email-Worm.Win32.Bagle.cg" Virus! Action Taken: No Action Taken.
42: Tue Dec 06 11:36:03 2005 => File C:\System Volume Information\_restore{422E174A-82CA-4E18-AB3E-652F7620202A}\RP158\A0148397.exe infected by "Email-Worm.Win32.Bagle.cg" Virus! Action Taken: No Action Taken.
43: Tue Dec 06 11:36:03 2005 => File C:\System Volume Information\_restore{422E174A-82CA-4E18-AB3E-652F7620202A}\RP158\A0148399.exe infected by "Email-Worm.Win32.Bagle.cg" Virus! Action Taken: No Action Taken.
44: Tue Dec 06 11:36:05 2005 => File C:\System Volume Information\_restore{422E174A-82CA-4E18-AB3E-652F7620202A}\RP159\A0149397.exe infected by "Email-Worm.Win32.Bagle.cg" Virus! Action Taken: No Action Taken.
45: Tue Dec 06 11:36:05 2005 => File C:\System Volume Information\_restore{422E174A-82CA-4E18-AB3E-652F7620202A}\RP159\A0149399.exe infected by "Email-Worm.Win32.Bagle.cg" Virus! Action Taken: No Action Taken.
46: Tue Dec 06 11:36:06 2005 => File C:\System Volume Information\_restore{422E174A-82CA-4E18-AB3E-652F7620202A}\RP160\A0150397.exe infected by "Email-Worm.Win32.Bagle.cg" Virus! Action Taken: No Action Taken.
47: Tue Dec 06 11:36:06 2005 => File C:\System Volume Information\_restore{422E174A-82CA-4E18-AB3E-652F7620202A}\RP160\A0150398.exe infected by "Email-Worm.Win32.Bagle.cg" Virus! Action Taken: No Action Taken.
48: Tue Dec 06 11:36:08 2005 => File C:\System Volume Information\_restore{422E174A-82CA-4E18-AB3E-652F7620202A}\RP161\A0151397.exe infected by "Email-Worm.Win32.Bagle.cg" Virus! Action Taken: No Action Taken.
49: Tue Dec 06 11:36:08 2005 => File C:\System Volume Information\_restore{422E174A-82CA-4E18-AB3E-652F7620202A}\RP161\A0151398.exe infected by "Email-Worm.Win32.Bagle.cg" Virus! Action Taken: No Action Taken.
50: Tue Dec 06 11:36:09 2005 => File C:\System Volume Information\_restore{422E174A-82CA-4E18-AB3E-652F7620202A}\RP161\A0152397.exe infected by "Email-Worm.Win32.Bagle.cg" Virus! Action Taken: No Action Taken.
51: Tue Dec 06 11:36:09 2005 => File C:\System Volume Information\_restore{422E174A-82CA-4E18-AB3E-652F7620202A}\RP161\A0152398.exe infected by "Email-Worm.Win32.Bagle.cg" Virus! Action Taken: No Action Taken.
52: Tue Dec 06 11:36:11 2005 => File C:\System Volume Information\_restore{422E174A-82CA-4E18-AB3E-652F7620202A}\RP162\A0153397.exe infected by "Email-Worm.Win32.Bagle.cg" Virus! Action Taken: No Action Taken.
53: Tue Dec 06 11:36:12 2005 => File C:\System Volume Information\_restore{422E174A-82CA-4E18-AB3E-652F7620202A}\RP163\A0153474.exe infected by "Email-Worm.Win32.Bagle.cg" Virus! Action Taken: No Action Taken.
54: Tue Dec 06 11:36:12 2005 => File C:\System Volume Information\_restore{422E174A-82CA-4E18-AB3E-652F7620202A}\RP163\A0153475.exe infected by "Email-Worm.Win32.Bagle.cg" Virus! Action Taken: No Action Taken.
55: Tue Dec 06 11:36:13 2005 => File C:\System Volume Information\_restore{422E174A-82CA-4E18-AB3E-652F7620202A}\RP163\A0154473.exe infected by "Email-Worm.Win32.Bagle.cg" Virus! Action Taken: No Action Taken.
56: Tue Dec 06 11:36:13 2005 => File C:\System Volume Information\_restore{422E174A-82CA-4E18-AB3E-652F7620202A}\RP163\A0154474.exe infected by "Email-Worm.Win32.Bagle.cg" Virus! Action Taken: No Action Taken.
57: Tue Dec 06 11:36:14 2005 => File C:\System Volume Information\_restore{422E174A-82CA-4E18-AB3E-652F7620202A}\RP164\A0154507.exe infected by "Email-Worm.Win32.Bagle.cg" Virus! Action Taken: No Action Taken.
58: Tue Dec 06 11:36:14 2005 => File C:\System Volume Information\_restore{422E174A-82CA-4E18-AB3E-652F7620202A}\RP164\A0154508.exe infected by "Email-Worm.Win32.Bagle.cg" Virus! Action Taken: No Action Taken.
59: Tue Dec 06 11:36:14 2005 => File C:\System Volume Information\_restore{422E174A-82CA-4E18-AB3E-652F7620202A}\RP165\A0154521.exe infected by "Email-Worm.Win32.Bagle.cg" Virus! Action Taken: No Action Taken.
60: Tue Dec 06 12:13:18 2005 => File C:\WINDOWS\system32\wiwshost.exe infected by "Email-Worm.Win32.Bagle.cg" Virus! Action Taken: No Action Taken.
--------------------------------------------------
--------------------- ERRORS ---------------------
--------------------------------------------------
1: Tue Dec 06 11:15:42 2005 => ERROR!!! Invalid Entry Eumex 404PC = D:\SETUP.EXE (in key SOFTWARE\Microsoft\Windows\CurrentVersion\Run). No Action Taken.
2: Tue Dec 06 11:15:43 2005 => ERROR!!! Invalid Entry AudioDeck = C:\Programme\VIAudioi\SBADeck\ADeck.exe 1 (in key SOFTWARE\Microsoft\Windows\CurrentVersion\Run). No Action Taken.
3: Tue Dec 06 11:15:52 2005 => ERROR!!! Invalid Entry \??\D:\INSTALL\GMSIPCI.SYS in SYSTEM\CurrentControlSet\Services\GMSIPCI...
4: Tue Dec 06 11:15:55 2005 => ERROR!!! Invalid Entry system32\DRIVERS\WTOMCAT.SYS in SYSTEM\CurrentControlSet\Services\TOMCATWAN...
5: Tue Dec 06 11:15:56 2005 => ERROR!!! Invalid Entry system32\drivers\viaudios.sys in SYSTEM\CurrentControlSet\Services\VIAudio...
6: Tue Dec 06 11:15:56 2005 => ERROR!!! Invalid Entry system32\DRIVERS\wanatw4.sys in SYSTEM\CurrentControlSet\Services\wanatw...
7: Tue Dec 06 11:16:33 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\Programme\CyberLink\Common\UpdateIPR.exe". Action Taken: No Action Taken.
8: Tue Dec 06 11:16:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\system32\MSXML3A.DLL". Action Taken: No Action Taken.
9: Tue Dec 06 11:16:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\System32\spool\DRIVERS\W32X86\LEXBCE.DLL". Action Taken: No Action Taken.
10: Tue Dec 06 11:16:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\System32\spool\DRIVERS\W32X86\LEXBCES.EXE". Action Taken: No Action Taken.
11: Tue Dec 06 11:16:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\System32\spool\DRIVERS\W32X86\lexlmpm.dll". Action Taken: No Action Taken.
12: Tue Dec 06 11:16:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\System32\spool\DRIVERS\W32X86\LEXPPS.EXE". Action Taken: No Action Taken.
13: Tue Dec 06 11:16:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\System32\spool\DRIVERS\W32X86\LEXP2P32.DLL". Action Taken: No Action Taken.
14: Tue Dec 06 11:16:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\System32\spool\DRIVERS\W32X86\LEX2KUSB.DLL". Action Taken: No Action Taken.
15: Tue Dec 06 11:16:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\system32\LEXBCE.DLL". Action Taken: No Action Taken.
16: Tue Dec 06 11:16:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\system32\LEXBCES.EXE". Action Taken: No Action Taken.
17: Tue Dec 06 11:16:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\system32\lexlmpm.dll". Action Taken: No Action Taken.
18: Tue Dec 06 11:16:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\system32\LEXPPS.EXE". Action Taken: No Action Taken.
19: Tue Dec 06 11:16:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\system32\LEXP2P32.DLL". Action Taken: No Action Taken.
20: Tue Dec 06 11:16:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\system32\LEX2KUSB.DLL". Action Taken: No Action Taken.
21: Tue Dec 06 11:16:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\system32\lxbkcomm.dll". Action Taken: No Action Taken.
22: Tue Dec 06 11:16:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\system32\lxbkpwr.dll". Action Taken: No Action Taken.
23: Tue Dec 06 11:16:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\system32\lxbkcoin.dll". Action Taken: No Action Taken.
24: Tue Dec 06 11:16:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\system32\lxbkcoin.ini". Action Taken: No Action Taken.
25: Tue Dec 06 11:16:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\system32\lxbkcinf.dll". Action Taken: No Action Taken.
26: Tue Dec 06 11:16:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\system32\lxbkvs.dll". Action Taken: No Action Taken.
27: Tue Dec 06 11:16:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\system32\SPOOL\PRTPROCS\W32X86\LXBKPP5C.DLL". Action Taken: No Action Taken.
28: Tue Dec 06 11:16:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\system32\LXBKPMNT.DLL". Action Taken: No Action Taken.
29: Tue Dec 06 11:16:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\system32\LXBKLCNT.DLL". Action Taken: No Action Taken.
30: Tue Dec 06 11:16:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\system32\LXBKLCNP.DLL". Action Taken: No Action Taken.
31: Tue Dec 06 11:16:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\system32\LXBKLSNT.EXE". Action Taken: No Action Taken.
32: Tue Dec 06 11:16:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\system32\INSTMON.EXE". Action Taken: No Action Taken.
33: Tue Dec 06 11:16:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\system32\LXBKCFG.EXE". Action Taken: No Action Taken.
34: Tue Dec 06 11:16:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\system32\LXBKCU.DLL". Action Taken: No Action Taken.
35: Tue Dec 06 11:16:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\system32\LXBKCUR.DLL". Action Taken: No Action Taken.
36: Tue Dec 06 11:16:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\system32\LXBKGF.DLL". Action Taken: No Action Taken.
37: Tue Dec 06 11:16:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\system32\LXBKUTIL.DLL". Action Taken: No Action Taken.
38: Tue Dec 06 11:16:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\system32\LEXPING.EXE". Action Taken: No Action Taken.
39: Tue Dec 06 11:16:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\system32\LXBKIH.EXE". Action Taken: No Action Taken.
40: Tue Dec 06 11:16:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\system32\LXBKJSWR.DLL". Action Taken: No Action Taken.
41: Tue Dec 06 11:16:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\system32\LXBK.LOC". Action Taken: No Action Taken.
42: Tue Dec 06 11:16:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\system32\LXBKDRV.HLP". Action Taken: No Action Taken.
43: Tue Dec 06 11:16:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\system32\LXBKLPA.HLP". Action Taken: No Action Taken.
44: Tue Dec 06 11:16:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\system32\LXBKDRV.CNT". Action Taken: No Action Taken.
45: Tue Dec 06 11:16:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\system32\LXBKLPA.CNT". Action Taken: No Action Taken.
46: Tue Dec 06 11:16:34 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\system32\LXBKMA.CNT". Action Taken: No Action Taken.
47: Tue Dec 06 11:16:36 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\App Paths\cmmgr32.exe" refers to invalid object "C:\WINDOWS\System32\cmmgr32.exe". Action Taken: No Action Taken.
48: Tue Dec 06 11:16:37 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\App Paths\fricom32.exe" refers to invalid object "C:\Programme\FRITZ!\fricom32.exe". Action Taken: No Action Taken.
49: Tue Dec 06 11:16:37 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\App Paths\frivox32.exe" refers to invalid object "C:\Programme\FRITZ!\frivox32.exe". Action Taken: No Action Taken.
50: Tue Dec 06 11:16:37 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\App Paths\ldm.exe" refers to invalid object "C:\Programme\Desktop Messenger\ldm.exe". Action Taken: No Action Taken.
51: Tue Dec 06 11:16:39 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders" refers to invalid object "C:\Programme\Norton Internet Security\Norton AntiVirus\". Action Taken: No Action Taken.
52: Tue Dec 06 11:16:39 2005 => Entry "HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts" refers to invalid object ".cnt". Action Taken: No Action Taken.
53: Tue Dec 06 11:16:39 2005 => Entry "HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts" refers to invalid object ".gid". Action Taken: No Action Taken.
54: Tue Dec 06 11:16:39 2005 => Entry "HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts" refers to invalid object ".isu". Action Taken: No Action Taken.
55: Tue Dec 06 11:16:39 2005 => Entry "HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts" refers to invalid object ".sav". Action Taken: No Action Taken.
56: Tue Dec 06 11:16:39 2005 => Entry "HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts" refers to invalid object "OpenWithList". Action Taken: No Action Taken.
57: Tue Dec 06 11:16:39 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache" refers to invalid object "AOLCoach de". Action Taken: No Action Taken.
58: Tue Dec 06 11:16:39 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache" refers to invalid object "T-Online Direktanwahl". Action Taken: No Action Taken.
59: Tue Dec 06 11:16:39 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache" refers to invalid object "{68DB6A41-76CC-4408-AB54-3B243E21A6C1}". Action Taken: No Action Taken.
60: Tue Dec 06 11:16:39 2005 => Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache" refers to invalid object "{D1696920-9794-4BBC-8A30-7A88763DE5A2}". Action Taken: No Action Taken.
61: Tue Dec 06 11:16:39 2005 => Entry "HKCR\CLSID\{00014C0D-B007-4448-B89B-4EC3E857961D}" refers to invalid object "C:\Programme\AOL 9.0\Media\CDDBControl.dll". Action Taken: No Action Taken.
62: Tue Dec 06 11:16:39 2005 => Entry "HKCR\CLSID\{00e0313F-8627-45db-863d-fd41083c3d32}" refers to invalid object ""C:\Programme\AOL 9.0\waol.exe"". Action Taken: No Action Taken.
63: Tue Dec 06 11:16:40 2005 => Entry "HKCR\CLSID\{09E6F477-C3C3-4636-8BFD-2DDB36147FEC}" refers to invalid object "C:\Programme\AOL 9.0\MyCalendar.dll". Action Taken: No Action Taken.
64: Tue Dec 06 11:16:40 2005 => Entry "HKCR\CLSID\{0FE9096F-7F7A-4e40-857C-E48A53440DFE}" refers to invalid object "C:\Programme\AOL 9.0\MyCalendar.dll". Action Taken: No Action Taken.
65: Tue Dec 06 11:16:40 2005 => Entry "HKCR\CLSID\{10F34E64-BBB2-11D6-8A17-00E029570A3E}" refers to invalid object "C:\Programme\AOL 9.0\sa.dll". Action Taken: No Action Taken.
66: Tue Dec 06 11:16:40 2005 => Entry "HKCR\CLSID\{1167C47F-01F9-4C08-8564-1D6C9BAAFB60}" refers to invalid object "C:\Programme\AOL 9.0\Media\Pathfinder.dll". Action Taken: No Action Taken.
67: Tue Dec 06 11:16:40 2005 => Entry "HKCR\CLSID\{14DB4DBD-FB4A-458e-8699-F9EB4BDAFEBC}" refers to invalid object ""C:\Programme\AOL 9.0\waol.exe"". Action Taken: No Action Taken.
68: Tue Dec 06 11:16:40 2005 => Entry "HKCR\CLSID\{18477169-4752-41DC-AB0F-C50EBA75641D}" refers to invalid object "C:\PROGRA~1\GEMEIN~1\aolshare\pictures\YGPWz.dll". Action Taken: No Action Taken.
69: Tue Dec 06 11:16:40 2005 => Entry "HKCR\CLSID\{1853e19a-4e54-4190-8deb-2e1cc947cd60}" refers to invalid object "C:\Programme\AOL 9.0\axtrack.dll". Action Taken: No Action Taken.
70: Tue Dec 06 11:16:40 2005 => Entry "HKCR\CLSID\{189504B8-50D1-4AA8-B4D6-95C8F58A6414}" refers to invalid object "C:\Programme\AOL 9.0\sb.dll". Action Taken: No Action Taken.
71: Tue Dec 06 11:16:40 2005 => Entry "HKCR\CLSID\{19038319-D799-4819-94C0-1A115A590BF8}" refers to invalid object ""C:\Programme\AOL 9.0\waol.exe"". Action Taken: No Action Taken.
72: Tue Dec 06 11:16:40 2005 => Entry "HKCR\CLSID\{1B28020D-9DE7-11D4-A2D4-001083025146}" refers to invalid object "C:\Programme\AOL 9.0\axclntbrg.dll". Action Taken: No Action Taken.
73: Tue Dec 06 11:16:40 2005 => Entry "HKCR\CLSID\{1CB749C0-81EC-484E-B82C-ADD141FC6415}" refers to invalid object "C:\Programme\AOL 9.0\Media\Xanthe.dll". Action Taken: No Action Taken.
74: Tue Dec 06 11:16:40 2005 => Entry "HKCR\CLSID\{1EFD6A40-3999-11CF-9150-00AA0059F70D}" refers to invalid object "D:\PROGRAM\32\mci32.ocx". Action Taken: No Action Taken.
75: Tue Dec 06 11:16:40 2005 => Entry "HKCR\CLSID\{205D2DFB-BBAD-4DC4-A0BB-CDA12A1639CE}" refers to invalid object "C:\Programme\AOL 9.0\Media\Phobos.dll". Action Taken: No Action Taken.
76: Tue Dec 06 11:16:40 2005 => Entry "HKCR\CLSID\{225789FB-CCA8-11D2-A719-0060B0B41584}" refers to invalid object ""C:\Programme\AOL 9.0\waol.exe"". Action Taken: No Action Taken.
77: Tue Dec 06 11:16:40 2005 => Entry "HKCR\CLSID\{229b78d5-38f5-11d5-9001-00c04f4c3b9f}" refers to invalid object "C:\Programme\AOL 9.0\Media\CDDBControl.dll". Action Taken: No Action Taken.
78: Tue Dec 06 11:16:40 2005 => Entry "HKCR\CLSID\{229b78df-38f5-11d5-9001-00c04f4c3b9f}" refers to invalid object "C:\Programme\AOL 9.0\Media\CDDBControl.dll". Action Taken: No Action Taken.
79: Tue Dec 06 11:16:40 2005 => Entry "HKCR\CLSID\{229b78e0-38f5-11d5-9001-00c04f4c3b9f}" refers to invalid object "C:\Programme\AOL 9.0\Media\CDDBControl.dll". Action Taken: No Action Taken.
80: Tue Dec 06 11:16:40 2005 => Entry "HKCR\CLSID\{229b78e1-38f5-11d5-9001-00c04f4c3b9f}" refers to invalid object "C:\Programme\AOL 9.0\Media\CDDBControl.dll". Action Taken: No Action Taken.
81: Tue Dec 06 11:16:40 2005 => Entry "HKCR\CLSID\{229b78e2-38f5-11d5-9001-00c04f4c3b9f}" refers to invalid object "C:\Programme\AOL 9.0\Media\CDDBControl.dll". Action Taken: No Action Taken.
82: Tue Dec 06 11:16:41 2005 => Entry "HKCR\CLSID\{2BAE89B0-68EF-4fab-AFF7-1E486D93F9EB}" refers to invalid object "C:\Programme\AOL 9.0\ae.dll". Action Taken: No Action Taken.
83: Tue Dec 06 11:16:41 2005 => Entry "HKCR\CLSID\{3775D2E0-7C5D-11CF-899E-00AA00688B10}" refers to invalid object "D:\PROGRAM\32\mci32.ocx". Action Taken: No Action Taken.
84: Tue Dec 06 11:16:41 2005 => Entry "HKCR\CLSID\{37DAB811-C876-41B4-A649-E3A4C3D1F1A3}" refers to invalid object "C:\Programme\Lexmark X1100 Series\lxbkvb.exe /StiDevice:%1 /StiEvent:%2". Action Taken: No Action Taken.
85: Tue Dec 06 11:16:41 2005 => Entry "HKCR\CLSID\{4464114B-EBEC-11D6-9534-00E02932CC2E}" refers to invalid object "C:\Programme\Gemeinsame Dateien\fun communications\funAd.dll". Action Taken: No Action Taken.
86: Tue Dec 06 11:16:42 2005 => Entry "HKCR\CLSID\{4E97BE17-3300-4A4F-B380-5988DD771F1F}" refers to invalid object "C:\Programme\AOL 9.0\Media\Ares.dll". Action Taken: No Action Taken.
87: Tue Dec 06 11:16:42 2005 => Entry "HKCR\CLSID\{5145942E-41DF-4658-B7C4-089F48E84A75}" refers to invalid object "C:\Programme\AOL 9.0\axtrack.dll". Action Taken: No Action Taken.
88: Tue Dec 06 11:16:42 2005 => Entry "HKCR\CLSID\{5788DAE8-4B72-4BE6-89A0-1E6123E4CBC2}" refers to invalid object "C:\Programme\AOL 9.0\Media\Cerberus.dll". Action Taken: No Action Taken.
89: Tue Dec 06 11:16:42 2005 => Entry "HKCR\CLSID\{57C368A7-F2E9-48C6-B0E2-C201751383C1}" refers to invalid object "C:\Programme\AOL 9.0\Media\Phobos.dll". Action Taken: No Action Taken.
90: Tue Dec 06 11:16:42 2005 => Entry "HKCR\CLSID\{602DB47D-DFE2-4553-8C54-0522A9DC74AC}" refers to invalid object ""C:\Programme\AOL 9.0\waol.exe"". Action Taken: No Action Taken.
91: Tue Dec 06 11:16:42 2005 => Entry "HKCR\CLSID\{61E15DE7-D229-4eb3-A460-40DCDDA60DA7}" refers to invalid object "C:\Programme\AOL 9.0\abui.dll". Action Taken: No Action Taken.
92: Tue Dec 06 11:16:42 2005 => Entry "HKCR\CLSID\{63435828-E10D-42d5-8859-C94796B7C22D}" refers to invalid object "C:\Programme\AOL 9.0\MyCalendar.dll". Action Taken: No Action Taken.
93: Tue Dec 06 11:16:42 2005 => Entry "HKCR\CLSID\{639A19DD-1D97-4A6E-A0D1-01E04FED563F}" refers to invalid object "C:\Programme\AOL 9.0\Media\Phobos.dll". Action Taken: No Action Taken.
94: Tue Dec 06 11:16:42 2005 => Entry "HKCR\CLSID\{6AD3B5BD-9A96-4ca2-9455-2034D05EB134}" refers to invalid object "C:\Programme\AOL 9.0\MyCalendar.dll". Action Taken: No Action Taken.
95: Tue Dec 06 11:16:43 2005 => Entry "HKCR\CLSID\{752B9690-7A0B-4c67-8A09-AE3885CFCDF4}" refers to invalid object ""C:\Programme\AOL 9.0\waol.exe"". Action Taken: No Action Taken.
96: Tue Dec 06 11:16:43 2005 => Entry "HKCR\CLSID\{756A2CB8-EC02-4DC8-8588-296C611A5365}" refers to invalid object "C:\Programme\Gemeinsame Dateien\aolshare\Coach\coachdm3.dll". Action Taken: No Action Taken.
97: Tue Dec 06 11:16:43 2005 => Entry "HKCR\CLSID\{7629C9DE-2E38-4963-A01C-02FFAC203D87}" refers to invalid object "C:\Programme\AOL 9.0\axtrack.dll". Action Taken: No Action Taken.
98: Tue Dec 06 11:16:43 2005 => Entry "HKCR\CLSID\{79498D83-FEFE-4e36-8B7E-E9CF79F010B0}" refers to invalid object ""C:\Programme\AOL 9.0\waol.exe"". Action Taken: No Action Taken.
99: Tue Dec 06 11:16:43 2005 => Entry "HKCR\CLSID\{7BD901A3-39BA-419b-AF57-EAA3145420DF}" refers to invalid object ""C:\Programme\AOL 9.0\waol.exe"". Action Taken: No Action Taken.
100: Tue Dec 06 11:16:43 2005 => Entry "HKCR\CLSID\{7C9688C3-7279-474D-ABA5-A632373D2CDB}" refers to invalid object "C:\Programme\AOL 9.0\Media\Phobos.dll". Action Taken: No Action Taken.
101: Tue Dec 06 11:16:43 2005 => Entry "HKCR\CLSID\{7D40BE24-67B4-11D4-B7C0-0050044A0724}" refers to invalid object "C:\Programme\Gemeinsame Dateien\fun communications\UdaComServer.dll". Action Taken: No Action Taken.
102: Tue Dec 06 11:16:43 2005 => Entry "HKCR\CLSID\{80373D03-D993-11D3-A2CE-00108335731F}" refers to invalid object "C:\Programme\AOL 9.0\MIMEHook.dll". Action Taken: No Action Taken.
103: Tue Dec 06 11:16:43 2005 => Entry "HKCR\CLSID\{83D4679F-B6D7-11D2-BF36-00C04FB90A03}" refers to invalid object "C:\PROGRA~1\MESSEN~1\rtcimsp.dll". Action Taken: No Action Taken.
104: Tue Dec 06 11:16:43 2005 => Entry "HKCR\CLSID\{84CBABC2-D3BE-4EEF-8394-121FAC215CEF}" refers to invalid object "C:\PROGRA~1\GEMEIN~1\aolshare\pictures\YGPPIC~3.DLL". Action Taken: No Action Taken.
105: Tue Dec 06 11:16:43 2005 => Entry "HKCR\CLSID\{8AB5F344-B600-11D6-8A15-00E029570A3E}" refers to invalid object "C:\Programme\AOL 9.0\sa.dll". Action Taken: No Action Taken.
106: Tue Dec 06 11:16:43 2005 => Entry "HKCR\CLSID\{8BBDA254-CE76-11D3-A2CE-00108335731F}" refers to invalid object "C:\Programme\AOL 9.0\MIMEHook.dll". Action Taken: No Action Taken.
107: Tue Dec 06 11:16:43 2005 => Entry "HKCR\CLSID\{8FC6A820-6BFC-11d6-A10D-0010A49A288A}" refers to invalid object ""C:\Programme\AOL 9.0\waol.exe"". Action Taken: No Action Taken.
108: Tue Dec 06 11:16:44 2005 => Entry "HKCR\CLSID\{943742F6-3A40-43FF-97F4-A1750D97B200}" refers to invalid object "C:\PROGRA~1\GEMEIN~1\aolshare\pictures\YGPPIC~3.DLL". Action Taken: No Action Taken.
109: Tue Dec 06 11:16:44 2005 => Entry "HKCR\CLSID\{9482BC28-EAA5-4b6e-82E9-C6832320936E}" refers to invalid object ""C:\Programme\AOL 9.0\waol.exe"". Action Taken: No Action Taken.
110: Tue Dec 06 11:16:44 2005 => Entry "HKCR\CLSID\{98BFD494-F6AD-4794-9038-832C0654CC43}" refers to invalid object "C:\PROGRA~1\GEMEIN~1\aolshare\pictures\YGPUPF.dll". Action Taken: No Action Taken.
111: Tue Dec 06 11:16:44 2005 => Entry "HKCR\CLSID\{9F62797E-1249-4596-9FF7-AC6D851A542A}" refers to invalid object "C:\Programme\AOL 9.0\MyCalendar.dll". Action Taken: No Action Taken.
112: Tue Dec 06 11:16:44 2005 => Entry "HKCR\CLSID\{A105BD70-BF56-4D10-BC91-41C88321F47C}" refers to invalid object "C:\Programme\AOL 9.0\Media\Phobos.dll". Action Taken: No Action Taken.
113: Tue Dec 06 11:16:44 2005 => Entry "HKCR\CLSID\{A1B09066-C95C-4EF6-8DFD-3DD0AFE610B6}" refers to invalid object "C:\PROGRA~1\GEMEIN~1\aol\SCREEN~1\YGPSCR~1.DLL". Action Taken: No Action Taken.
114: Tue Dec 06 11:16:44 2005 => Entry "HKCR\CLSID\{A8ABE123-FAC4-41c1-ABA3-051B6F112B83}" refers to invalid object "C:\Programme\AOL 9.0\MyCalendar.dll". Action Taken: No Action Taken.
115: Tue Dec 06 11:16:44 2005 => Entry "HKCR\CLSID\{A98ABF1C-107C-44E7-9254-2C3FF435D0C2}" refers to invalid object "C:\Programme\AOL 9.0\sb.dll". Action Taken: No Action Taken.
116: Tue Dec 06 11:16:44 2005 => Entry "HKCR\CLSID\{AC44023F-D183-4397-9D02-27D34F120CB2}" refers to invalid object ""C:\Programme\AOL 9.0\waol.exe"". Action Taken: No Action Taken.
117: Tue Dec 06 11:16:44 2005 => Entry "HKCR\CLSID\{AD41621C-A2DD-487D-A24B-8BE40116A5A3}" refers to invalid object "C:\PROGRA~1\GEMEIN~1\aolshare\pictures\YGPPIC~3.DLL". Action Taken: No Action Taken.
118: Tue Dec 06 11:16:44 2005 => Entry "HKCR\CLSID\{AED456C4-4866-4420-863F-35767EBED514}" refers to invalid object "C:\Programme\AOL 9.0\Media\Phobos.dll". Action Taken: No Action Taken.
119: Tue Dec 06 11:16:44 2005 => Entry "HKCR\CLSID\{B3E7BCF9-05C8-4233-BA88-37FDA4AD3147}" refers to invalid object "C:\Programme\AOL 9.0\MyCalendar.dll". Action Taken: No Action Taken.
120: Tue Dec 06 11:16:44 2005 => Entry "HKCR\CLSID\{B4F80028-5714-4B7B-B9B1-5748B204799A}" refers to invalid object "C:\Programme\AOL 9.0\Media\Phobos.dll". Action Taken: No Action Taken.
121: Tue Dec 06 11:16:44 2005 => Entry "HKCR\CLSID\{B6F041A2-48B9-4d3f-A91D-90E17C505FD3}" refers to invalid object "C:\Programme\AOL 9.0\MyCalendar.dll". Action Taken: No Action Taken.
122: Tue Dec 06 11:16:44 2005 => Entry "HKCR\CLSID\{B801CA65-A1FC-11D0-85AD-444553540000}" refers to invalid object "D:\Reader\AcroRd32.exe". Action Taken: No Action Taken.
123: Tue Dec 06 11:16:44 2005 => Entry "HKCR\CLSID\{B9F3009B-976B-41C4-A992-229DCCF3367C}" refers to invalid object "C:\Programme\AOL 9.0\axtrack.dll". Action Taken: No Action Taken.
124: Tue Dec 06 11:16:44 2005 => Entry "HKCR\CLSID\{BB4AEB43-D0AB-11D2-A719-0060B0B41584}" refers to invalid object ""C:\Programme\AOL 9.0\waol.exe"". Action Taken: No Action Taken.
125: Tue Dec 06 11:16:44 2005 => Entry "HKCR\CLSID\{BBDA76FB-B05C-4A30-8E75-A96499A840D1}" refers to invalid object ""C:\Programme\AOL 9.0\waol.exe"". Action Taken: No Action Taken.
126: Tue Dec 06 11:16:44 2005 => Entry "HKCR\CLSID\{bc8a96c4-3909-11d5-9001-00c04f4c3b9f}" refers to invalid object "C:\Programme\AOL 9.0\Media\CDDBControl.dll". Action Taken: No Action Taken.
127: Tue Dec 06 11:16:44 2005 => Entry "HKCR\CLSID\{bc8a96c5-3909-11d5-9001-00c04f4c3b9f}" refers to invalid object "C:\Programme\AOL 9.0\Media\CDDBControl.dll". Action Taken: No Action Taken.
128: Tue Dec 06 11:16:44 2005 => Entry "HKCR\CLSID\{bc8a96c6-3909-11d5-9001-00c04f4c3b9f}" refers to invalid object "C:\Programme\AOL 9.0\Media\CDDBControl.dll". Action Taken: No Action Taken.
129: Tue Dec 06 11:16:44 2005 => Entry "HKCR\CLSID\{bc8a96c7-3909-11d5-9001-00c04f4c3b9f}" refers to invalid object "C:\Programme\AOL 9.0\Media\CDDBControl.dll". Action Taken: No Action Taken.
130: Tue Dec 06 11:16:44 2005 => Entry "HKCR\CLSID\{bc8a96c8-3909-11d5-9001-00c04f4c3b9f}" refers to invalid object "C:\Programme\AOL 9.0\Media\CDDBControl.dll". Action Taken: No Action Taken.
131: Tue Dec 06 11:16:45 2005 => Entry "HKCR\CLSID\{C1A8AF25-1257-101B-8FB0-0020AF039CA3}" refers to invalid object "D:\PROGRAM\32\mci32.ocx". Action Taken: No Action Taken.
132: Tue Dec 06 11:16:45 2005 => Entry "HKCR\CLSID\{C28BC286-884C-4a63-8A9C-6F7F5711034F}" refers to invalid object "C:\Programme\AOL 9.0\Media\NmpX\nmpx.dll". Action Taken: No Action Taken.
133: Tue Dec 06 11:16:45 2005 => Entry "HKCR\CLSID\{C689CA08-726F-4676-8876-99F163685B32}" refers to invalid object ""C:\Programme\AOL 9.0\waol.exe"". Action Taken: No Action Taken.
134: Tue Dec 06 11:16:45 2005 => Entry "HKCR\CLSID\{C8A7FDAD-94D1-4da6-8D95-75888FB12DD4}" refers to invalid object ""C:\Programme\AOL 9.0\waol.exe"". Action Taken: No Action Taken.
135: Tue Dec 06 11:16:45 2005 => Entry "HKCR\CLSID\{CC93F1D5-BAE8-11D4-BB7E-00E0290BFBAA}" refers to invalid object "C:\PROGRA~1\GEMEIN~1\FUNCOM~1\FUNINT~1.DLL". Action Taken: No Action Taken.
136: Tue Dec 06 11:16:45 2005 => Entry "HKCR\CLSID\{D465B936-C361-4417-9AC5-35167066F84B}" refers to invalid object "C:\Programme\AOL 9.0\Media\Phobos.dll". Action Taken: No Action Taken.
137: Tue Dec 06 11:16:45 2005 => Entry "HKCR\CLSID\{D670D0B3-05AB-4115-9F87-D983EF1AC747}" refers to invalid object "C:\PROGRA~1\GEMEIN~1\aolshare\pictures\YGPPIC~1.DLL". Action Taken: No Action Taken.
138: Tue Dec 06 11:16:45 2005 => Entry "HKCR\CLSID\{D7906D3D-7A10-4B1D-80B6-1E1BA295F5E5}" refers to invalid object "C:\Programme\ABBYY FineReader 5.0 Sprint\Sprint.exe /StiDevice:%1 /StiEvent:%2". Action Taken: No Action Taken.
139: Tue Dec 06 11:16:45 2005 => Entry "HKCR\CLSID\{D9F99C6B-A3A6-11D4-AF64-444553546170}" refers to invalid object "C:\Programme\AOL 9.0\Media\Phobos.dll". Action Taken: No Action Taken.
140: Tue Dec 06 11:16:45 2005 => Entry "HKCR\CLSID\{DA3C177A-D1DA-47f2-BBF0-E9710CA7253F}" refers to invalid object "C:\Programme\AOL 9.0\MyCalendar.dll". Action Taken: No Action Taken.
141: Tue Dec 06 11:16:46 2005 => Entry "HKCR\CLSID\{E0CB08CE-AB3D-4779-9C77-62A439BFE6C3}" refers to invalid object "C:\PROGRA~1\GEMEIN~1\aolshare\pictures\YGPPIC~4.DLL". Action Taken: No Action Taken.
142: Tue Dec 06 11:16:46 2005 => Entry "HKCR\CLSID\{E3393F8F-B0C2-4103-A9E6-E0EB74645770}" refers to invalid object ""C:\Programme\AOL 9.0\waol.exe"". Action Taken: No Action Taken.
143: Tue Dec 06 11:16:46 2005 => Entry "HKCR\CLSID\{E3852604-B619-11d6-94EC-00047521F020}" refers to invalid object "C:\Programme\AOL 9.0\Media\NmpXChat\nmpxchat.dll". Action Taken: No Action Taken.
144: Tue Dec 06 11:16:46 2005 => Entry "HKCR\CLSID\{E726E415-FC33-451A-A309-00A95540596F}" refers to invalid object "C:\Programme\Gemeinsame Dateien\fun communications\funAd.dll". Action Taken: No Action Taken.
145: Tue Dec 06 11:16:46 2005 => Entry "HKCR\CLSID\{E981D791-F499-4837-A483-5AB22F1C548F}" refers to invalid object "C:\Programme\AOL 9.0\Media\Phobos.dll". Action Taken: No Action Taken.
146: Tue Dec 06 11:16:46 2005 => Entry "HKCR\CLSID\{E9DD2392-EF9B-4963-BEDF-F86C0A2B762A}" refers to invalid object "C:\Programme\AOL 9.0\AMH.dll". Action Taken: No Action Taken.
147: Tue Dec 06 11:16:46 2005 => Entry "HKCR\CLSID\{EB511AE4-87FE-4EFB-91A3-428B2F2601F7}" refers to invalid object "C:\Programme\AOL 9.0\Media\Phobos.dll". Action Taken: No Action Taken.
148: Tue Dec 06 11:16:46 2005 => Entry "HKCR\CLSID\{F4F30C01-A7B4-492e-943E-58A7CF2D9DD6}" refers to invalid object "C:\Programme\AOL 9.0\MyCalendar.dll". Action Taken: No Action Taken.
149: Tue Dec 06 11:16:46 2005 => Entry "HKCR\TypeLib\{00A987AE-587B-4343-B826-89F17AB41A03}" refers to invalid object "C:\Programme\AOL 9.0\MyCalendar.dll". Action Taken: No Action Taken.
150: Tue Dec 06 11:16:46 2005 => Entry "HKCR\TypeLib\{06645894-E73C-413B-8704-71823A9C39B5}" refers to invalid object "C:\Programme\AOL 9.0\Media\Cerberus.dll". Action Taken: No Action Taken.
151: Tue Dec 06 11:16:46 2005 => Entry "HKCR\TypeLib\{0B54F548-639F-462F-BCDE-9557B8AB378F}" refers to invalid object "C:\PROGRA~1\GEMEIN~1\aolshare\pictures\YGPPIC~4.DLL". Action Taken: No Action Taken.
152: Tue Dec 06 11:16:46 2005 => Entry "HKCR\TypeLib\{16D8D842-6E64-489F-99BB-D6CEF503A74E}" refers to invalid object "C:\Programme\AOL 9.0\Media\Xanthe.dll". Action Taken: No Action Taken.
153: Tue Dec 06 11:16:46 2005 => Entry "HKCR\TypeLib\{1B280200-9DE7-11D4-A2D4-001083025146}" refers to invalid object "C:\Programme\AOL 9.0\axclntbrg.dll". Action Taken: No Action Taken.
154: Tue Dec 06 11:16:46 2005 => Entry "HKCR\TypeLib\{1B8B281E-F67E-4212-8D3B-C98B8AE18DA4}" refers to invalid object "C:\PROGRA~1\GEMEIN~1\aolshare\pictures\YGPPIC~1.DLL". Action Taken: No Action Taken.
155: Tue Dec 06 11:16:46 2005 => Entry "HKCR\TypeLib\{229B78B8-38F5-11D5-9001-00C04F4C3B9F}" refers to invalid object "C:\Programme\AOL 9.0\Media\CDDBControl.dll". Action Taken: No Action Taken.
156: Tue Dec 06 11:16:46 2005 => Entry "HKCR\TypeLib\{296802FE-345A-4CA4-B941-692B8622CC69}" refers to invalid object "C:\Programme\AOL 9.0\axtrack.dll". Action Taken: No Action Taken.
157: Tue Dec 06 11:16:46 2005 => Entry "HKCR\TypeLib\{2D99B3D1-4A7E-11D4-B76E-0050044A0724}" refers to invalid object "C:\Programme\Gemeinsame Dateien\fun communications\UdaComServer.dll". Action Taken: No Action Taken.
158: Tue Dec 06 11:16:46 2005 => Entry "HKCR\TypeLib\{307DE02D-679A-49B9-B582-6E623BE9386F}" refers to invalid object "C:\Programme\Gemeinsame Dateien\aolshare\Coach\coachdm3.dll". Action Taken: No Action Taken.
159: Tue Dec 06 11:16:46 2005 => Entry "HKCR\TypeLib\{39DC8E5F-A573-4D58-8A13-6877A3B672EA}" refers to invalid object "C:\Programme\AOL 9.0\sb.dll". Action Taken: No Action Taken.
160: Tue Dec 06 11:16:47 2005 => Entry "HKCR\TypeLib\{3F8E02B4-6601-41A2-95E7-6BD102935C55}" refers to invalid object "C:\Programme\AOL 9.0\Media\Phobos.dll". Action Taken: No Action Taken.
161: Tue Dec 06 11:16:47 2005 => Entry "HKCR\TypeLib\{57B2FD05-64D4-4AD7-A92A-7C32FE50A0F4}" refers to invalid object "C:\PROGRA~1\GEMEIN~1\aolshare\pictures\YGPUPF.dll". Action Taken: No Action Taken.
162: Tue Dec 06 11:16:47 2005 => Entry "HKCR\TypeLib\{64E26A20-8A9E-4B33-9F8D-F3663F13811E}" refers to invalid object "C:\PROGRA~1\GEMEIN~1\aolshare\pictures\YGPWz.dll". Action Taken: No Action Taken.
163: Tue Dec 06 11:16:47 2005 => Entry "HKCR\TypeLib\{7730E782-A89A-11D3-9982-0060B088BBCA}" refers to invalid object "C:\Programme\AOL 9.0\Media\NmpX\nmpx.dll". Action Taken: No Action Taken.
164: Tue Dec 06 11:16:47 2005 => Entry "HKCR\TypeLib\{79C10055-C1B5-4754-AC44-003784AA3A44}" refers to invalid object "C:\PROGRA~1\GEMEIN~1\aolshare\pictures\YGPPIC~3.DLL". Action Taken: No Action Taken.
165: Tue Dec 06 11:16:47 2005 => Entry "HKCR\TypeLib\{8BBDA247-CE76-11D3-A2CE-00108335731F}" refers to invalid object "C:\Programme\AOL 9.0\MIMEHook.dll". Action Taken: No Action Taken.
166: Tue Dec 06 11:16:47 2005 => Entry "HKCR\TypeLib\{8D66A700-5DF0-4706-9ACA-FEB467A7A853}" refers to invalid object "C:\Programme\AOL 9.0\Media\Ares.dll". Action Taken: No Action Taken.
167: Tue Dec 06 11:16:47 2005 => Entry "HKCR\TypeLib\{A0739880-6BF8-11D6-A10D-0010A49A288A}" refers to invalid object "C:\Programme\AOL 9.0\waol.exe". Action Taken: No Action Taken.
168: Tue Dec 06 11:16:47 2005 => Entry "HKCR\TypeLib\{C1A8AF28-1257-101B-8FB0-0020AF039CA3}" refers to invalid object "D:\PROGRAM\32\mci32.ocx". Action Taken: No Action Taken.
169: Tue Dec 06 11:16:47 2005 => Entry "HKCR\TypeLib\{CC491105-58FA-437F-A1CE-CC947B6AFE4F}" refers to invalid object "C:\Programme\AOL 9.0\ae.dll". Action Taken: No Action Taken.
170: Tue Dec 06 11:16:47 2005 => Entry "HKCR\TypeLib\{CC93F1C8-BAE8-11D4-BB7E-00E0290BFBAA}" refers to invalid object "C:\Programme\Gemeinsame Dateien\fun communications\funIntegCheck.dll". Action Taken: No Action Taken.
171: Tue Dec 06 11:16:47 2005 => Entry "HKCR\TypeLib\{DA2FAE70-6518-4700-A264-3500A380F695}" refers to invalid object "C:\Programme\AOL 9.0\abui.dll". Action Taken: No Action Taken.
172: Tue Dec 06 11:16:47 2005 => Entry "HKCR\TypeLib\{DCB43485-19FB-4D6D-BB3D-73C7F48D5F00}" refers to invalid object "C:\Programme\Messenger\rtcimsp.dll". Action Taken: No Action Taken.
173: Tue Dec 06 11:16:47 2005 => Entry "HKCR\TypeLib\{DCCAF17F-7581-4C86-9867-56D9405FAC3F}" refers to invalid object "C:\Programme\AOL 9.0\Media\Pathfinder.dll". Action Taken: No Action Taken.
174: Tue Dec 06 11:16:47 2005 => Entry "HKCR\TypeLib\{DD3FCE4D-8442-4EFA-A71E-1C131F502F4A}" refers to invalid object "C:\PROGRA~1\GEMEIN~1\aol\SCREEN~1\YGPSCR~1.DLL". Action Taken: No Action Taken.
175: Tue Dec 06 11:16:47 2005 => Entry "HKCR\TypeLib\{E3852602-B619-11D6-94EC-00047521F020}" refers to invalid object "C:\Programme\AOL 9.0\Media\NmpXChat\nmpxchat.dll". Action Taken: No Action Taken.
176: Tue Dec 06 11:16:47 2005 => Entry "HKCR\TypeLib\{E86F5307-002B-49A2-89C4-0784C44052C4}" refers to invalid object "C:\Programme\AOL 9.0\AMH.dll". Action Taken: No Action Taken.
177: Tue Dec 06 11:16:47 2005 => Entry "HKCR\TypeLib\{ECAD18F1-CA65-11D6-8A1B-00E029570A3E}" refers to invalid object "C:\Programme\AOL 9.0\sa.dll". Action Taken: No Action Taken.
178: Tue Dec 06 11:16:47 2005 => Entry "HKCR\TypeLib\{F3F0828C-B57B-4E38-8014-7F3B3941B6FD}" refers to invalid object "C:\Programme\Gemeinsame Dateien\fun communications\funAd.dll". Action Taken: No Action Taken.
179: Tue Dec 06 11:16:48 2005 => Entry "HKCR\.sll" refers to invalid object "SSLFile". Action Taken: No Action Taken.
180: Tue Dec 06 11:16:48 2005 => Entry "HKCR\Alg.AlgSetup" refers to invalid object "{27D0BCCC-344D-4287-AF37-0C72C161C14C}". Action Taken: No Action Taken.
181: Tue Dec 06 11:16:48 2005 => Entry "HKCR\Alg.AlgSetup.1" refers to invalid object "{27D0BCCC-344D-4287-AF37-0C72C161C14C}". Action Taken: No Action Taken.
182: Tue Dec 06 11:16:48 2005 => Entry "HKCR\AOLCoach.TrainerOCXCtrl.10" refers to invalid object "{E04EAE82-14AD-41CB-BF5A-45556ABB8347}". Action Taken: No Action Taken.
183: Tue Dec 06 11:16:48 2005 => Entry "HKCR\bwpfile\shell\open\command" refers to invalid object "C:\Programme\Desktop Messenger\8876480\6.1.0.155-8876480L\Program\PrvCnt.exe "%1"". Action Taken: No Action Taken.
184: Tue Dec 06 11:16:48 2005 => Entry "HKCR\CoachDM.WebCoachDownload" refers to invalid object "{E04EAE82-14AD-41CB-BF5A-45556ABB8347}". Action Taken: No Action Taken.
185: Tue Dec 06 11:16:48 2005 => Entry "HKCR\CoachDM.WebCoachDownload.1" refers to invalid object "{E04EAE82-14AD-41CB-BF5A-45556ABB8347}". Action Taken: No Action Taken.
186: Tue Dec 06 11:16:49 2005 => Entry "HKCR\Connection Manager Profile\shell\open\command" refers to invalid object "C:\WINDOWS\System32\CMMGR32.EXE "%1"". Action Taken: No Action Taken.
187: Tue Dec 06 11:16:49 2005 => Entry "HKCR\funBanking\shell\open\command" refers to invalid object "C:\Programme\T-Online\T-Online_Software_5\Banking\Banking.exe %1". Action Taken: No Action Taken.
188: Tue Dec 06 11:16:49 2005 => Entry "HKCR\LxkPhotoEditor6.Document\shell\open\command" refers to invalid object "C:\PROGRA~1\LEXMAR~1\lxbkvb.exe "%1"". Action Taken: No Action Taken.
189: Tue Dec 06 11:16:49 2005 => Entry "HKCR\MailFileAtt" refers to invalid object "{00020D05-0000-0000-C000-000000000046}". Action Taken: No Action Taken.
190: Tue Dec 06 11:16:49 2005 => Entry "HKCR\mapifvbx.object" refers to invalid object "{41116C00-8B90-101B-96CD-00AA003B14FC}". Action Taken: No Action Taken.
191: Tue Dec 06 11:16:49 2005 => Entry "HKCR\mapifvbx.object.1" refers to invalid object "{41116C00-8B90-101B-96CD-00AA003B14FC}". Action Taken: No Action Taken.
192: Tue Dec 06 11:16:50 2005 => Entry "HKCR\msbackupfile\shell\open\command" refers to invalid object "%SystemRoot%\system32\ntbackup.exe". Action Taken: No Action Taken.
193: Tue Dec 06 11:16:50 2005 => Entry "HKCR\Plenoptic.Plenoptic" refers to invalid object "{607C27E9-AB27-11d3-A116-A0EA50C10801}". Action Taken: No Action Taken.
194: Tue Dec 06 11:16:50 2005 => Entry "HKCR\Plenoptic.Plenoptic.1" refers to invalid object "{607C27E9-AB27-11d3-A116-A0EA50C10801}". Action Taken: No Action Taken.
195: Tue Dec 06 11:16:51 2005 => Entry "HKCR\ppifile\shell\open\command" refers to invalid object "%SystemRoot%\System32\msppcnfg.exe /Config %1". Action Taken: No Action Taken.
196: Tue Dec 06 11:16:51 2005 => Entry "HKCR\RTCCore.RTCClient" refers to invalid object "{7a42ea29-a2b7-40c4-b091-f6f024aa89be}". Action Taken: No Action Taken.
197: Tue Dec 06 11:16:51 2005 => Entry "HKCR\RTCCore.RTCClient.1" refers to invalid object "{7a42ea29-a2b7-40c4-b091-f6f024aa89be}". Action Taken: No Action Taken.
198: Tue Dec 06 11:16:51 2005 => Entry "HKCR\SymWriter.pdb" refers to invalid object "{520DC67A-752E-11D3-8D56-00C04F680B2B}". Action Taken: No Action Taken.
199: Tue Dec 06 11:16:51 2005 => Entry "HKCR\uipfile\shell\open\command" refers to invalid object "C:\Programme\CyberLink\Common\updateipr.exe "%l"". Action Taken: No Action Taken.
200: Tue Dec 06 11:16:51 2005 => Entry "HKCR\WMPPublsihCntr.WMPPublsihCntr" refers to invalid object "{939438A9-CF0F-44d8-9140-599736F0D3A2}". Action Taken: No Action Taken.
201: Tue Dec 06 11:16:51 2005 => Entry "HKCR\WMPPublsihCntr.WMPPublsihCntr.1" refers to invalid object "{939438A9-CF0F-44d8-9140-599736F0D3A2}". Action Taken: No Action Taken.
--------------------------------------------------
-------- DATEIEN ZUM LÖSCHEN HINZUGEFÜGT ---------
--------------------------------------------------
1: C:\WINDOWS\system32\wiwshost.exe => Email-Worm.Win32.Bagle.cg
2: C:\DOKUME~1\Assalieh\LOKALE~1\Temp\Temporäres Verzeichnis 1 für Beach.zip\1212.exe => Email-Worm.Win32.Bagle.cg
3: C:\Dokumente und Einstellungen\Assalieh\Lokale Einstellungen\Temp\Temporäres Verzeichnis 1 für Beach.zip\1212.exe => Email-Worm.Win32.Bagle.cg
4: C:\System Volume Information\_restore{422E174A-82CA-4E18-AB3E-652F7620202A}\RP158\A0148397.exe => Email-Worm.Win32.Bagle.cg
5: C:\System Volume Information\_restore{422E174A-82CA-4E18-AB3E-652F7620202A}\RP158\A0148399.exe => Email-Worm.Win32.Bagle.cg
6: C:\System Volume Information\_restore{422E174A-82CA-4E18-AB3E-652F7620202A}\RP159\A0149397.exe => Email-Worm.Win32.Bagle.cg
7: C:\System Volume Information\_restore{422E174A-82CA-4E18-AB3E-652F7620202A}\RP159\A0149399.exe => Email-Worm.Win32.Bagle.cg
8: C:\System Volume Information\_restore{422E174A-82CA-4E18-AB3E-652F7620202A}\RP160\A0150397.exe => Email-Worm.Win32.Bagle.cg
9: C:\System Volume Information\_restore{422E174A-82CA-4E18-AB3E-652F7620202A}\RP160\A0150398.exe => Email-Worm.Win32.Bagle.cg
10: C:\System Volume Information\_restore{422E174A-82CA-4E18-AB3E-652F7620202A}\RP161\A0151397.exe => Email-Worm.Win32.Bagle.cg
11: C:\System Volume Information\_restore{422E174A-82CA-4E18-AB3E-652F7620202A}\RP161\A0151398.exe => Email-Worm.Win32.Bagle.cg
12: C:\System Volume Information\_restore{422E174A-82CA-4E18-AB3E-652F7620202A}\RP161\A0152397.exe => Email-Worm.Win32.Bagle.cg
13: C:\System Volume Information\_restore{422E174A-82CA-4E18-AB3E-652F7620202A}\RP161\A0152398.exe => Email-Worm.Win32.Bagle.cg
14: C:\System Volume Information\_restore{422E174A-82CA-4E18-AB3E-652F7620202A}\RP162\A0153397.exe => Email-Worm.Win32.Bagle.cg
15: C:\System Volume Information\_restore{422E174A-82CA-4E18-AB3E-652F7620202A}\RP163\A0153474.exe => Email-Worm.Win32.Bagle.cg
16: C:\System Volume Information\_restore{422E174A-82CA-4E18-AB3E-652F7620202A}\RP163\A0153475.exe => Email-Worm.Win32.Bagle.cg
17: C:\System Volume Information\_restore{422E174A-82CA-4E18-AB3E-652F7620202A}\RP163\A0154473.exe => Email-Worm.Win32.Bagle.cg
18: C:\System Volume Information\_restore{422E174A-82CA-4E18-AB3E-652F7620202A}\RP163\A0154474.exe => Email-Worm.Win32.Bagle.cg
19: C:\System Volume Information\_restore{422E174A-82CA-4E18-AB3E-652F7620202A}\RP164\A0154507.exe => Email-Worm.Win32.Bagle.cg
20: C:\System Volume Information\_restore{422E174A-82CA-4E18-AB3E-652F7620202A}\RP164\A0154508.exe => Email-Worm.Win32.Bagle.cg
21: C:\System Volume Information\_restore{422E174A-82CA-4E18-AB3E-652F7620202A}\RP165\A0154521.exe => Email-Worm.Win32.Bagle.cg
--------------------------------------------------
-------------------- Statistik -------------------
--------------------------------------------------
Tue Dec 06 12:13:55 2005 => Total Objects Scanned: 73728
Tue Dec 06 12:13:55 2005 => Total Virus(es) Found: 42
Tue Dec 06 12:13:55 2005 => Total Errors: 201
Tue Dec 06 12:13:55 2005 => Virus Database Date: 2005/12/02
Tue Dec 06 12:13:55 2005 => Virus Database Count: 162781
Tue Dec 06 13:21:49 2005 => Total Objects Scanned: 73728
Tue Dec 06 13:21:49 2005 => Total Virus(es) Found: 42
Tue Dec 06 13:21:49 2005 => Total Errors: 201
Warum kostenlos registrieren?
Nur als registriertes Mitglied hast Du vollen Zugriff auf alle Funktionen unserer Website. So kannst Du eigene Fragen stellen und hast die volle Übersicht über neue interessante Themen im Forum.
Jetzt kostenlos registrieren.
Login
unbekannte Spyware Hilfeeeeeeeeeeeee
8 Beiträge • Seite 1 von 1
Hi!
Systemwiederherstellung deaktivieren und dann, wie in meiner Anleitung beschrieben, mit escancheck die infizierten Dateien loeschen. http://yourhighness.eddys-domain.de/escan.html
Systemwiederherstellung deaktivieren und dann, wie in meiner Anleitung beschrieben, mit escancheck die infizierten Dateien loeschen. http://yourhighness.eddys-domain.de/escan.html
- Yourhighness
Habs mit dem Ewido probiert und es hat geklappt
Danke nochmals... MfG hatus
---------------------------------------------------------
ewido security suite - Scan Report
---------------------------------------------------------
+ Erstellt am: 17:25:29, 08.12.2005
+ Report-Checksumme: E37B5230
+ Scanergebnis:
C:\escheck\ECBackup\1212.exe.bkp -> Worm.Bagle.cg : Gesäubert mit Backup
C:\escheck\ECBackup\a0149397.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\escheck\ECBackup\a0149399.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\escheck\ECBackup\a0150397.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\escheck\ECBackup\a0150398.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\escheck\ECBackup\a0151397.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\escheck\ECBackup\a0151398.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\escheck\ECBackup\a0152397.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\escheck\ECBackup\a0152398.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\escheck\ECBackup\a0153397.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\escheck\ECBackup\a0153474.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\escheck\ECBackup\a0153475.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\escheck\ECBackup\a0154473.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\escheck\ECBackup\a0154474.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\escheck\ECBackup\a0154507.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\escheck\ECBackup\a0154508.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\escheck\ECBackup\a0154521.exe.bkp -> Worm.Bagle.cg : Gesäubert mit Backup
C:\escheck\ECBackup\wiwshost.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\Programme\Armor2net\Armor2net Personal Firewall\KP\assalieh@uni.valueclick[1].txte -> Spyware.Cookie.Valueclick : Gesäubert mit Backup
C:\Programme\Armor2net\Armor2net Personal Firewall\KP\assalieh@valueclick[1].txte -> Spyware.Cookie.Valueclick : Gesäubert mit Backup
C:\Programme\Symantec\LiveUpdate\LUALL.EXE -> Worm.Sober.y : Gesäubert mit Backup
C:\RECYCLER\S-1-5-21-3315244459-2709343675-656469670-1005\Dc17\1212.exe.bkp -> Worm.Bagle.cg : Gesäubert mit Backup
C:\RECYCLER\S-1-5-21-3315244459-2709343675-656469670-1005\Dc17\a0149397.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\RECYCLER\S-1-5-21-3315244459-2709343675-656469670-1005\Dc17\a0149399.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\RECYCLER\S-1-5-21-3315244459-2709343675-656469670-1005\Dc17\a0150397.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\RECYCLER\S-1-5-21-3315244459-2709343675-656469670-1005\Dc17\a0150398.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\RECYCLER\S-1-5-21-3315244459-2709343675-656469670-1005\Dc17\a0151397.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\RECYCLER\S-1-5-21-3315244459-2709343675-656469670-1005\Dc17\a0151398.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\RECYCLER\S-1-5-21-3315244459-2709343675-656469670-1005\Dc17\a0152397.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\RECYCLER\S-1-5-21-3315244459-2709343675-656469670-1005\Dc17\a0152398.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\RECYCLER\S-1-5-21-3315244459-2709343675-656469670-1005\Dc17\a0153397.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\RECYCLER\S-1-5-21-3315244459-2709343675-656469670-1005\Dc17\a0153474.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\RECYCLER\S-1-5-21-3315244459-2709343675-656469670-1005\Dc17\a0153475.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\RECYCLER\S-1-5-21-3315244459-2709343675-656469670-1005\Dc17\a0154473.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\RECYCLER\S-1-5-21-3315244459-2709343675-656469670-1005\Dc17\a0154474.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\RECYCLER\S-1-5-21-3315244459-2709343675-656469670-1005\Dc17\a0154507.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\RECYCLER\S-1-5-21-3315244459-2709343675-656469670-1005\Dc17\a0154508.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\RECYCLER\S-1-5-21-3315244459-2709343675-656469670-1005\Dc17\a0154521.exe.bkp -> Worm.Bagle.cg : Gesäubert mit Backup
C:\RECYCLER\S-1-5-21-3315244459-2709343675-656469670-1005\Dc17\wiwshost.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\WINDOWS\WinSecurity\csrss.exe -> Worm.Sober.y : Gesäubert mit Backup
C:\WINDOWS\WinSecurity\services.exe -> Worm.Sober.y : Gesäubert mit Backup
C:\WINDOWS\WinSecurity\smss.exe -> Worm.Sober.y : Gesäubert mit Backup
::Report Ende
Danke nochmals... MfG hatus
---------------------------------------------------------
ewido security suite - Scan Report
---------------------------------------------------------
+ Erstellt am: 17:25:29, 08.12.2005
+ Report-Checksumme: E37B5230
+ Scanergebnis:
C:\escheck\ECBackup\1212.exe.bkp -> Worm.Bagle.cg : Gesäubert mit Backup
C:\escheck\ECBackup\a0149397.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\escheck\ECBackup\a0149399.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\escheck\ECBackup\a0150397.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\escheck\ECBackup\a0150398.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\escheck\ECBackup\a0151397.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\escheck\ECBackup\a0151398.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\escheck\ECBackup\a0152397.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\escheck\ECBackup\a0152398.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\escheck\ECBackup\a0153397.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\escheck\ECBackup\a0153474.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\escheck\ECBackup\a0153475.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\escheck\ECBackup\a0154473.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\escheck\ECBackup\a0154474.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\escheck\ECBackup\a0154507.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\escheck\ECBackup\a0154508.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\escheck\ECBackup\a0154521.exe.bkp -> Worm.Bagle.cg : Gesäubert mit Backup
C:\escheck\ECBackup\wiwshost.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\Programme\Armor2net\Armor2net Personal Firewall\KP\assalieh@uni.valueclick[1].txte -> Spyware.Cookie.Valueclick : Gesäubert mit Backup
C:\Programme\Armor2net\Armor2net Personal Firewall\KP\assalieh@valueclick[1].txte -> Spyware.Cookie.Valueclick : Gesäubert mit Backup
C:\Programme\Symantec\LiveUpdate\LUALL.EXE -> Worm.Sober.y : Gesäubert mit Backup
C:\RECYCLER\S-1-5-21-3315244459-2709343675-656469670-1005\Dc17\1212.exe.bkp -> Worm.Bagle.cg : Gesäubert mit Backup
C:\RECYCLER\S-1-5-21-3315244459-2709343675-656469670-1005\Dc17\a0149397.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\RECYCLER\S-1-5-21-3315244459-2709343675-656469670-1005\Dc17\a0149399.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\RECYCLER\S-1-5-21-3315244459-2709343675-656469670-1005\Dc17\a0150397.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\RECYCLER\S-1-5-21-3315244459-2709343675-656469670-1005\Dc17\a0150398.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\RECYCLER\S-1-5-21-3315244459-2709343675-656469670-1005\Dc17\a0151397.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\RECYCLER\S-1-5-21-3315244459-2709343675-656469670-1005\Dc17\a0151398.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\RECYCLER\S-1-5-21-3315244459-2709343675-656469670-1005\Dc17\a0152397.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\RECYCLER\S-1-5-21-3315244459-2709343675-656469670-1005\Dc17\a0152398.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\RECYCLER\S-1-5-21-3315244459-2709343675-656469670-1005\Dc17\a0153397.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\RECYCLER\S-1-5-21-3315244459-2709343675-656469670-1005\Dc17\a0153474.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\RECYCLER\S-1-5-21-3315244459-2709343675-656469670-1005\Dc17\a0153475.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\RECYCLER\S-1-5-21-3315244459-2709343675-656469670-1005\Dc17\a0154473.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\RECYCLER\S-1-5-21-3315244459-2709343675-656469670-1005\Dc17\a0154474.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\RECYCLER\S-1-5-21-3315244459-2709343675-656469670-1005\Dc17\a0154507.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\RECYCLER\S-1-5-21-3315244459-2709343675-656469670-1005\Dc17\a0154508.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\RECYCLER\S-1-5-21-3315244459-2709343675-656469670-1005\Dc17\a0154521.exe.bkp -> Worm.Bagle.cg : Gesäubert mit Backup
C:\RECYCLER\S-1-5-21-3315244459-2709343675-656469670-1005\Dc17\wiwshost.exe.bkp -> Worm.Bagle.cl : Gesäubert mit Backup
C:\WINDOWS\WinSecurity\csrss.exe -> Worm.Sober.y : Gesäubert mit Backup
C:\WINDOWS\WinSecurity\services.exe -> Worm.Sober.y : Gesäubert mit Backup
C:\WINDOWS\WinSecurity\smss.exe -> Worm.Sober.y : Gesäubert mit Backup
::Report Ende
- hatus
- Beiträge: 7
- Registriert: 23.06.2005, 21:26
Hm ist wirklich alles in Ordnung...?
Ist jetzt alles wieder Ok?
Ich weiß nicht, aber der PC läuft jetzt besser. Muss ich denn noch was machen...?
...naja ich danke Euch Yourhighness und Holy Marcell für eure Hilfe. MfG hatus
...naja ich danke Euch Yourhighness und Holy Marcell für eure Hilfe. MfG hatus
- hatus
- Beiträge: 7
- Registriert: 23.06.2005, 21:26
8 Beiträge • Seite 1 von 1
Ähnliche Themen
| Spyware/Adware Forum: Online- und PC-Sicherheit Autor: hotzlmo Antworten: |
Unbekannte Töne auf meinem PC! Forum: Online- und PC-Sicherheit Autor: vince clark Antworten: |
spyware Forum: Online- und PC-Sicherheit Autor: darwin Antworten: |
spyware und Startseiten Problem Forum: DFÜ, Netzwerk, Internet Autor: sharky2232e Antworten: |
Spyware!?! Forum: Online- und PC-Sicherheit Autor: Wendigo Antworten: |
Zurück zu Online- und PC-Sicherheit
Wer ist online?
Mitglieder in diesem Forum: 0 Mitglieder und 0 Gäste