Warum kostenlos registrieren?

Nur als registriertes Mitglied hast Du vollen Zugriff auf alle Funktionen unserer Website. So kannst Du eigene Fragen stellen und hast die volle Übersicht über neue interessante Themen im Forum.
Jetzt kostenlos registrieren.

Login


Virus? Probleme mit Internet und System

Warnungen vor Sicherheitslücken und Hilfe beim Enfernen von Viren, Würmern und Trojanern.

Virus? Probleme mit Internet und System

Beitragvon tregger am 26.02.2007, 13:57

Hallo Zusammen,

habe seit einiger Zeit echt Probleme mit meinem PC :-(

Problemauflistung:
- Explorer oder Firefox rufen super langsam Seiten auf oder stürzen
regelmäßig ab
- beim Explorer passiert es auch immer das wenn ich über Google links
anklicke ich ständig zu anderen Seiten weitergeleitet werde
- Outlook ging praktisch garnet mehr
- Datei-Explorer stürzt gelegentlich auch ab
- usw....

Da ich net so der experte bin dachte ich probier es mal auf diesem
Weg.

Habe mal dieses Programm "highjackthis" drüber laufen lassen:

Logfile of HijackThis v1.99.1
Scan saved at 12:18:39, on 17.02.2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)


Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\brsvc01a.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\brss01a.exe
C:\WINDOWS\Explorer.EXE
C:\Programme\AntiVir PersonalEdition Classic\sched.exe
C:\WINDOWS\system32\Brmfrmps.exe
C:\Programme\Gemeinsame Dateien\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\system32\ssoftsrv.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\wanmpsvc.exe
C:\Programme\Gemeinsame Dateien\Symantec Shared\Security
Center\SymWSC.exe
C:\WINDOWS\htpatch.exe
C:\Programme\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Programme\Gemeinsame Dateien\Microsoft Shared\Works
Shared\WkUFind.exe
C:\WINDOWS\Dit.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Programme\Microsoft ActiveSync\wcescomm.exe
C:\PROGRA~1\MI3AA1~1\rapimgr.exe
C:\WINDOWS\DitExp.exe
C:\WINDOWS\System32\svchost.exe
C:\Programme\AntiVir PersonalEdition Classic\avgnt.exe
C:\Programme\AxBx\VirusKeeper 2007 Pro Probeversion\vk_scan.exe
C:\Programme\Mozilla Firefox\firefox.exe
C:\Programme\WinRAR\WinRAR.exe
C:\DOKUME~1\Tobi\LOKALE~1\Temp\Rar$EX00.578\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.de/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://red.clientapps.yahoo.com/customi ... earch.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title =
Arcor AG & Co. KG
R3 - Default URLSearchHook is missing
O2 - BHO: AcroIEHlprObj Class -
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Adobe\Acrobat
7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Class - {22A8FFE2-0851-E8ED-7FDF-8A07F36F6D3D} -
C:\WINDOWS\eowla1.dll (file missing)
O4 - HKLM\..\Run: [HTpatch] C:\WINDOWS\htpatch.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Programme\ATI Technologies\ATI Control
Panel\atiptaxx.exe
O4 - HKLM\..\Run: [Microsoft Works Update Detection]
C:\Programme\Gemeinsame Dateien\Microsoft Shared\Works
Shared\WkUFind.exe
O4 - HKLM\..\Run: [Dit] Dit.exe
O4 - HKLM\..\Run: [HPDJ Taskbar Utility]
C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb11.exe
O4 - HKLM\..\Run: [dmgjq.exe] C:\WINDOWS\system32\dmgjq.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Programme\Microsoft
ActiveSync\wcescomm.exe"
O4 - Global Startup: Microsoft Office.lnk = C:\Programme\Microsoft
Office\Office10\OSA.EXE
O8 - Extra context menu item: &Search -
http://kp.bar.need2find.com/KP/menusearch.html?p=KP
O8 - Extra context menu item: Nach Microsoft &Excel exportieren -
res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501}
- C:\Programme\Java\jre1.5.0_05\bin\npjpi150_05.dll
O9 - Extra 'Tools' menuitem: Sun Java Konsole -
{08B0E5C0-4FCB-11CF-AAA5-00401C608501} -
C:\Programme\Java\jre1.5.0_05\bin\npjpi150_05.dll
O9 - Extra button: Create Mobile Favorite -
{2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} -
C:\PROGRA~1\MI3AA1~1\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F}
- C:\PROGRA~1\MI3AA1~1\INetRepl.dll
O9 - Extra 'Tools' menuitem: Mobilen Favoriten erstellen... -
{2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} -
C:\PROGRA~1\MI3AA1~1\INetRepl.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66}
- %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8
- {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe
(file missing)
O9 - Extra button: PartyPoker.com -
{B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} -
C:\Programme\PartyGaming\PartyPoker\RunApp.exe
O9 - Extra 'Tools' menuitem: PartyPoker.com -
{B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} -
C:\Programme\PartyGaming\PartyPoker\RunApp.exe
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9}
- C:\Programme\ICQLite\ICQLite.exe
O9 - Extra 'Tools' menuitem: ICQ Lite -
{B863453A-26C3-4e1f-A54D-A2CD196348E9} -
C:\Programme\ICQLite\ICQLite.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE}
- C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683}
- C:\Programme\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger -
{FB5F1910-F110-11d2-BB9E-00C04F795683} -
C:\Programme\Messenger\msmsgs.exe
O9 - Extra button: MedionShop -
{01E9CF82-AE9D-42BA-A629-B23D51A4B86B} - http://www.medionshop.de/
(file missing) (HKCU)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine
Advantage Validation Tool) -
http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl
Class) -
http://tools.ebayimg.com/eps/wl/activex ... 0-3-30.cab
O16 - DPF: {79312BD7-AB1A-4730-829F-F43C984D0A9D} (ACNSTAT Class) -
http://www.ctsunion.com/cts.cab
O16 - DPF: {B08F5C7D-E7B8-40EF-A238-3B0D5259D336} -
http://uv97vqm3.com/0b5eb2e3/sm/10028/1 ... Access.cab
O16 - DPF: {B9191F79-5613-4C76-AA2A-398534BB8999} -
http://us.dl1.yimg.com/download.yahoo.c ... mplete.cab
O16 - DPF: {E55FD215-A32E-43FE-A777-A7E8F165F551} (Flatcast Viewer
4.15) - http://www.flatcast.com/de/download/NpFv415.dll
O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control
4.5) - http://chat.msn.com/controls/msnchat45.cab
O16 - DPF: {FDDBE2B8-6602-4AD8-946D-94C5A32FA6C5} (GameDesire
Snooker) - http://67.15.101.3/g_bin/eng/snooker_2_0_0_29.cab
O17 -
HKLM\System\CCS\Services\Tcpip\..\{13C9FBEB-F2C8-46DC-AE86-AEB59B968791}:
NameServer = 85.255.114.88,85.255.112.72
O17 -
HKLM\System\CCS\Services\Tcpip\..\{EBD348C5-A6B5-4E65-9EED-0CDAFA1BA27C}:
NameServer = 85.255.114.88,85.255.112.72
O17 -
HKLM\System\CCS\Services\Tcpip\..\{FC9D6DBD-8806-4FEE-A7F8-F71F0E0245B8}:
NameServer = 85.255.114.88,85.255.112.72
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer =
85.255.114.88 85.255.112.72
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer =
85.255.114.88 85.255.112.72
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} -
"C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O18 - Filter: text/html - (no CLSID) - (no file)
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O20 - Winlogon Notify: WRNotifier - WRLogonNTF.dll (file missing)
O23 - Service: AntiVir PersonalEdition Classic Planer
(AntiVirScheduler) - Avira GmbH - C:\Programme\AntiVir
PersonalEdition Classic\sched.exe
O23 - Service: Brother Popup Suspend service for Resource manager
(brmfrmps) - Unknown owner - C:\WINDOWS\system32\Brmfrmps.exe"
-service (file missing)
O23 - Service: BrSplService (Brother XP spl Service) - brother
Industries Ltd - C:\WINDOWS\system32\brsvc01a.exe
O23 - Service: iPod Service - Apple Computer, Inc. -
C:\Programme\iPod\bin\iPodService.exe
O23 - Service: ServiceLayer - Nokia. - C:\Programme\Gemeinsame
Dateien\PCSuite\Services\ServiceLayer.exe
O23 - Service: Cryptainer service (ssoftservice) - Cypherix -
C:\WINDOWS\SYSTEM32\ssoftsrv.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation -
C:\Programme\Gemeinsame Dateien\Symantec Shared\Security
Center\SymWSC.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) -
America Online, Inc. - C:\WINDOWS\wanmpsvc.exe
O23 - Service: X10 Device Network Service (x10nets) - X10 -
C:\PROGRA~1\COMMON~1\X10\Common\x10nets.exe

Hoffe Ihr könnt mehr damit anfangen als ich!?!

Als dann Danke schonmal im Voraus!

Gruß Tobias
tregger
 
Beiträge: 32
Registriert: 05.10.2005, 14:55


Beitragvon BlueScreen-Bertrand am 26.02.2007, 18:21

Aua.

Du hast eine Menge Trojanischer Pferde auf deinem Rechner. Am besten lädst du dir AVG Anti-Spyware runter: http://www.ewido.net/de/
Installiere das Programm.

Starte Windows im abgesicherten Modus: http://www.madeonapc.de/kb/048/default.php
Und führe eine vollständige Überprüfung mit AVG Antispyware durch. Dateien, die das Programm nicht löscht, kannst du beim nächsten Neustart entfernen lassen (dazu auf den Link hinter dem Eintrag klicken und auswählen).

Erstelle danach ein neues Logfile mit HijackThis.
BlueScreen-Bertrand
Moderator
 
Beiträge: 11605
Registriert: 28.11.2005, 19:01
Wohnort: Waldshut-Tiengen

Anweisungen gefolgt hier die neue Auflistung von hijackthis

Beitragvon tregger am 26.02.2007, 22:40

Logfile of HijackThis v1.99.1
Scan saved at 21:32:07, on 17.02.2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\brsvc01a.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\brss01a.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\Brmfrmps.exe
C:\Programme\Gemeinsame Dateien\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\htpatch.exe
C:\Programme\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Programme\Gemeinsame Dateien\Microsoft Shared\Works Shared\WkUFind.exe
C:\WINDOWS\Dit.exe
C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb11.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Programme\Microsoft ActiveSync\wcescomm.exe
C:\Programme\Panda Software\Panda Antivirus 2007\PsCtrls.exe
C:\Programme\Panda Software\Panda Antivirus 2007\pavsrv51.exe
C:\Programme\Panda Software\Panda Antivirus 2007\AVENGINE.EXE
C:\Programme\Panda Software\Panda Antivirus 2007\PsImSvc.exe
C:\PROGRA~1\MI3AA1~1\rapimgr.exe
C:\WINDOWS\system32\ssoftsrv.exe
C:\WINDOWS\DitExp.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\wanmpsvc.exe
C:\Programme\Gemeinsame Dateien\Symantec Shared\Security Center\SymWSC.exe
C:\WINDOWS\System32\svchost.exe
C:\DOKUME~1\Tobi\LOKALE~1\Temp\Rar$EX00.344\HijackThis.exe
C:\Programme\Internet Explorer\iexplore.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.de/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/customi ... earch.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Arcor AG & Co. KG
R3 - Default URLSearchHook is missing
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Class - {22A8FFE2-0851-E8ED-7FDF-8A07F36F6D3D} - C:\WINDOWS\eowla1.dll (file missing)
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O4 - HKLM\..\Run: [HTpatch] C:\WINDOWS\htpatch.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Programme\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Programme\Gemeinsame Dateien\Microsoft Shared\Works Shared\WkUFind.exe
O4 - HKLM\..\Run: [Dit] Dit.exe
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb11.exe
O4 - HKLM\..\Run: [LanzarL2007] "C:\DOKUME~1\Tobi\LOKALE~1\Temp\{02C93AA7-44F3-44E5-9DC1-1B50440205C2}\{D1DA2BA7-2592-4036-9BB2-DCCABDE8DC1A}\..\..\L2007tmp\Setup.exe" /SETUP:"/l0x0007"
O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Programme\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: &Search - http://kp.bar.need2find.com/KP/menusearch.html?p=KP
O8 - Extra context menu item: Nach Microsoft &Excel exportieren - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.5.0_05\bin\npjpi150_05.dll
O9 - Extra 'Tools' menuitem: Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.5.0_05\bin\npjpi150_05.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
O9 - Extra 'Tools' menuitem: Mobilen Favoriten erstellen... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Programme\PartyGaming\PartyPoker\RunApp.exe
O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Programme\PartyGaming\PartyPoker\RunApp.exe
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Programme\ICQLite\ICQLite.exe
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Programme\ICQLite\ICQLite.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
O9 - Extra button: MedionShop - {01E9CF82-AE9D-42BA-A629-B23D51A4B86B} - http://www.medionshop.de/ (file missing) (HKCU)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/activex ... 0-3-30.cab
O16 - DPF: {79312BD7-AB1A-4730-829F-F43C984D0A9D} (ACNSTAT Class) - http://www.ctsunion.com/cts.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan ... asinst.cab
O16 - DPF: {B08F5C7D-E7B8-40EF-A238-3B0D5259D336} - http://uv97vqm3.com/0b5eb2e3/sm/10028/1 ... Access.cab
O16 - DPF: {B9191F79-5613-4C76-AA2A-398534BB8999} - http://us.dl1.yimg.com/download.yahoo.c ... mplete.cab
O16 - DPF: {E55FD215-A32E-43FE-A777-A7E8F165F551} (Flatcast Viewer 4.15) - http://www.flatcast.com/de/download/NpFv415.dll
O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://chat.msn.com/controls/msnchat45.cab
O16 - DPF: {FDDBE2B8-6602-4AD8-946D-94C5A32FA6C5} (GameDesire Snooker) - http://67.15.101.3/g_bin/eng/snooker_2_0_0_29.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O18 - Filter: text/html - (no CLSID) - (no file)
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O20 - Winlogon Notify: WRNotifier - WRLogonNTF.dll (file missing)
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Programme\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Brother Popup Suspend service for Resource manager (brmfrmps) - Unknown owner - C:\WINDOWS\system32\Brmfrmps.exe" -service (file missing)
O23 - Service: BrSplService (Brother XP spl Service) - brother Industries Ltd - C:\WINDOWS\system32\brsvc01a.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Programme\iPod\bin\iPodService.exe
O23 - Service: Panda Software Controller - Panda Software International - C:\Programme\Panda Software\Panda Antivirus 2007\PsCtrls.exe
O23 - Service: Panda anti-virus service (PAVSRV) - Panda Software International - C:\Programme\Panda Software\Panda Antivirus 2007\pavsrv51.exe
O23 - Service: Panda IManager Service (PSIMSVC) - Panda Software International - C:\Programme\Panda Software\Panda Antivirus 2007\PsImSvc.exe
O23 - Service: Cryptainer service (ssoftservice) - Cypherix - C:\WINDOWS\SYSTEM32\ssoftsrv.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Programme\Gemeinsame Dateien\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe
O23 - Service: X10 Device Network Service (x10nets) - X10 - C:\PROGRA~1\COMMON~1\X10\Common\x10nets.exe

Habs mit Ad-Aware , Spybot und AVG ausprobiert (im abgesicherten Modus).
Haben auch alle genug gefunden ;-)

Hoffe hat sich was getan!?!

Danke für deine Hilfe!!!

Gruß
tregger
 
Beiträge: 32
Registriert: 05.10.2005, 14:55

Beitragvon gipsy111 am 28.02.2007, 16:28

öffne das HijackThis -- Button "scan" -- vor diese Einträge Häkchen setzen -- Button "Fix checked" -- PC neustarten

R3 - Default URLSearchHook is missing

O2 - BHO: Class - {22A8FFE2-0851-E8ED-7FDF-8A07F36F6D3D} - C:\WINDOWS\eowla1.dll (file missing)
O8 - Extra context menu item: &Search - http://kp.bar.need2find.com/KP/menusearch.html?p=KP

O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)

O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: MedionShop - {01E9CF82-AE9D-42BA-A629-B23D51A4B86B} - http://www.medionshop.de/ (file missing) (HKCU)

O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O18 - Filter: text/html - (no CLSID) - (no file)

O20 - Winlogon Notify: WRNotifier - WRLogonNTF.dll (file missing)

O23 - Service: Brother Popup Suspend service for Resource manager (brmfrmps) - Unknown owner - C:\WINDOWS\system32\Brmfrmps.exe" -service (file missing)

_____________________________________________________________________________________

stelle den CleanUp genauso ein, wie hier angegeben: (+ PC neustarten)
http://virus-protect.org/cleanup.html
_____________________________________________________________________________________

Counterspy
http://virus-protect.org/counterspy.html
Klicke: "Run a Spyware Scan Now"
- nach dem Scan muss man sich entscheiden für:
*Ignore
*Remove
*Quarantaine
wähle immer Remove und starte den PC neu (dann kopiere den Scanreport ab und poste ins Sicherheitsforum)
_____________________________________________________________________________________

Mache bitte ein Scan mit Panda 2007 und poste den hier hinein!
_____________________________________________________________________________________

+
das neue Log vom HijackThis
gipsy111
Moderator
 
Beiträge: 1625
Registriert: 26.12.2005, 18:02
Wohnort: Baden - Württemberg

Scan Reports + HijackThis

Beitragvon tregger am 04.03.2007, 20:33

Hier die vers. Scan Reports:

Counterspy:

Scan History Details
Start Date: 04.03.2007 16:53:44
End Date: 04.03.2007 17:32:56
Total Time: 39 Min 12 Sec
Detected security risks

CasinoOnNet Potentially Unwanted Program more information...
Details: CasinoOnNet is an online gambling application that requires users to download software in order to play.
Status: Deleted

Files detected
C:\Dokumente und Einstellungen\Tobi\Startmenü\Pacific Poker.lnk

Registry entries detected
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\CASINONETINSTALLER
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\CASINONETINSTALLER
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\CASINONETINSTALLER
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\CASINOONNET
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\CASINOONNET\casino
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\CASINOONNET\casino\init
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\CASINOONNET\casino\init
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\CASINOONNET\casino\init
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\CASINOONNET\casino\init
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\CASINOONNET\casino\init
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\CASINOONNET\casino\init
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\CASINOONNET\casino\init
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\CASINOONNET\casino\init
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\CASINOONNET\casino\SDL
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\CASINOONNET\casino\SDL
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\CASINOONNET\casino\SDL
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\CASINOONNET\casino\SETTINGS


KaZaA P2P Program more information...
Details: KaZaA is a peer-to-peer (P2P) application that allows its users to join together in a network via the Internet and share files from each other's hard drives.
Status: Deleted

Files detected
C:\Dokumente und Einstellungen\Tobi\MuSiC\Eigene Dateien\t00Lz\kazaa_setup.exe
C:\PROGRAMME\Kazaa\My Shared Folder\kazaa327_en.exe
C:\PROGRAMME\KAZAA
C:\PROGRAMME\KAZAA\MY SHARED FOLDER

Registry entries detected
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\KAZAA
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\KAZAA\Advanced
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\KAZAA\Advanced
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\KAZAA\Settings
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\KAZAA\Settings
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\KAZAA\Settings
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\KAZAA\Settings
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\KAZAA
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\KAZAA\Transfer
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\KAZAA\Transfer
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\KAZAA\Transfer


Morpheus P2P Program more information...
Details: P2P file sharing program that installs a number of adware programs. Morpheus also displays its own popup advertsing.
Status: Deleted

Registry entries detected
HKEY_LOCAL_MACHINE\Software\Classes\APPID\{C630FBBF-E340-49DF-B4CB-06FB9EE34BB6}
HKEY_LOCAL_MACHINE\Software\Classes\APPID\{C630FBBF-E340-49DF-B4CB-06FB9EE34BB6}


Altnet P2P Networking Low Risk Adware more information...
Details: Altnet P2P Networking is a program that uses peer-to-peer functionality to enable the delivery of content, including advertising, to PC desktops. This content may be used by other programs.
Status: Deleted

Registry entries detected
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\APP MANAGEMENT\ARPCACHE\P2P NETWORKING
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\APP MANAGEMENT\ARPCACHE\P2P NETWORKING
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\APP MANAGEMENT\ARPCACHE\P2P NETWORKING
HKEY_LOCAL_MACHINE\SOFTWARE\P2P NETWORKING
HKEY_LOCAL_MACHINE\SOFTWARE\P2P NETWORKING\Installation History
HKEY_LOCAL_MACHINE\SOFTWARE\P2P NETWORKING\Installation History\Files
HKEY_LOCAL_MACHINE\SOFTWARE\P2P NETWORKING\Installation History\Files
HKEY_LOCAL_MACHINE\SOFTWARE\P2P NETWORKING\Installation History\P2P Chunks
HKEY_LOCAL_MACHINE\SOFTWARE\P2P NETWORKING\Installation History\P2P Chunks


Altnet/Topsearch Browser Plug-in more information...
Details: Altnet/Topsearch is a browser plug-in that acts as search engine for peer-to-peer applications Kazaa and Grokster.
Status: Deleted

Registry entries detected
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{DEF37997-D9C9-4A4B-BF3C-88F99EACEEC2}
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{DEF37997-D9C9-4A4B-BF3C-88F99EACEEC2}
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{DEF37997-D9C9-4A4B-BF3C-88F99EACEEC2}\Implemented Categories
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{DEF37997-D9C9-4A4B-BF3C-88F99EACEEC2}\Implemented Categories\{7DD95801-9882-11CF-9FA9-00AA006C42C4}
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{DEF37997-D9C9-4A4B-BF3C-88F99EACEEC2}\Implemented Categories\{7DD95802-9882-11CF-9FA9-00AA006C42C4}


Twain Tech Adware (General) more information...
Details: Twain-Tech is an adware based Internet Explorer browser helper object that deliver targeted ads based on a user's browsing patters. Twain-Tech does not provide any other relevant purpose other then to display pop-up ads.
Status: Deleted

Files detected
C:\WINDOWS\smdat32m.sys


My Search Bar Potentially Unwanted Program more information...
Details: My Search Bar and the variants "My Way Speedbar" and "My Way Search Assistant", are browser helper objects that allows you to search on multiple search engines.
Status: Deleted

Registry entries detected
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{014DA6C9-189F-421A-88CD-07CFE51CFF10}
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{014DA6C9-189F-421A-88CD-07CFE51CFF10}
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{014DA6C9-189F-421A-88CD-07CFE51CFF10}\InprocServer32
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{014DA6C9-189F-421A-88CD-07CFE51CFF10}\InprocServer32


Altnet Download Manager Low Risk Adware more information...
Details: Altnet Download Manager accompanies Altnet P2P Networking and performs the job of downloading content from Altnet's P2P network.
Status: Deleted

Registry entries detected
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{C15B7EA2-A360-43E8-A591-5FAEDC7C4E1D}
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{C15B7EA2-A360-43E8-A591-5FAEDC7C4E1D}
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{C15B7EA2-A360-43E8-A591-5FAEDC7C4E1D}
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{C15B7EA2-A360-43E8-A591-5FAEDC7C4E1D}\Control
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{C15B7EA2-A360-43E8-A591-5FAEDC7C4E1D}\Implemented Categories
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{C15B7EA2-A360-43E8-A591-5FAEDC7C4E1D}\Implemented Categories\{7DD95801-9882-11CF-9FA9-00AA006C42C4}
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{C15B7EA2-A360-43E8-A591-5FAEDC7C4E1D}\Implemented Categories\{7DD95802-9882-11CF-9FA9-00AA006C42C4}
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{C15B7EA2-A360-43E8-A591-5FAEDC7C4E1D}\Insertable
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{C15B7EA2-A360-43E8-A591-5FAEDC7C4E1D}\LocalServer32
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{C15B7EA2-A360-43E8-A591-5FAEDC7C4E1D}\LocalServer32
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{C15B7EA2-A360-43E8-A591-5FAEDC7C4E1D}\MiscStatus
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{C15B7EA2-A360-43E8-A591-5FAEDC7C4E1D}\MiscStatus
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{C15B7EA2-A360-43E8-A591-5FAEDC7C4E1D}\MiscStatus\1
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{C15B7EA2-A360-43E8-A591-5FAEDC7C4E1D}\MiscStatus\1
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{C15B7EA2-A360-43E8-A591-5FAEDC7C4E1D}\ProgID
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{C15B7EA2-A360-43E8-A591-5FAEDC7C4E1D}\ProgID
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{C15B7EA2-A360-43E8-A591-5FAEDC7C4E1D}\Programmable
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{C15B7EA2-A360-43E8-A591-5FAEDC7C4E1D}\ToolboxBitmap32
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{C15B7EA2-A360-43E8-A591-5FAEDC7C4E1D}\ToolboxBitmap32
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{C15B7EA2-A360-43E8-A591-5FAEDC7C4E1D}\TypeLib
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{C15B7EA2-A360-43E8-A591-5FAEDC7C4E1D}\TypeLib
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{C15B7EA2-A360-43E8-A591-5FAEDC7C4E1D}\Version
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{C15B7EA2-A360-43E8-A591-5FAEDC7C4E1D}\Version
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{C15B7EA2-A360-43E8-A591-5FAEDC7C4E1D}\VersionIndependentProgID
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{C15B7EA2-A360-43E8-A591-5FAEDC7C4E1D}\VersionIndependentProgID


SpySheriff Rogue Security Program more information...
Details: SpySheriff is a purported anti-spyware application to scan for and remove spyware from users' computers.
Status: Deleted

Registry entries detected
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER


Trojan-Downloader.Gen Trojan Downloader more information...
Details: Trojan-Downloader.Gen is a group of Trojan Downloaders which install download and install multiple unwanted applications of adware and malware from remote servers.
Status: Deleted

Files detected
C:\Dokumente und Einstellungen\Tobi\Anwendungsdaten\Sun\Java\Deployment\cache\javapi\v1.0\file\GetAccess.class-67d5bdb4-7ae1a0d4.class
C:\Dokumente und Einstellungen\Tobi\Anwendungsdaten\Sun\Java\Deployment\cache\javapi\v1.0\file\GetAccess.class-7a34c6f0-7dae6d31.class
C:\Dokumente und Einstellungen\Tobi\Anwendungsdaten\Sun\Java\Deployment\cache\javapi\v1.0\file\NudeBox.class-75411ff2-573937fb.class


Need2FindBar Potentially Unwanted Program more information...
Details: Need2FindBar is a browser helper object (BHO) toolbar that has a search function.
Status: Deleted

Registry entries detected
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{4D1C4E81-A32A-416B-BCDB-33B3EF3617D3}
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{4D1C4E81-A32A-416B-BCDB-33B3EF3617D3}
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{4D1C4E81-A32A-416B-BCDB-33B3EF3617D3}\InprocServer32
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{4D1C4E81-A32A-416B-BCDB-33B3EF3617D3}\InprocServer32
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{4D1C4E81-A32A-416B-BCDB-33B3EF3617D3}\InprocServer32
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{4D1C4E81-A32A-416B-BCDB-33B3EF3617D3}\Programmable
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{4D1C4E81-A32A-416B-BCDB-33B3EF3617D3}\TypeLib
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{4D1C4E81-A32A-416B-BCDB-33B3EF3617D3}\TypeLib
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{4D1C4E89-A32A-416B-BCDB-33B3EF3617D3}
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{4D1C4E89-A32A-416B-BCDB-33B3EF3617D3}
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{4D1C4E89-A32A-416B-BCDB-33B3EF3617D3}\InprocServer32
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{4D1C4E89-A32A-416B-BCDB-33B3EF3617D3}\InprocServer32
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{4D1C4E89-A32A-416B-BCDB-33B3EF3617D3}\InprocServer32
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{4D1C4E89-A32A-416B-BCDB-33B3EF3617D3}\Programmable
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{4D1C4E89-A32A-416B-BCDB-33B3EF3617D3}\TypeLib
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{4D1C4E89-A32A-416B-BCDB-33B3EF3617D3}\TypeLib
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{4D1C4E8B-A32A-416B-BCDB-33B3EF3617D3}
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{4D1C4E8B-A32A-416B-BCDB-33B3EF3617D3}
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{4D1C4E8B-A32A-416B-BCDB-33B3EF3617D3}\Control
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{4D1C4E8B-A32A-416B-BCDB-33B3EF3617D3}\InprocServer32
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{4D1C4E8B-A32A-416B-BCDB-33B3EF3617D3}\InprocServer32
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{4D1C4E8B-A32A-416B-BCDB-33B3EF3617D3}\InprocServer32
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{4D1C4E8B-A32A-416B-BCDB-33B3EF3617D3}\MiscStatus
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{4D1C4E8B-A32A-416B-BCDB-33B3EF3617D3}\MiscStatus
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{4D1C4E8B-A32A-416B-BCDB-33B3EF3617D3}\MiscStatus\1
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{4D1C4E8B-A32A-416B-BCDB-33B3EF3617D3}\MiscStatus\1
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{4D1C4E8B-A32A-416B-BCDB-33B3EF3617D3}\ProgID
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{4D1C4E8B-A32A-416B-BCDB-33B3EF3617D3}\ProgID
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{4D1C4E8B-A32A-416B-BCDB-33B3EF3617D3}\Programmable
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{4D1C4E8B-A32A-416B-BCDB-33B3EF3617D3}\TypeLib
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{4D1C4E8B-A32A-416B-BCDB-33B3EF3617D3}\TypeLib
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{4D1C4E8B-A32A-416B-BCDB-33B3EF3617D3}\Version
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{4D1C4E8B-A32A-416B-BCDB-33B3EF3617D3}\Version
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{4D1C4E8B-A32A-416B-BCDB-33B3EF3617D3}\VersionIndependentProgID
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{4D1C4E8B-A32A-416B-BCDB-33B3EF3617D3}\VersionIndependentProgID
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{F78B32D6-D6D8-4137-A18F-91EBE1A4AEDB}
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{F78B32D6-D6D8-4137-A18F-91EBE1A4AEDB}
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{F78B32D6-D6D8-4137-A18F-91EBE1A4AEDB}\TreatAs
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{F78B32D6-D6D8-4137-A18F-91EBE1A4AEDB}\TreatAs
HKEY_LOCAL_MACHINE\Software\Classes\INTERFACE\{4D1C4E8C-A32A-416B-BCDB-33B3EF3617D3}
HKEY_LOCAL_MACHINE\Software\Classes\INTERFACE\{4D1C4E8C-A32A-416B-BCDB-33B3EF3617D3}
HKEY_LOCAL_MACHINE\Software\Classes\INTERFACE\{4D1C4E8C-A32A-416B-BCDB-33B3EF3617D3}\ProxyStubClsid
HKEY_LOCAL_MACHINE\Software\Classes\INTERFACE\{4D1C4E8C-A32A-416B-BCDB-33B3EF3617D3}\ProxyStubClsid
HKEY_LOCAL_MACHINE\Software\Classes\INTERFACE\{4D1C4E8C-A32A-416B-BCDB-33B3EF3617D3}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\Software\Classes\INTERFACE\{4D1C4E8C-A32A-416B-BCDB-33B3EF3617D3}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\Software\Classes\INTERFACE\{4D1C4E8C-A32A-416B-BCDB-33B3EF3617D3}\TypeLib
HKEY_LOCAL_MACHINE\Software\Classes\INTERFACE\{4D1C4E8C-A32A-416B-BCDB-33B3EF3617D3}\TypeLib
HKEY_LOCAL_MACHINE\Software\Classes\INTERFACE\{4D1C4E8C-A32A-416B-BCDB-33B3EF3617D3}\TypeLib
HKEY_LOCAL_MACHINE\Software\Classes\MSIEDE1EGATE.APPLICATION.2
HKEY_LOCAL_MACHINE\Software\Classes\MSIEDE1EGATE.APPLICATION.2
HKEY_LOCAL_MACHINE\Software\Classes\MSIEDE1EGATE.APPLICATION.2\CLSID
HKEY_LOCAL_MACHINE\Software\Classes\MSIEDE1EGATE.APPLICATION.2\CLSID
HKEY_LOCAL_MACHINE\Software\Classes\TYPELIB\{4D1C4E80-A32A-416B-BCDB-33B3EF3617D3}
HKEY_LOCAL_MACHINE\Software\Classes\TYPELIB\{4D1C4E80-A32A-416B-BCDB-33B3EF3617D3}\1.0
HKEY_LOCAL_MACHINE\Software\Classes\TYPELIB\{4D1C4E80-A32A-416B-BCDB-33B3EF3617D3}\1.0
HKEY_LOCAL_MACHINE\Software\Classes\TYPELIB\{4D1C4E80-A32A-416B-BCDB-33B3EF3617D3}\1.0\0
HKEY_LOCAL_MACHINE\Software\Classes\TYPELIB\{4D1C4E80-A32A-416B-BCDB-33B3EF3617D3}\1.0\0\win32
HKEY_LOCAL_MACHINE\Software\Classes\TYPELIB\{4D1C4E80-A32A-416B-BCDB-33B3EF3617D3}\1.0\0\win32
HKEY_LOCAL_MACHINE\Software\Classes\TYPELIB\{4D1C4E80-A32A-416B-BCDB-33B3EF3617D3}\1.0\FLAGS
HKEY_LOCAL_MACHINE\Software\Classes\TYPELIB\{4D1C4E80-A32A-416B-BCDB-33B3EF3617D3}\1.0\FLAGS
HKEY_LOCAL_MACHINE\Software\Classes\TYPELIB\{4D1C4E80-A32A-416B-BCDB-33B3EF3617D3}\1.0\HELPDIR
HKEY_LOCAL_MACHINE\Software\Classes\TYPELIB\{4D1C4E80-A32A-416B-BCDB-33B3EF3617D3}\1.0\HELPDIR
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{4D1C4E81-A32A-416B-BCDB-33B3EF3617D3}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{4D1C4E81-A32A-416B-BCDB-33B3EF3617D3}


PartyPoker Potentially Unwanted Program more information...
Details: PartyPoker is an online gambling application that requires the user to download its software in order to play.
Status: Deleted

Files detected
C:\Dokumente und Einstellungen\Tobi\Anwendungsdaten\Microsoft\Internet Explorer\Quick Launch\PartyPoker.lnk
C:\Dokumente und Einstellungen\Tobi\Startmenü\Programme\Games\PartyPoker.lnk
C:\DOKUMENTE UND EINSTELLUNGEN\Tobi\STARTMENü\PROGRAMME\PARTYPOKER\PartyPoker.lnk
C:\DOKUMENTE UND EINSTELLUNGEN\Tobi\STARTMENü\PROGRAMME\PARTYPOKER\Uninstall PartyPoker.lnk
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\GRA.ini
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\account_but_newacocunt.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\account_button_background.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\active_popup-bottom.JPG
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\active_popup-bottomleft.gif
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\active_popup-bottomleft.JPG
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\active_popup-bottomright.gif
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\active_popup-bottomright.JPG
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\active_popup-left.JPG
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\active_popup-right.JPG
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\active_title-background.JPG
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\active_title-topleft.gif
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\active_title-topleft.JPG
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\active_title-topright.gif
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\active_title-topright.JPG
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\but.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\but_account.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\but_skin.gif
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\but_skin_account.gif
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\client_bottom.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\client_bottom_right.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\client_gradient.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\client_lobby_left.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\client_lobby_right.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\client_top.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\connect_screen_bg.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\balance_strip.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\but_skin.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\2c.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\2d.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\2h.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\2s.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\3c.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\3d.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\3h.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\3s.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\4c.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\4d.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\4h.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\4s.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\5c.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\5d.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\5h.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\5s.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\6_bigcardback.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\6c.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\6d.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\6h.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\6s.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\7c.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\7d.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\7h.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\7s.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\8c.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\8d.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\8h.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\8s.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\9c.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\9d.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\9h.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\9s.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\Ac.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\Ad.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\Ah.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\As.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\blackjack\bj_check.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\blackjack\blackjack.dll
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\blackjack\blackjack.wav
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\blackjack\blackjack\bj_table.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\blackjack\blackjack\pff_betinfo.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\blackjack\blackjack\version.txt
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\blackjack\cashier_button.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\blackjack\chip100_button.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\blackjack\chip1_button.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\blackjack\chip25_button.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\blackjack\chip500_button.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\blackjack\chip5_button.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\blackjack\clear_button.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\blackjack\deal_button.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\blackjack\double_button.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\blackjack\exit_button.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\blackjack\gamebalance_free.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\blackjack\gamelogs_button.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\blackjack\hit_button.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\blackjack\insurance.wav
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\blackjack\insure_button.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\blackjack\number_circle.gif
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\blackjack\pointer_R.gif
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\blackjack\push.wav
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\blackjack\repeatbet_button.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\blackjack\result_bj.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\blackjack\result_bust.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\blackjack\result_insure.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\blackjack\result_lost.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\blackjack\result_push.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\blackjack\result_won.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\blackjack\rules_button.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\blackjack\split.wav
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\blackjack\split_button.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\blackjack\split_button.png
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\blackjack\stand_button.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\blackjack\surrender_button.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\blackjack\version.txt
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\blackjack\version_button.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\c50.gif
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\c95.gif
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\Card.wav
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\CardFlip.wav
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\d1.gif
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\d100.gif
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\d1000.gif
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\d2000.gif
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\d25.gif
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\d5.gif
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\d50.gif
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\d500.gif
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\d5000.gif
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\game_topbar_pff.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\Jc.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\Jd.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\Jh.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\Js.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\Kc.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\Kd.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\Kh.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\Ks.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\number_circle.gif
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\pointer_R.gif
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\Qc.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\Qd.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\Qh.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\Qs.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\Rr.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\rules_button.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\Tc.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\Td.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\Th.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\Ts.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cardgames\version.txt
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cashier_button.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\cent_strip.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\chips.wav
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\exit_button.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\game_topbar_pff.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\gamebalance_free.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\gamelogs_button.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\popup_but_cancel.gif
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\popup_but_cancel.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\popup_but_cashier.gif
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\popup_but_cashier.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\popup_but_ok.gif
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\popup_but_ok.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\popup_but_playmoney.gif
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\popup_but_playmoney.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\popup_buyin_box.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\popup_buyin_but_all.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\popup_buyin_tab.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\popup_buyin_top.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\PushBut.wav
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\status_dlg.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\version.txt
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\version_button.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\games\win.wav
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\genv.sh
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\inactive_popup-bottom.JPG
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\inactive_popup-bottomleft.gif
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\inactive_popup-bottomleft.JPG
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\inactive_popup-bottomright.gif
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\inactive_popup-bottomright.JPG
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\inactive_popup-left.JPG
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\inactive_popup-right.JPG
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\inactive_title-background.JPG
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\inactive_title-left.gif
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\inactive_title-left.JPG
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\inactive_title-right.gif
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\inactive_title-right.JPG
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\jackpotwin_bg.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\lhn_account_background.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\lhn_account_divider.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\lhn_bar_jackpot.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\lhn_bar_jackpot_numbers.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\lhn_bar_news.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\lhn_but_cashout.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\lhn_but_deposit.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\lhn_but_deposit_large.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\lhn_but_options.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\lhn_but_redeem.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\lhn_but_refresh.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\lhn_but_reload_play.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\lhn_but_status.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\lhn_details_open.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\lhn_link_arrow.gif
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\lhn_tab_background.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\loading.gif
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\lobby\lobbyconfig.txt
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\menu_01_myaccount.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\menu_02_cashier.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\menu_03_news.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\menu_04_rules.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\menu_05_tellfriend.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\menu_06_about.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\menu_07_help.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\PartyCasino.ico
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\popup_login_bottom.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\popup_login_top.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\popup_register_bottomleft.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\popup_register_top.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\skin.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\skin_account.bmp
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\sys_icons.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\system_but_bingo.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\system_but_cashier.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\system_but_close.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\system_but_connected.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\system_but_gammon.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\system_but_inactive_close.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\system_but_inactive_minimise.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\system_but_login.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\system_but_minimise.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\system_but_poker.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\system_but_security.jpg
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\title_changevalidateemail.gif
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\title_chgpwd.gif
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\title_weak_password.gif
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\version.jar
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\Images\version.txt
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\PartyCasino.dll
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\pc_uninstall.bat
C:\Programme\PartyGaming\PartyGaming.exe
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\addchips.wav
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Articles\1.html
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Articles\1007.atc
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Articles\107.atc
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Articles\1165.atc
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Articles\1371.atc
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Articles\1507.atc
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Articles\1509.atc
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Articles\1511.atc
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Articles\1513.atc
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Articles\1757.atc
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Articles\1795.atc
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Articles\1797.atc
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Articles\1799.atc
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Articles\1801.atc
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Articles\1803.atc
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Articles\1947.atc
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Articles\1949.atc
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Articles\1953.atc
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Articles\1955.atc
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Articles\2.html
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Articles\225.atc
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Articles\233.atc
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Articles\235.atc
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Articles\255.atc
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Articles\282.atc
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Articles\29.atc
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Articles\3.html
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Articles\318.atc
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Articles\320.atc
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Articles\328.atc
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Articles\362.atc
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Articles\4.html
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Articles\406.atc
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Articles\457.atc
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Articles\494.atc
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Articles\496.atc
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Articles\500.atc
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Articles\77.atc
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Articles\809.atc
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Articles\97.atc
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\cards_dealing.wav
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\cards_sliding.wav
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\chimes.wav
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\chips_sliding.wav
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\ding.wav
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Exit.html
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\firework3.wav
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\GRA.ini
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\0.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\0_7.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\1.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\1_7.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\1_bigcardback.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\1_smallcard1.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\2.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\2_7.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\2_bigcardback.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\2_smallcard1.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\2c.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\2cg.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\2d.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\2db.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\2h.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\2s.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\3.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\3_7.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\3_bigcardback.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\3_smallcard1.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\3c.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\3cg.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\3d.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\3db.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\3h.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\3s.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\4.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\4_7.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\4_bigcardback.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\4_smallcard1.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\4c.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\4cg.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\4d.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\4db.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\4h.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\4s.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\5.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\5_7.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\5_bigcardback.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\5_smallcard1.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\5c.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\5cg.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\5d.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\5db.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\5h.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\5s.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\6.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\6_7.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\6_bigcardback.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\6_smallcard1.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\6c.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\6cg.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\6d.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\6db.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\6h.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\6s.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\7.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\7_7.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\7c.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\7cg.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\7d.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\7db.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\7h.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\7s.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\8.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\8c.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\8cg.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\8d.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\8db.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\8h.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\8s.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\9.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\9c.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\9cg.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\9d.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\9db.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\9h.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\9s.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\Ac.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\account_but_newacocunt.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\acg.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\Ad.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\adb.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\add-on.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\add.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\adv_checked.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\adv_unchecked.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\Ah.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\As.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\background.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\background_client.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\biglogo.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\bitmap_cent.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\bitmap_dollor.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\block.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\box.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\box_corners.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\btn_cascade.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\btn_cascade_off.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\btn_reset.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\btn_reset_off.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\btn_tile.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\btn_tile_off.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\bulletin_background.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\bulletin_box_background.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\bulletin_nav_background.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\bulletin_nav_buttons.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\but.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\but_account.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\but_help.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\but_joinlist.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\but_opentable.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\but_registernow.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\but_skin.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\but_skin_account.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\but_tourneylobby.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\but_unjoinlist.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\but_unregister.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\buttonSend.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\c1.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\c10.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\c25.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\C5.GIF
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\c50.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\cashier.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\clearAmounts.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\client_bottom.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\client_bottom_right.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\client_gradient.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\client_lobby_left.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\client_lobby_right.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\client_top.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\close.act
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\close.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\ConfirmDeal.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\congratulations.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\conn.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\conn_lost.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\connect_screen_bg.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\d1.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\d100.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\d1000.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\d100000.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\d1000000.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\d25.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\d25000.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\d5.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\d500.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\d5000.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\d500000.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\deal_background.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\Deal_help.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\DealerControl.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\ExitDeal.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\filters_background_maximised.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\filters_background_normal.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\filters_but.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\filters_but_close_maximised.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\filters_but_close_normal.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\filters_but_open_maximised.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\filters_but_open_normal.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\filters_but_small.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\filters_but_tournys_close_maximised.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\filters_but_tournys_close_normal.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\filters_but_tournys_open_maximised.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\filters_but_tournys_open_normal.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\floorperson1.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\fold_to_off.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\fold_to_on.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\help_background.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\help_but_close.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\help_but_continue.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\highcarding.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\invite.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\Jc.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\jcg.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\Jd.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\jdb.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\Jh.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\JP_Other_Popup_BG.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\jp_rake_box.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\JP_Win_Popup_BG.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\Js.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\Kc.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\kcg.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\Kd.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\kdb.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\Kh.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\Ks.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\layout_01_r65_c34.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\leavetable.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\lhn_account_background.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\lhn_account_divider.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\lhn_bar_blackjack.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\lhn_bar_jackpot.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\lhn_bar_jackpot_numbers.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\lhn_bar_news.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\lhn_bar_prize.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\lhn_but_cashout.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\lhn_but_deposit.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\lhn_but_deposit_large.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\lhn_but_options.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\lhn_but_redeem.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\lhn_but_refresh.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\lhn_but_reload_play.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\lhn_but_status.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\lhn_details_open.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\lhn_link_arrow.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\lhn_tab_background.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\loading.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\Lobby.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\lobbyClose.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\login.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\logout.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\man0.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\man0_7.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\man1.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\man1_7.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\man2.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\man2_7.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\man3.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\man3_2.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\man3_7.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\man4.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\man4_7.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\man5.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\man5_7.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\man6.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\man6_2.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\man6_7.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\man7.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\man7_7.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\man8.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\man9.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\menu_01_myaccount.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\menu_02_cashier.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\menu_03_news.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\menu_04_rules.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\menu_05_tellfriend.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\menu_06_about.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\menu_07_help.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\nextmove.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\notes.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\option.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\OtherPayouts.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\out.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\PayoutInfo.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\payouts.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\picturecard.act
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\pin_unused.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\pin_used.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\popup.css
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\popup_buyin_box.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\popup_buyin_but_all.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\popup_buyin_top.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\popup_login_bottom.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\popup_login_top.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\popup_logo_monster.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\popup_logo_monster_buyin.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\popup_register_bottomleft.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\popup_register_top.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\pp_browser.ico
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\ppicon.ico
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\prize_numbers.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\Qc.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\qcg.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\Qd.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\qdb.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\Qh.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\Qs.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\re-buy.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\rebuy.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\RejectDeal.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\remove.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\reserved.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\seat0.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\seat0_7.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\seat1.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\seat1_7.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\seat2.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\seat2_7.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\seat2_7.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\seat3.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\seat3_7.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\seat4.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\seat4_7.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\seat4_9.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\seat5.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\seat5_7.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\seat6.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\seat6_7.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\seat7.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\seat7_7.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\seat8.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\seat9.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\seatopen.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\SideBetBG.JPG
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\SideBetClose.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\SideBetCloseBet.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\SideBetOpen.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\SideBetOpenBet.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\SideBetOpenBetNoborder.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\SidebetOpenNoborder.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\SideBetUpdateProcess.JPG
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\signup.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\skin.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\skin_account.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\smlogo.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\splash.act
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\strip.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\strip_bottom.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\strip_left.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\strip_right.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\strip_top.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\SubmitDeal.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\system_background_bulletin.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\system_but_bingo.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\system_but_cashier.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\system_but_casino.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\system_but_connected.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\system_but_gammon.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\system_but_install.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\system_but_realplay.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\system_but_security.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\t_cashier.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\t_distributechips.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\t_livehelp.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\t_lobbyclose.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\t_login.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\t_mainlobby.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\t_more_info.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\t_newuser.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\t_register.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\t_register_off.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\t_shootout_grid.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\t_takeseat.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\t_takeseat_off.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\t_unregister.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\t_watchtable.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\t_watchtable_off.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\tab_background.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\tab_description.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\tab_game_info.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\tab_players.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\tab_players_right.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\tab_tournament_info.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\table.act
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\table.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\table_background_buttons_expanded.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\table_background_buttons_maximised.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\table_bj_button.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\table_bj_button.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\table_jp_label.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\table_jp_pin.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\table_jp_pin_tacked.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\table_options.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\table_prize_dollar.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\table_prize_dollar_comma.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\table_prize_label.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\table_prize_pin.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\table_prize_pin_tacked.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\table_prize_stip_bottom.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\table_prize_stip_left.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\table_prize_stip_right.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\table_prize_stip_top.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\table_title_background.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\table_title_background_sel.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\Tc.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\Tcg.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\Td.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\Tdb.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\Th.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\thumbtack1.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\thumbtack2.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\timebank.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\timebank.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\title_ac_suggestor.GIF
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\title_add_take_money.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\title_addon.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\title_buy-in_takeout.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\title_buyin.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\title_changevalidateemail.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\title_chgpwd.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\title_crtpvttlb.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\title_enterpassword.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\title_firepay.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\title_hand_history_config.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\title_howtostart.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\title_instant_hand_history.GIF
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\title_invitation.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\title_invitebuddies.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\title_joinwaitlistnormal.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\title_openaccount.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\title_options.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\title_PPInfo.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\title_rebuy.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\title_requesthandhistory.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\title_shootout_payout.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\title_tellafriend.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\title_tourneybuyin.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\title_unjoinwaitlist.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\title_weak_password.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\title_welcome.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\title_word_verification.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\tittle_updateProfile.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\tourn_congrats.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\tournamentlobby.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\tourneylobby.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\tree_but_favorites.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\tree_but_filtercash.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\tree_but_filtershowall.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\tree_but_filtertournaments.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\tree_listing_background.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\tree_main_background.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\Ts.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\unblock.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\unjoinwaitlist.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\unregister.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\useyourcreditcard.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\view_but_default.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\view_but_expanded.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\view_but_maximised.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\viewDealbackground.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\welcome_dollars.gif
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\welcome_iecontrol.jpg
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\wom0.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\wom0_7.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\wom1.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\wom1_7.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\wom2.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\wom2_7.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\wom3.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\wom3_2.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\wom3_7.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\wom4.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\wom4_7.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\wom5.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\wom5_7.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\wom6.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\wom6_2.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\wom6_7.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\wom7.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\wom7_7.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\wom8.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\wom9.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Images\you_win.bmp
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\INSTALL.LOG
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\install.sss
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\llh.dll
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\login.html
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\mouse_move.wav
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Notes.txt
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\PartyPoker.dll
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\poker.bin
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\PokerTrainer.exe
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\PokerTrainer\Aaron.omf
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\PokerTrainer\Adrien.omf
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\PokerTrainer\Anthony.omf
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\PokerTrainer\Bill.omf
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\PokerTrainer\Brian.omf
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\PokerTrainer\Bryce.omf
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\PokerTrainer\Christine.omf
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\PokerTrainer\Colleen.omf
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\PokerTrainer\Darcy.omf
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\PokerTrainer\Duane.omf
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\PokerTrainer\Gord.omf
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\PokerTrainer\Graham.omf
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\PokerTrainer\Jason.omf
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\PokerTrainer\Jonathan.omf
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\PokerTrainer\Kelley.omf
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\PokerTrainer\Kurt.omf
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\PokerTrainer\Leah.omf
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\PokerTrainer\Lenny.omf
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\PokerTrainer\Mike.omf
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\PokerTrainer\Naomi.omf
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\PokerTrainer\Pamela.omf
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\PokerTrainer\Sam.omf
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\PokerTrainer\Scott.omf
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\PokerTrainer\Sharon.omf
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\PokerTrainer\Shawn.omf
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\PokerTrainer\Terence.omf
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\PokerTrainer\Tim.omf
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\PokerTrainer\treggger.omf
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\PokerTrainer\Valerie.omf
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\ppunistall.bat
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\preloader.html
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\reminder.wav
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\ring.wav
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\RunApp.exe
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\TabConfig.txt
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\tap.wav
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\tmpUpgrade\INSTALL.LOG
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\tmpUpgrade\upgradepp96-97man.exe
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\tmpUpgrade\upgradepp97-98man.exe
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\Uninstall.exe
C:\DOKUMENTE UND EINSTELLUNGEN\TOBI\STARTMENü\PROGRAMME\PARTYPOKER
C:\PROGRAMME\PARTYGAMING\PARTYCASINO
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\IMAGES
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\IMAGES\GAMES
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\IMAGES\GAMES\CARDGAMES
C:\PROGRAMME\PARTYGAMING\PARTYCASINO\IMAGES\GAMES\CARDGAMES\BLACKJACK
C:\PROGRAMME\PARTYGAMING\P
tregger
 
Beiträge: 32
Registriert: 05.10.2005, 14:55

Beitragvon Ariczzz am 04.03.2007, 20:41

da hat nicht alles draufgepasst, bitte stelle noch den rest rein!
Ariczzz
Mitarbeiter
 
Beiträge: 1634
Registriert: 06.09.2006, 16:23
Wohnort: Niederndodeleben

Fortsetzung

Beitragvon tregger am 04.03.2007, 20:52

C:\PROGRAMME\PARTYGAMING\PARTYCASINO\IMAGES\LOBBY
C:\PROGRAMME\PARTYGAMING\PARTYPOKER
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\ARTICLES
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\IMAGES
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\POKERTRAINER
C:\PROGRAMME\PARTYGAMING\PARTYPOKER\TMPUPGRADE

Registry entries detected
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\PARTYPOKER
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\PARTYPOKER
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\PARTYPOKER
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\PARTYPOKER
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\PARTYPOKER
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\PARTYPOKER
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\PARTYPOKER
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\PARTYPOKER
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\PARTYPOKER
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\PARTYPOKER
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\PARTYPOKER
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\PARTYPOKER
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\PARTYGAMING\PARTYPOKER
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\PARTYGAMING\PARTYPOKER
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\PARTYGAMING\PARTYPOKER
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\PARTYGAMING\PARTYPOKER
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\PARTYGAMING\PARTYPOKER
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\PARTYGAMING\PARTYPOKER
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\PARTYGAMING\PARTYPOKER
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\PARTYGAMING\PARTYPOKER
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\PARTYGAMING\PARTYPOKER
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\PARTYGAMING\PARTYPOKER
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\PARTYGAMING\PARTYPOKER
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\PARTYGAMING\PARTYPOKER
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\PARTYGAMING\PARTYPOKER
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\PARTYGAMING\PARTYPOKER
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\PARTYGAMING\PARTYPOKER
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\PARTYGAMING\PARTYPOKER
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\PARTYGAMING\PARTYPOKER
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\PARTYGAMING\PARTYPOKER
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\PARTYGAMING\PARTYPOKER
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\PARTYGAMING\PARTYPOKER
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\PARTYGAMING\PARTYPOKER
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\PARTYGAMING\PARTYPOKER
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\PARTYGAMING\PARTYPOKER
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\PARTYGAMING\PARTYPOKER
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\PARTYGAMING\PARTYPOKER
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\PARTYGAMING\PARTYPOKER
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\PARTYGAMING\PARTYPOKER
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\PARTYGAMING\PARTYPOKER
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\PARTYGAMING\PARTYPOKER
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\PARTYGAMING\PARTYPOKER
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\PARTYGAMING\PARTYPOKER
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\PARTYGAMING\PARTYPOKER
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\PARTYGAMING\PARTYPOKER
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\PARTYGAMING\PARTYPOKER
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\PARTYGAMING\PARTYPOKER
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\PARTYGAMING\PARTYPOKER
HKEY_USERS\S-1-5-21-115589690-53839732-2613340165-1007\SOFTWARE\PARTYGAMING\PARTYPOKER


Trojan.LinkOptimizer Trojan more information...
Status: Deleted

Registry entries detected
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{391A72A1-108D-435A-875E-5B9048E11657}
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{391A72A1-108D-435A-875E-5B9048E11657}\InprocServer32
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{391A72A1-108D-435A-875E-5B9048E11657}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\CONNECTIONSERVICES
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\CONNECTIONSERVICES
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\CONNECTIONSERVICES


Trojan.Win32.Qhost.hf Trojan more information...
Status: Deleted

Registry entries detected
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\URLS
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\URLS
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\URLS


Trojan.SIMDWYNVdprn.88FB2E15 Trojan more information...
Status: Deleted

Processes detected
C:\Programme\Panda Software\Panda Antivirus 2007\PSKAHK.dll



Panda2007:

Panda Internet Security 2007 incident report
Filter selected:Virus detected, Suspicious file, Dangerous file, Script execution, Phone connection, Connection attempt, Port scan attack, Denial of service attack, Spoofing, Attacking IP address blocked, Enabled, Disabled, Update, Scan started, Scan complete, Date: All
INCIDENT NOTIFIED BY DATE-TIME RESULT ADDITIONAL INFORMATION
-------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
Potentially unwanted program detecte... On-demand antivirus scan 03/04/07 18:53:10 Deleted Path: C:\Programme\Mozilla Firefox\plugins\NPNd2fn.dll
Update Update system 03/04/07 18:32:44 Incorrect Error: Error in the download process
Potentially unwanted program detecte... On-demand antivirus scan 03/04/07 18:21:39 Deleted Path: HKEY_CLASSES_ROOT\CLSID\{B7156514-A76C-4545-9D5B-A4E1D02C7AEC}
Update Update system 03/04/07 18:20:46 Correct New version: 110002
Update Update system 03/04/07 18:19:35 Correct Total threat signatures: 456509



Hijackthis:

Logfile of HijackThis v1.99.1
Scan saved at 19:25:12, on 04.03.2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16414)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\SYSTEM32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Programme\Panda Software\Panda Internet Security 2007\pavsrv51.exe
C:\Programme\Panda Software\Panda Internet Security 2007\AVENGINE.EXE
C:\WINDOWS\system32\svchost.exe
C:\Programme\Panda Software\Panda Internet Security 2007\TPSrv.exe
c:\programme\panda software\panda internet security 2007\firewall\PNMSRV.EXE
C:\WINDOWS\system32\brsvc01a.exe
C:\WINDOWS\system32\brss01a.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programme\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\WINDOWS\system32\Brmfrmps.exe
C:\Programme\Gemeinsame Dateien\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\Explorer.EXE
C:\Programme\Panda Software\Panda Internet Security 2007\PavFnSvr.exe
C:\Programme\Gemeinsame Dateien\Panda Software\PavShld\pavprsrv.exe
C:\Programme\Panda Software\Panda Internet Security 2007\AntiSpam\pskmssvc.exe
C:\WINDOWS\htpatch.exe
C:\Programme\Panda Software\Panda Internet Security 2007\PsImSvc.exe
C:\Programme\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Programme\Gemeinsame Dateien\Microsoft Shared\Works Shared\WkUFind.exe
C:\WINDOWS\Dit.exe
C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb11.exe
C:\Programme\Sunbelt Software\CounterSpy\SBCSTray.exe
C:\Programme\Sunbelt Software\CounterSpy\SBCSSvc.exe
C:\WINDOWS\DitExp.exe
C:\Programme\Panda Software\Panda Internet Security 2007\APVXDWIN.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\ssoftsrv.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\wanmpsvc.exe
C:\Programme\Gemeinsame Dateien\Symantec Shared\Security Center\SymWSC.exe
C:\Programme\Panda Software\Panda Internet Security 2007\SRVLOAD.EXE
c:\programme\panda software\panda internet security 2007\WebProxy.exe
C:\WINDOWS\System32\svchost.exe
C:\Programme\Internet Explorer\iexplore.exe
C:\DOKUME~1\Tobi\LOKALE~1\Temp\Rar$EX00.390\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/customi ... earch.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Arcor AG & Co. KG
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O4 - HKLM\..\Run: [HTpatch] C:\WINDOWS\htpatch.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Programme\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Programme\Gemeinsame Dateien\Microsoft Shared\Works Shared\WkUFind.exe
O4 - HKLM\..\Run: [Dit] Dit.exe
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb11.exe
O4 - HKLM\..\Run: [LanzarL2007] "C:\DOKUME~1\Tobi\LOKALE~1\Temp\{02C93AA7-44F3-44E5-9DC1-1B50440205C2}\{D1DA2BA7-2592-4036-9BB2-DCCABDE8DC1A}\..\..\L2007tmp\Setup.exe" /SETUP:"/l0x0007"
O4 - HKLM\..\Run: [SBCSTray] C:\Programme\Sunbelt Software\CounterSpy\SBCSTray.exe
O4 - HKLM\..\Run: [APVXDWIN] "C:\Programme\Panda Software\Panda Internet Security 2007\APVXDWIN.EXE" /s
O4 - HKLM\..\Run: [SCANINICIO] "C:\Programme\Panda Software\Panda Internet Security 2007\Inicio.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [updateMgr] "C:\Programme\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_8
O4 - Global Startup: Microsoft Office.lnk = C:\Programme\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: Nach Microsoft &Excel exportieren - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.5.0_05\bin\npjpi150_05.dll
O9 - Extra 'Tools' menuitem: Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.5.0_05\bin\npjpi150_05.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
O9 - Extra 'Tools' menuitem: Mobilen Favoriten erstellen... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
O9